Techrights logo

IRC: #boycottnovell @ FreeNode: October 5th, 2014-October 11th, 2014

Join us now at the IRC channel.

*Now talking on #boycottnovellOct 11 09:36
*Topic for #boycottnovell is: TechRights.org | Channel #boycottnovell for http://TechRights.org | Free Software Sentry – watching and reporting maneuvers of those who oppose software freedom :: please also join channels #techrights and #boycottnovell-socialOct 11 09:36
*Topic for #boycottnovell set by schestowitz at Fri May 7 00:19:56 2010Oct 11 09:36
-ChanServ-[#boycottnovell] Welcome to the #boycottnovell channelOct 11 09:36
*freedomrun has quit (Remote host closed the connection)Oct 11 10:36
*freedomrun (~quassel@unaffiliated/freedomrun) has joined #boycottnovellOct 11 10:41
*roy has quit (Read error: No route to host)Oct 11 15:14
*schestowitz_log has quit (Read error: Connection reset by peer)Oct 11 15:14
*schestowitz_log (~schestowi@host109-155-92-45.range109-155.btcentralplus.com) has joined #boycottnovellOct 11 15:15
*schestowitz_log has quit (Changing host)Oct 11 15:15
*schestowitz_log (~schestowi@unaffiliated/schestowitz) has joined #boycottnovellOct 11 15:15
*ChanServ gives channel operator status to schestowitz_logOct 11 15:15
*roy (~schestowi@host109-155-92-45.range109-155.btcentralplus.com) has joined #boycottnovellOct 11 15:15
*roy has quit (Changing host)Oct 11 15:15
*roy (~schestowi@unaffiliated/schestowitz) has joined #boycottnovellOct 11 15:15
*ChanServ gives channel operator status to royOct 11 15:15
*Disconnected (Connection timed out).Oct 11 17:12
**** ENDING LOGGING AT Sat Oct 11 17:12:56 2014
**** BEGIN LOGGING AT Sat Oct 11 17:13:22 2014
*Now talking on #boycottnovellOct 11 17:13
*Topic for #boycottnovell is: TechRights.org | Channel #boycottnovell for http://TechRights.org | Free Software Sentry – watching and reporting maneuvers of those who oppose software freedom :: please also join channels #techrights and #boycottnovell-socialOct 11 17:13
*Topic for #boycottnovell set by schestowitz at Fri May 7 00:19:56 2010Oct 11 17:13
-ChanServ-[#boycottnovell] Welcome to the #boycottnovell channelOct 11 17:13
*logbot2 (~schestowi@unaffiliated/schestowitz) has joined #boycottnovellOct 11 17:13
*ChanServ gives channel operator status to logbot2Oct 11 17:13
*pidgin_log (~roy@host109-155-92-45.range109-155.btcentralplus.com) has joined #boycottnovellOct 11 17:14
*schestowitz_log (~schestowi@unaffiliated/schestowitz) has joined #boycottnovellOct 11 17:14
*ChanServ gives channel operator status to schestowitz_logOct 11 17:14
schestowitz_loghttps://twitter.com/schestowitz/status/520969778564198400Oct 11 17:38
-TechrightsBN/#boycottnovell-@schestowitz: "Valve currently working on their Steam Machines, which is their console that is powered by their version of Linux" http://t.co/0sXR7vb8a3Oct 11 17:38
-TechrightsBN/#boycottnovell--> airherald.com | Half Life 3 May be coming in 2015 or 2016, Analysts Say Valve Waiting for Steam Machines or Virtual Reality – Air HeraldOct 11 17:38
schestowitz_loghttps://twitter.com/schestowitz/status/520967420039933952Oct 11 17:38
-TechrightsBN/#boycottnovell-@schestowitz: El Reg throwing in random comments to smear #gnu #linux & make it look bad http://t.co/q8NFN3WpSK typical of post-Microsoft deal RegisterOct 11 17:38
-TechrightsBN/#boycottnovell--> www.theregister.co.uk | I've got a new Linux box, how does it work... WOAH, only asking :-/ • The RegisterOct 11 17:38
schestowitz_loghttps://twitter.com/zewari7/status/520976356578836480Oct 11 17:39
-TechrightsBN/#boycottnovell-@zewari7: @schestowitz the same applies for "Rhodes scholars" who take pride in calling themselves that @OforiAkuffoOct 11 17:39
schestowitzhttps://joindiaspora.com/posts/4906910Oct 11 18:15
-TechrightsBN/#boycottnovell-@schestowitz@joindiaspora.com reshared: #humour #wtf #cheerleader #cheerleadersOct 11 18:15
-TechrightsBN/#boycottnovell- Photo by peter_rabbit@joindiaspora.com: https://joindiaspora.s3.amazonaws.com/uploads/images/thumb_medium_5556893da5216552e511.jpgOct 11 18:15
schestowitz"It's better not be below her :-D"Oct 11 18:15
*freedomrun has quit (Remote host closed the connection)Oct 11 19:54
*freedomrun (~quassel@unaffiliated/freedomrun) has joined #boycottnovellOct 11 20:04
*libertyboxes (~liberty@host109-155-92-45.range109-155.btcentralplus.com) has joined #boycottnovellOct 11 21:00
*libertybox_ has quit (Ping timeout: 260 seconds)Oct 11 21:01
*pidgin_log has quit (Ping timeout: 240 seconds)Oct 11 21:01
*logbot2 has quit (Ping timeout: 258 seconds)Oct 11 21:01
*schestowitz_log has quit (Ping timeout: 260 seconds)Oct 11 21:01
*schestowitz_log (~schestowi@unaffiliated/schestowitz) has joined #boycottnovellOct 11 21:14
*ChanServ gives channel operator status to schestowitz_logOct 11 21:14
*logbot2 (~schestowi@unaffiliated/schestowitz) has joined #boycottnovellOct 11 21:15
*ChanServ gives channel operator status to logbot2Oct 11 21:15
*pidgin_log (~roy@host109-155-92-45.range109-155.btcentralplus.com) has joined #boycottnovellOct 11 21:15
*freedomrun_ (~quassel@unaffiliated/freedomrun) has joined #boycottnovellOct 11 22:24
*freedomrun has quit (Ping timeout: 240 seconds)Oct 11 22:25
BACKUP
schestowitz>> The attacks are resuming now, so I'll give it a go.Oct 05 05:35
schestowitz> Oct 05 05:35
schestowitz> Both sites seem responsive.  Which combinations of mitigation effortsOct 05 05:35
schestowitz> worked?Oct 05 05:35
schestowitzit's 6am here and I just woke up to deal with a serious wave of attacks again. Maybe the attacker woke up. Maybe it's somewhere in east Europe, I wonder...Oct 05 05:35
schestowitzThere were no special mitigation efforts overnight. I need to work today, so waking up this early is bad, and it's giving me bad dreams, too...Oct 05 05:35
schestowitzhttps://joindiaspora.com/posts/4852407Oct 05 05:41
schestowitz"Well it is. However, my impression so far is that the music itself is not copy protected by Steam; It just provides access to soundtracks buried in the game directories and to the player's actual music collection."Oct 05 05:41
schestowitz"That's right. Steam doesn't do anything to music files, and it doesn't offer soundtracks in a format that can't be listened on any device without logging in."Oct 05 05:41
schestowitz"Yup, the other day I listened to some of the Civilization 5 sound tracks to find what was wrong with my game sound configuration. I had no problem playing them directly from KDE Dolphin.'Oct 05 05:41
*schestowitz has quit (Quit: Konversation term)Oct 05 07:43
-NickServ-schestowitz!~schestowi@host109-155-92-45.range109-155.btcentralplus.com has just authenticated as you (schestowitz)Oct 05 07:44
*schestowitz (~schestowi@unaffiliated/schestowitz) has joined #boycottnovellOct 05 07:44
*ChanServ gives channel operator status to schestowitzOct 05 07:44
*freedomrun (~quassel@unaffiliated/freedomrun) has joined #boycottnovellOct 05 08:27
roy[22:50] <tessier> I didn't know they had been under attack but I had noticed a lot of pages from them but they always recovered after a few minutes.Oct 05 08:53
roy[22:51] <tessier> Let me know if you continue to have troubles and I might be able to do something depending on what measures you already have in place.Oct 05 08:53
royhttps://twitter.com/BreakiNews/status/518688451856576513Oct 05 09:11
-TechrightsBN/#boycottnovell-@BreakiNews: @schestowitz Convenient to blame everyone except the Pakistani health ministry. LOL how dumb can you get.Oct 05 09:11
royHow is it to blame?Oct 05 09:11
royhttp://www.columbiamissourian.com/a/179838/what-others-say-as-eric-holder-resigns-a-confusing-legacy-as-attorney-general/Oct 05 09:33
-TechrightsBN/#boycottnovell-www.columbiamissourian.com | WHAT OTHERS SAY: As Eric Holder resigns, a confusing legacy as attorney general - Columbia Missourian [ http://ur1.ca/iarf6 ]Oct 05 09:33
royhttps://twitter.com/jmcest/status/518696609325260800Oct 05 09:42
-TechrightsBN/#boycottnovell-@jmcest: RT @schestowitz: #torture in #ireland but not by the Irish http://t.co/9OvtGlyfLkOct 05 09:42
-TechrightsBN/#boycottnovell--> www.anphoblacht.com | CIA and US military use of Shannon Airport examined by Oireachtas Petitions Committee | An PhoblachtOct 05 09:42
royhttps://twitter.com/jmcest/status/518696728305098752Oct 05 09:43
-TechrightsBN/#boycottnovell-@jmcest: RT @schestowitz: NY Journalist Wins #Lovejoy Award http://t.co/gv3tZY0Esb Eric Holder, in the mean time, wants to put him in #prisonOct 05 09:43
-TechrightsBN/#boycottnovell--> news.mpbn.net | NY Journalist Wins Lovejoy Award | Maine Public BroadcastingOct 05 09:43
*freedomrun has quit (Read error: Connection reset by peer)Oct 05 10:51
*schestowitz_log_ has quit (Read error: No route to host)Oct 05 12:17
*roy has quit (Read error: No route to host)Oct 05 12:17
*schestowitz_log (~schestowi@host109-155-92-45.range109-155.btcentralplus.com) has joined #boycottnovellOct 05 12:17
-NickServ-schestowitz_log!~schestowi@host109-155-92-45.range109-155.btcentralplus.com has just authenticated as you (schestowitz)Oct 05 12:17
*schestowitz_log has quit (Changing host)Oct 05 12:17
*schestowitz_log (~schestowi@unaffiliated/schestowitz) has joined #boycottnovellOct 05 12:17
*ChanServ gives channel operator status to schestowitz_logOct 05 12:17
-NickServ-roy!~schestowi@host109-155-92-45.range109-155.btcentralplus.com has just authenticated as you (schestowitz)Oct 05 12:18
*roy (~schestowi@unaffiliated/schestowitz) has joined #boycottnovellOct 05 12:18
*ChanServ gives channel operator status to royOct 05 12:18
schestowitz>>>> The attacks are resuming now, so I'll give it a go.Oct 05 16:59
schestowitz>>>Oct 05 16:59
schestowitz>>> Both sites seem responsive.  Which combinations of mitigation effortsOct 05 16:59
schestowitz>>> worked?Oct 05 16:59
schestowitz>>Oct 05 16:59
schestowitz>> it's 6am here and I just woke up to deal with a serious wave of attacksOct 05 16:59
schestowitz>> again. Maybe the attacker woke up. Maybe it's somewhere in east Europe,Oct 05 16:59
schestowitz>> I wonder...Oct 05 16:59
schestowitz>>Oct 05 16:59
schestowitz>> There were no special mitigation efforts overnight. I need to workOct 05 16:59
schestowitz>> today, so waking up this early is bad, and it's giving me bad dreams, too...Oct 05 16:59
schestowitz> Oct 05 16:59
schestowitz> The sysadmin part of the job I had around 2000 gave me nightmares, too.Oct 05 16:59
schestowitz>  We had the misery of being co-located with many Windows servers, prettyOct 05 17:00
schestowitz> much all of which were cracked all the time and constantly probing fromOct 05 17:00
schestowitz> inside the server room in addition to frequently consuming close to 100%Oct 05 17:00
schestowitz> of the bandwidth in distributing cracked software or attacks.Oct 05 17:00
schestowitzThe attackers may as well be zombie servers; I don't know what can be deduced from headers. They're all "Windows NT", without exception.Oct 05 17:00
schestowitz> I can't think of any other mitigation techniques for the load-based tcpOct 05 17:00
schestowitz> attacks beyond the three.Oct 05 17:00
schestowitz> Oct 05 17:00
schestowitz> a. Rate limiting upstream on the Varnish server's external interfaceOct 05 17:00
schestowitz> using iptables (or on the router), but with settings that allow normalOct 05 17:00
schestowitz> use of the web sites sharing the Varnish server.Oct 05 17:00
schestowitzI have spoken to Tracy and he's prepared to help at Varnish level. Having said that, the attacker has slown down. Rianne monitored the server load all day and responded accordingly. There were about 6 attacks from 9 to 6 (which were nearly successful -- far less than on Friday. The attacker might be getting bored now.Oct 05 17:00
schestowitzlast attack was 5 minutes ago...Oct 05 17:00
schestowitz Oct 05 17:00
schestowitz> b. Adding mod_evasive *and* rpaf to the Apache2 server.  The module willOct 05 17:00
schestowitz> be useless without using rpaf to label the connections, so it is needed.Oct 05 17:00
schestowitz>  But rpaf is out of date.Oct 05 17:00
schestowitzThanks for letting me know. I might want to translate to real IP from varnish either way; this can improve the experience in TM in various ways, inc. stats like hit counts.Oct 05 17:00
schestowitz Oct 05 17:00
schestowitz> c. Risking a dynamic blocking script on the Varnish server.  InOct 05 17:00
schestowitz> GNU/Linux this has to be perl or python or C or other.  But it isOct 05 17:00
schestowitz> otherwise very easy to implement in PF, if the Varnish server wereOct 05 17:00
schestowitz> running OpenBSD, FreeBSD, or Debian GNU/kFreeBSD.  In PF it would be twoOct 05 17:00
schestowitz> lines, with a one-line cron job to clean up expired table entries.Oct 05 17:00
schestowitzhttps://joindiaspora.com/posts/4860344Oct 05 17:02
-TechrightsBN/#boycottnovell-@schestowitz@joindiaspora.com reshared: connection... ![connection...](http://38.media.tumblr.com/ff2274830017260ed7ee093eaac979ec/tumblr_nb2d1miQmB1qzelg1o1_400.jpg) #connection #cropcircle #cropcirclesOct 05 17:02
schestowitz"The number of shapes in length, bread and total are prime numbers. Wow!"Oct 05 17:02
schestowitzhttps://joindiaspora.com/posts/4860218Oct 05 17:02
-TechrightsBN/#boycottnovell-@schestowitz@joindiaspora.com: Erdoğan can't handle the truth http://www.newsweek.com/turkeys-erdogan-says-he-increasingly-against-internet-every-day-275014 already forgetting the Armenian genocide, too https://en.wikipedia.org/wiki/Armenian_GenocideOct 05 17:02
-TechrightsBN/#boycottnovell--> www.newsweek.com | [ http://ur1.ca/iat5l ]Oct 05 17:02
schestowitz"In Turkey it's illegal to talk about the Armenian Genocide (i think still) so Erdogan is more likely denying then just forgetting it."Oct 05 17:02
-TechrightsBN/#boycottnovell--> en.wikipedia.org | Armenian Genocide - Wikipedia, the free encyclopedia [ http://ur1.ca/iat5m ]Oct 05 17:02
schestowitzhttps://en.wikipedia.org/wiki/Meta-object_protocolOct 05 17:05
-TechrightsBN/#boycottnovell-en.wikipedia.org | Metaobject - Wikipedia, the free encyclopedia [ http://ur1.ca/iat63 ]Oct 05 17:05
schestowitzhttps://en.wikipedia.org/wiki/Dynamic_dispatchOct 05 17:05
-TechrightsBN/#boycottnovell-en.wikipedia.org | Dynamic dispatch - Wikipedia, the free encyclopedia [ http://ur1.ca/iat65 ]Oct 05 17:05
schestowitzhttps://joindiaspora.com/posts/4852059Oct 05 17:05
-TechrightsBN/#boycottnovell-@schestowitz@joindiaspora.com: Indian Developers Redesigning Linux Kernel With OOP, C++ Support http://www.phoronix.com/scan.php?page=news_item&px=MTgwMzQ #india #linux #kernelOct 05 17:05
-TechrightsBN/#boycottnovell--> www.phoronix.com | [Phoronix] Indian Developers Redesigning Linux Kernel With OOP, C++ Support [ http://ur1.ca/iakqq ]Oct 05 17:05
schestowitz"Oct 05 17:05
schestowitzSummarizing and paraphrasing Kay's critique of C++, Java, Objective-C, Delphi, etc: key elements of a "true" OO language missing from these include:Oct 05 17:05
schestowitz    Everything is an objectOct 05 17:05
schestowitz    A Meta-Object ProtocolOct 05 17:05
schestowitz    Dynamic dispatchOct 05 17:05
schestowitzThe advantages are very clear when you use a language like Common Lisp or Kay's own Smalltalk, and forever after you will find C++ etc limiting and frustrating.Oct 05 17:05
schestowitzIt is sometimes claimed that the added certainty provided by compile-time type checking in C++ etc is an advantage, even a necessity, particularly at scale, and there is certainly something to that claim. It does indeed make things easier... for the compiler. However, in a programmable programming language like Lisp it is possible to "bolt on" any of the constraints that more static languages claim as advantageous if and when Oct 05 17:05
schestowitzdesired/necessary without losing the huge speed advantages that come from interactive programming in a "live" environment.Oct 05 17:05
schestowitzI gather that Python and Ruby fit the "true OO" bill too, though I have very little experience with the former and none with the latter so I can't comment on them.Oct 05 17:05
schestowitz"Oct 05 17:05
schestowitzhttps://joindiaspora.com/posts/4860840Oct 05 17:07
-TechrightsBN/#boycottnovell-@schestowitz@joindiaspora.com: "Washington blinded itself to the growing radicalism of the Syrian opposition" which it trained and armed http://consortiumnews.com/2014/10/03/whos-to-blame-for-isis-surprise/Oct 05 17:07
schestowitz"Oct 05 17:07
-TechrightsBN/#boycottnovell--> consortiumnews.com | Who’s to Blame for ISIS ‘Surprise’? | Consortiumnews [ http://ur1.ca/iat6p ]Oct 05 17:07
schestowitz"all the better to portray the Assad regime as the “bad guys” and the rebels as the “good guys.” " There is an Anarchist faction fighting Assad and the Jihadi's who are both the "bad guys"Oct 05 17:07
schestowitzhttp://truth-out.org/news/item/18617-syrian-anarchist-challenges-the-rebel-regime-binary-view-of-resistanceOct 05 17:07
schestowitz"Oct 05 17:07
-TechrightsBN/#boycottnovell-truth-out.org | Syrian Anarchist Challenges the Rebel/Regime Binary View of Resistance [ http://ur1.ca/iat6q ]Oct 05 17:07
schestowitzhttps://joindiaspora.com/posts/4861682Oct 05 17:08
-TechrightsBN/#boycottnovell-@schestowitz@joindiaspora.com: Using "national security" to crack down on the Web - Russia follows these Western footsteps http://mybroadband.co.za/news/internet/111072-putin-to-defend-russias-internet.htmlOct 05 17:08
schestowitz"they may experience attacks from the US (NSA...)p"Oct 05 17:08
-TechrightsBN/#boycottnovell--> mybroadband.co.za | Putin to defend Russia’s Internet [ http://ur1.ca/iat6r ]Oct 05 17:08
*schestowitz has quit (Quit: Konversation term)Oct 05 17:19
*schestowitz (~schestowi@unaffiliated/schestowitz) has joined #boycottnovellOct 05 17:20
*ChanServ gives channel operator status to schestowitzOct 05 17:20
schestowitz>> The attackers may as well be zombie servers; I don't know what can beOct 05 18:46
schestowitz>> deduced from headers. They're all "Windows NT", without exception.Oct 05 18:46
schestowitz> Oct 05 18:46
schestowitz> My guess would be desktops as much as servers.  They are plugged intoOct 05 18:47
schestowitz> ethernet 24/7 these days and many work places forbid turning them offOct 05 18:47
schestowitz> because "security".  Many home users copy that work practice.Oct 05 18:47
schestowitz> Oct 05 18:47
schestowitz> There is some passive fingerprinting built into iptables borrowed fromOct 05 18:47
schestowitz> PF.  But neither have been updated latelyOct 05 18:47
schestowitz> Oct 05 18:47
schestowitz>  http://cvsweb.openbsd.org/cgi-bin/cvsweb/src/etc/pf.osOct 05 18:47
schestowitz> Oct 05 18:47
-TechrightsBN/#boycottnovell-cvsweb.openbsd.org | CVS log for src/etc/pf.os [ http://ur1.ca/iatjk ]Oct 05 18:47
schestowitz> and are missing the recent versions of Vista and even other systems likeOct 05 18:47
schestowitz> openbsd 5.5 / 5.6 itself.  Port scanning the attackers would be a moreOct 05 18:47
schestowitz> solid identification, but probably best not to waste time on that.Oct 05 18:47
schestowitz> Oct 05 18:47
schestowitz>>> I can't think of any other mitigation techniques for the load-based tcpOct 05 18:47
schestowitz>>> attacks beyond the three.Oct 05 18:47
schestowitz>>>Oct 05 18:47
schestowitz>>> a. Rate limiting upstream on the Varnish server's external interfaceOct 05 18:47
schestowitz>>> using iptables (or on the router), but with settings that allow normalOct 05 18:47
schestowitz>>> use of the web sites sharing the Varnish server.Oct 05 18:47
schestowitz>>Oct 05 18:47
schestowitz>> I have spoken to Tracy and he's prepared to help at Varnish level.Oct 05 18:47
schestowitz>> Having said that, the attacker has slown down. Rianne monitored theOct 05 18:47
schestowitz>> server load all day and responded accordingly. There were about 6Oct 05 18:47
schestowitz>> attacks from 9 to 6 (which were nearly successful -- far less than onOct 05 18:47
schestowitz>> Friday. The attacker might be getting bored now.Oct 05 18:47
schestowitz>>Oct 05 18:47
schestowitz>> last attack was 5 minutes ago...Oct 05 18:47
schestowitz> Oct 05 18:47
schestowitz> What does he think of finding some settings for --limit andOct 05 18:47
schestowitz> --limit-burst for iptables?Oct 05 18:47
schestowitz> Oct 05 18:47
schestowitz>>> b. Adding mod_evasive *and* rpaf to the Apache2 server.  The module willOct 05 18:47
schestowitz>>> be useless without using rpaf to label the connections, so it is needed.Oct 05 18:47
schestowitz>>>  But rpaf is out of date.Oct 05 18:47
schestowitz>>Oct 05 18:47
schestowitz>> Thanks for letting me know. I might want to translate to real IP fromOct 05 18:47
schestowitz>> varnish either way; this can improve the experience in TM in variousOct 05 18:47
schestowitz>> ways, inc. stats like hit counts.Oct 05 18:47
schestowitz> Oct 05 18:47
schestowitz> rpaf may not be as bad off as it could be.  The Ubuntu 14.04 LTSOct 05 18:47
schestowitz> repository has it packaged as 'libapache2-mod-rpaf'  On my CentOS 6 testOct 05 18:48
schestowitz> system, getting the source from Launchpad,Oct 05 18:48
schestowitz> Oct 05 18:48
schestowitz>  https://launchpad.net/ubuntu/+source/libapache2-mod-rpaf/0.6-3Oct 05 18:48
schestowitz> Oct 05 18:48
-TechrightsBN/#boycottnovell-launchpad.net | 0.6-3 : “libapache2-mod-rpaf” package : Ubuntu [ http://ur1.ca/iatjq ]Oct 05 18:48
schestowitz> and following these directions worked to create the module and load it:Oct 05 18:48
schestowitz> Oct 05 18:48
schestowitz>  http://www.ctkn.net/2011/10/install-mod_rpaf-on-centos-5-centos-6/Oct 05 18:48
schestowitz> Oct 05 18:48
schestowitz> As a result I see my actual client ip in the REMOTE_ADDR variable ratherOct 05 18:48
-TechrightsBN/#boycottnovell-www.ctkn.net | Install mod_rpaf on CentOS 5, CentOS 6 | ctkn.net [ http://ur1.ca/iatjr ]Oct 05 18:48
schestowitz> than localhost, despite going via Varnish.  So it looks like it works inOct 05 18:48
schestowitz> Apache 2.2 without hacking.Oct 05 18:48
schestowitz> Oct 05 18:48
schestowitz> So apxs works at least, but the dsc file might be usable to create aOct 05 18:48
schestowitz> source rpm.  From there, mod_evasive is in the repository.Oct 05 18:48
schestowitz> Oct 05 18:48
schestowitz>>> c. Risking a dynamic blocking script on the Varnish server.  InOct 05 18:48
schestowitz>>> GNU/Linux this has to be perl or python or C or other.  But it isOct 05 18:48
schestowitz>>> otherwise very easy to implement in PF, if the Varnish server wereOct 05 18:48
schestowitz>>> running OpenBSD, FreeBSD, or Debian GNU/kFreeBSD.  In PF it would be twoOct 05 18:48
schestowitz>>> lines, with a one-line cron job to clean up expired table entries.Oct 05 18:48
schestowitz> Oct 05 18:48
schestowitz> I've made two changes to the perl script, if it is still interesting.  IOct 05 18:48
schestowitz> had forgotten to put a leading zero on single-digit minutes.  And IOct 05 18:48
schestowitz> limit the iptable rule generation to 1 per overflow.Oct 05 18:48
schestowitzI've saved the latest version. For now it seems feasible to block the attacks manually until the attacker gives up. If the attacks continue tomorrow, then it's time to take it further.Oct 05 18:48
*freedomrun (~quassel@unaffiliated/freedomrun) has joined #boycottnovellOct 05 20:38
*freedomrun has quit (Read error: Connection reset by peer)Oct 05 20:42
schestowitz> It turns out mod_extract_forwarded is in a CentOS repository, I'm not> sure which one, if not the defaults then EPEL.Oct 05 21:26
schestowitz> Oct 05 21:26
schestowitz> It adds one file,Oct 05 21:26
schestowitz> Oct 05 21:26
schestowitz>   /etc/httpd/conf.d/mod_extract_forwarded.confOct 05 21:26
schestowitz> Oct 05 21:26
schestowitz> and that file needs one line edited,Oct 05 21:26
schestowitz> Oct 05 21:26
schestowitz>   MEFaccept x.x.x.xOct 05 21:26
schestowitz> Oct 05 21:26
schestowitz> where x.x.x.x is the address of the proxy.  After that it does theOct 05 21:26
schestowitz> substitution.  It can do more than rpaf, but IMHO the best is that it isOct 05 21:26
schestowitz> in the repository.Oct 05 21:26
schestowitz> Oct 05 21:26
schestowitz> So, adding mod_evasive20 and mod_extract_forwarded can be done with theOct 05 21:26
schestowitz> repository on the Apache2 machine.Oct 05 21:26
schestowitzWhen someone told me about rpaf it was said I'd need to reconfig the varnish side too. I am so worried about messing it up if I have a go at it.Oct 05 21:26
*freedomrun (~quassel@unaffiliated/freedomrun) has joined #boycottnovellOct 06 06:13
schestowitz> Only mod_evasive might have something to do with the Varnish server, ifOct 06 08:06
schestowitz> you have it provide feedback via a script to the Varnish server aboutOct 06 08:06
schestowitz> which address to block using iptables.  I'm a proponent of blocking withOct 06 08:06
schestowitz> iptables, but that step can be skipped because it is complex.Oct 06 08:06
schestowitz> Otherwise, as far as I can tell neither mod_extract_forwarded (MEF) orOct 06 08:06
schestowitz> rpaf would need to mess with the Varnish side of things.Oct 06 08:06
schestowitz> Oct 06 08:06
schestowitz> Those are both Apache2 modules and running one or the other would onlyOct 06 08:06
schestowitz> affect the Apache server, specifically the httpd.  They change oneOct 06 08:07
schestowitz> variable.  MEF is a little more tunable in that you can configure whichOct 06 08:07
schestowitz> proxies to believe concerning what they say is in X-Forwarded-For and itOct 06 08:07
schestowitz> has a debugging mode.Oct 06 08:07
schestowitz> Oct 06 08:07
schestowitz> "mod_extract_forwarded hooks itself into Apache's headerOct 06 08:07
schestowitz> parsing phase and looks for the X-Forwarded-For headerOct 06 08:07
schestowitz> which some (most?) proxies add to the proxied HTTPOct 06 08:07
schestowitz> requests. It extracts the IP from the X-Forwarded-ForOct 06 08:07
schestowitz> and modifies the connection data so to the rest ofOct 06 08:07
schestowitz> Apache the request looks like it came from that IPOct 06 08:07
schestowitz> rather than the proxy IP."Oct 06 08:07
schestowitz> Oct 06 08:07
schestowitz> http://www.redhat.com/archives/fedora-extras-commits/2006-April/msg02297.htmlOct 06 08:07
-TechrightsBN/#boycottnovell-www.redhat.com | rpms/mod_extract_forwarded/devel mod_extract_forwarded.conf, NONE, 1.1 [ http://ur1.ca/iavtj ]Oct 06 08:07
schestowitz> Oct 06 08:07
schestowitz> Since either the rpaf or MEF method allows running mod_evasive (also onOct 06 08:07
schestowitz> the Apache2 server) and does not need any changes to the VarnishOct 06 08:07
schestowitz> machine, I would propose that you try it in a VM to check it out.  EvenOct 06 08:07
schestowitz> after deployment, MEF is easy to disable, either by commenting out theOct 06 08:07
schestowitz> configuration directives or else by also commenting out theOct 06 08:07
schestowitz> corresponding LoadModule directive.  Very importantly, MEF andOct 06 08:07
schestowitz> mod_evasive are in the repositories.Oct 06 08:07
schestowitz> Oct 06 08:07
schestowitz> Neither MEF nor rpaf are widely blogged about despite the usefulnessOct 06 08:07
schestowitz> they have for a modern web infrastructure.Oct 06 08:07
schestowitz> Oct 06 08:07
schestowitz> As mentioned above either would allow you to run mod_evasive.  EitherOct 06 08:07
schestowitz> would also fix the blocking of addresses in the wiki, etc. since theOct 06 08:07
schestowitz> original address would be known to the server instead of just seeing theOct 06 08:07
schestowitz> proxy.Oct 06 08:07
schestowitzThere have been no successful attack overnight and so far this morning things are calm. I'm hoping the attacker really did give up for good.Oct 06 08:07
schestowitzhttps://joindiaspora.com/posts/4860594Oct 06 08:35
-TechrightsBN/#boycottnovell-@schestowitz@joindiaspora.com: History of aggressive intervention abroad (e.g. Latin America, SE Asia) discredits #hk movement http://www.opednews.com/articles/Libeling-a-democracy-movem-by-Dave-Lindorff-Arrogance_Conspiracy_Democracy-In-Action_History-141004-559.htmlOct 06 08:35
-TechrightsBN/#boycottnovell--> www.opednews.com | Article: Libeling a democracy movement: Accusing Hong Kong Activists of Being Tools of US Policy is Both Ignorant and Dangerous | OpEdNews [ http://ur1.ca/iavvj ]Oct 06 08:35
schestowitz"There is a simple solution to stop tainting legitimate movements: the US stopping to fund them."Oct 06 08:35
*freedomrun has quit (Remote host closed the connection)Oct 06 10:11
*pidgin_log (~roy@host109-155-92-45.range109-155.btcentralplus.com) has joined #boycottnovellOct 06 10:42
schestowitzhttps://twitter.com/TitEzine_Gov/status/519169587775287296Oct 06 19:00
-TechrightsBN/#boycottnovell-@TitEzine_Gov: @schestowitz why is dumbed-down hip hop so carefree & ignorant in politics? http://t.co/8oNtvcAv6e #wwiii #propaganda #isisOct 06 19:00
-TechrightsBN/#boycottnovell--> tinyurl.com | NO TITLEOct 06 19:00
schestowitzhttps://joindiaspora.com/posts/4867257Oct 06 19:10
-TechrightsBN/#boycottnovell-@schestowitz@joindiaspora.com: Open Source GNOME 3 Desktop Environment Wins Back Fans http://thevarguy.com/open-source-application-software-companies/100614/open-source-gnome-3-desktop-environment-wins-back-fans #gnome #gnu #linuxOct 06 19:10
-TechrightsBN/#boycottnovell--> thevarguy.com | Open Source GNOME 3 Desktop Environment Wins Back Fans | Open Source Application Software Companies content from The VAR Guy [ http://ur1.ca/iawlb ]Oct 06 19:10
schestowitz"I, for one, am back. But I’m a recovering DE hopper. I really enjoy how Adwaita and the CSD have made the apps look amazing and behave in a coherent way. Except for those apps that do not really conform, like transmission."Oct 06 19:10
schestowitzhttps://joindiaspora.com/posts/4867285Oct 06 19:12
-TechrightsBN/#boycottnovell-@schestowitz@joindiaspora.com reshared: Prueba de habilidad: ¿en qué plaza está aparcado el coche?Oct 06 19:12
-TechrightsBN/#boycottnovell- Photo by 7tgregorio@joindiaspora.com: https://joindiaspora.s3.amazonaws.com/uploads/images/thumb_medium_579cbfe9e562ac77ff6f.jpgOct 06 19:12
schestowitz"87"Oct 06 19:12
schestowitz'Well said Cronos! Hear hear!"Oct 06 19:13
schestowitzhttps://joindiaspora.com/posts/4860567Oct 06 19:13
-TechrightsBN/#boycottnovell-@schestowitz@joindiaspora.com: AP on "CIA-backed effort to obtain DNA samples from children" and the effect on this disastrous plot http://www.theeagle.com/news/world/pakistan-detects-record-number-of-polio-cases/article_0e1e4041-268b-5df5-9d94-60a4f090a19d.html #polioOct 06 19:13
-TechrightsBN/#boycottnovell--> www.theeagle.com | Pakistan detects record number of polio cases - The Eagle: World [ http://ur1.ca/iazk0 ]Oct 06 19:13
schestowitzhttps://joindiaspora.com/posts/4867682Oct 06 19:14
-TechrightsBN/#boycottnovell-@schestowitz@joindiaspora.com: Top 4 Alternatives for iOS and #Android – Firefox, Ubuntu, #Tizen and #Sailfish http://thefusejoplin.com/2014/10/top-4-alternatives-ios-android-firefox-ubuntu-tizen-sailfish/ spot the trend. All are #linux based!Oct 06 19:14
-TechrightsBN/#boycottnovell--> thefusejoplin.com | Top 4 Alternatives for iOS and Android - Firefox, Ubuntu, Tizen and Sailfish - The Fuse Joplin [ http://ur1.ca/iazk2 ]Oct 06 19:14
schestowitz"sailfish os is not linux based. it actually is linux! important fact :) the others probably as well though."Oct 06 19:14
schestowitz"Which one is fully free software? :)'Oct 06 19:14
schestowitz"Firefox OS except the drivers and the logo."Oct 06 19:14
schestowitz"Oct 06 19:14
schestowitzStrictly speaking all are Linux, or Linux-based, it depends how you see them."Oct 06 19:14
schestowitzLinux is a kernel, so let's not say "IS Linux", just Linux-inclusive or Linux-powers/basedOct 06 19:15
schestowitzhttps://joindiaspora.com/posts/4847405Oct 07 08:53
-TechrightsBN/#boycottnovell-@schestowitz@joindiaspora.com: Actions have consequences (or:why I'm not fixing Intel's bugs any more) http://mjg59.dreamwidth.org/32778.html "part of the anti-women #GamerGate campaign"Oct 07 08:53
-TechrightsBN/#boycottnovell--> mjg59.dreamwidth.org | mjg59 | Actions have consequences (or: why I'm not fixing Intel's bugs any more)Oct 07 08:53
schestowitz"Oct 07 08:53
schestowitzHere's a more direct link to the Tso thing, thanks. http://www.itwire.com/business-it-news/open-source/57290-garrett-slams-tso-as-rape-apologistOct 07 08:53
schestowitzI can't tell if Garrett is changing his mind about a few things or if he's trolling or simply unhinged.Oct 07 08:53
schestowitzThe whole sexism in tech issue is broaching big publisher news and it's directed in the right direction - at big, rich and deeply misogynistic companies. Today, someone I work with brought the issue up in a defensive way, saying that it was bad that one of the few remaining growth industries in the US was would be forced away from meritocracy. I think they got it from NPR. I don't know if NPR was defending the industry that way, butOct 07 08:53
schestowitzgiven who runs PBS, it would not surprise me. In any case, despite Microsoft to deflect it all as a problem of too much freedom, the outrage seems to be pointed at companies with big advertising budgets that say and do really evil things.Oct 07 08:53
schestowitz"Oct 07 08:53
-TechrightsBN/#boycottnovell-www.itwire.com | iTWire - Garrett slams Ts'o as 'rape apologist' [ http://ur1.ca/at3le ]Oct 07 08:53
schestowitzhttp://fair.org/extra-online-articles/who-rules-public-tv/Oct 07 08:53
-TechrightsBN/#boycottnovell-fair.org | Who Rules Public TV? — FAIROct 07 08:53
schestowitzhttps://joindiaspora.com/posts/4870921Oct 07 09:09
-TechrightsBN/#boycottnovell-@schestowitz@joindiaspora.com: Splitting #hp but not the pro- #swpats and anti-Linux division apart from the hardware side (and Linux-based gear) http://www.theverge.com/2014/10/6/6917471/hp-pc-business-split-hp-enterprise-announcementOct 07 09:09
schestowitz"They really do not know what to do to be a good engineering company again."Oct 07 09:09
-TechrightsBN/#boycottnovell--> www.theverge.com | HP announces plan to split in two | The Verge [ http://ur1.ca/ib35u ]Oct 07 09:09
schestowitz"Yes, HP's engineering competence was lost long ago, and it's hard to see how corporate reshuffling can bring it back."Oct 07 09:09
schestowitzhttps://joindiaspora.com/posts/4873089Oct 07 09:44
-TechrightsBN/#boycottnovell-@schestowitz@joindiaspora.com: #GNU #ddrescue 1.19 released http://lists.gnu.org/archive/html/bug-ddrescue/2014-10/msg00002.htmlOct 07 09:44
-TechrightsBN/#boycottnovell--> lists.gnu.org | [Bug-ddrescue] GNU ddrescue 1.19 released [ http://ur1.ca/ib39g ]Oct 07 09:44
schestowitz"Ddrescue - GNU Project - Free Software Foundation (FSF) https://www.gnu.org/software/ddrescue/ddrescue.html "Oct 07 09:44
-TechrightsBN/#boycottnovell-www.gnu.org | Ddrescue - GNU Project - Free Software Foundation (FSF) [ http://ur1.ca/ib39h ]Oct 07 09:44
schestowitzhttps://joindiaspora.com/posts/4872928Oct 07 09:44
schestowitz"I see many the same."Oct 07 09:44
-TechrightsBN/#boycottnovell-Not a Diaspora post?Oct 07 09:45
schestowitzHe got visited by the police at one point, over his mind....Oct 07 09:45
*benJIman_ (~benji@li273-180.members.linode.com) has joined #boycottnovellOct 07 09:47
*benJIman has quit (Write error: Broken pipe)Oct 07 09:50
*cubelog has quit (Ping timeout: 272 seconds)Oct 07 09:54
*cubelog (~cubeman@maxhost.org) has joined #boycottnovellOct 07 09:59
*pidgin_log has quit (*.net *.split)Oct 07 10:58
*pidgin_log (~roy@host109-155-92-45.range109-155.btcentralplus.com) has joined #boycottnovellOct 07 11:01
schestowitzhttp://mediamatters.org/video/2014/10/06/foxs-bernie-goldberg-many-africans-are-backward/201039Oct 07 11:22
-TechrightsBN/#boycottnovell-mediamatters.org | Fox's Bernie Goldberg: Many Africans "Are Backward People, They Do Believe In Witch Doctors" | Video | Media Matters for America [ http://ur1.ca/ib3o3 ]Oct 07 11:22
*freedomrun (~quassel@unaffiliated/freedomrun) has joined #boycottnovellOct 07 12:03
schestowitzhttps://joindiaspora.com/posts/4871348Oct 07 14:21
-TechrightsBN/#boycottnovell-@schestowitz@joindiaspora.com: 5 powerful things you didn't know Chromebooks could do http://www.pcworld.com/article/2691209/5-powerful-things-you-didnt-know-chromebooks-could-do.html run #android apps, have #gnu #linux installedOct 07 14:21
schestowitz"From personal experience, I find Google's support for ODF still so limited that I'm convinced they see it as a bad business decision. I don't see why an open standard like .odp for presentations barely opens online. Every presentation in LibreOffice that I create looks like a disaster after uploading it to Google Docs and then try to open it from there. Why the hell does a company as profitable as Google not have this figured out Oct 07 14:21
-TechrightsBN/#boycottnovell--> www.pcworld.com | 5 powerful things you didn't know Chromebooks could do | PCWorld [ http://ur1.ca/ib340 ]Oct 07 14:21
schestowitzyet? I don't even have any animations or graphics or complex formatting in these documents - just text."Oct 07 14:21
schestowitzI heard from a friend that his spreadheet turned into "spread shit"Oct 07 14:21
*freedomrun has quit (Remote host closed the connection)Oct 07 15:22
*freedomrun (~quassel@unaffiliated/freedomrun) has joined #boycottnovellOct 07 15:23
*freedomrun has quit (Remote host closed the connection)Oct 07 15:42
*freedomrun (~quassel@unaffiliated/freedomrun) has joined #boycottnovellOct 07 16:12
*freedomrun has quit (Remote host closed the connection)Oct 07 17:54
schestowitzhttps://joindiaspora.com/posts/4876748Oct 07 20:41
-TechrightsBN/#boycottnovell-@schestowitz@joindiaspora.com: Spotify is Powered by Linux and Open Source http://www.linux.com/news/enterprise/case-studies/790458-spotify-is-powered-by-linux-and-open-source/ #spotify #gnu #linux #ubuntu #debianOct 07 20:41
schestowitzLast time I checked they even have a Debian repo for the client application.""Oct 07 20:41
-TechrightsBN/#boycottnovell--> www.linux.com | Spotify is Powered by Linux and Open Source | Linux.com [ http://ur1.ca/ib5uf ]Oct 07 20:41
*cubelog has quit (Read error: Connection reset by peer)Oct 07 20:53
*cubelog (~cubeman@maxhost.org) has joined #boycottnovellOct 07 20:56
schestowitzhttps://joindiaspora.com/posts/4857902Oct 07 22:22
-TechrightsBN/#boycottnovell-@schestowitz@joindiaspora.com: How I Accidentally Became an Android Developer https://medium.com/@redman/how-i-accidentally-became-an-android-developer-my-journey-from-ios-to-android-52438ca4fd0 from #hype (the #apple hype) to pragmatism (Linux)Oct 07 22:22
-TechrightsBN/#boycottnovell--> medium.com | How I Accidentally Became an Android Developer: My Journey from iOS to Android — Medium [ http://ur1.ca/iaqr6 ]Oct 07 22:22
schestowitz"Apple wants customers. Developers are a necessary evil to them."Oct 07 22:22
*freedomrun (~quassel@unaffiliated/freedomrun) has joined #boycottnovellOct 07 22:53
schestowitzhttps://joindiaspora.com/posts/4870983Oct 07 23:42
-TechrightsBN/#boycottnovell-@schestowitz@joindiaspora.com: Not everyone happy with #gnome in #debian http://mrpogson.com/2014/10/06/just-say-no/Oct 07 23:42
schestowitz"Oct 07 23:42
-TechrightsBN/#boycottnovell--> mrpogson.com | Just Say No | Robert Pogson [ http://ur1.ca/ib35i ]Oct 07 23:42
schestowitz    BTW for CD1 there are also KDE and other options which people can download as CD1Oct 07 23:42
schestowitzJust download the DVD1 image and it includes the choice of all DEs that Debian supports. What's the point in CD images these days?Oct 07 23:42
schestowitz"Oct 07 23:42
schestowitzhttps://joindiaspora.com/posts/4875079Oct 07 23:42
-TechrightsBN/#boycottnovell-@schestowitz@joindiaspora.com: In "2007, six cruise missiles armed with W80-1 warheads were mistakenly loaded onto a B-52" https://en.wikipedia.org/wiki/W80_%28nuclear_warhead%29 nuclear warheadsOct 07 23:42
-TechrightsBN/#boycottnovell--> en.wikipedia.org | W80 (nuclear warhead) - Wikipedia, the free encyclopedia [ http://ur1.ca/ib6hq ]Oct 07 23:42
schestowitz"If I could only tell you......I can tell you this they are missing 5 from inventory that got loaded on a truck and have not been accounted for. That was news a while back. What I know would litterally make what you posted be nothing. Those weapons where on a B-52, they were in safe status and not armed for transport. To be armed the aircraft has to recieve codes and confirm to arm. So they were the same as if they had been in the Oct 07 23:43
schestowitzrevetment they are housed in. That I would not be worried about."Oct 07 23:43
*pidgin_log has quit (Quit: Leaving.)Oct 07 23:57
*freedomrun has quit (Remote host closed the connection)Oct 08 00:04
*freedomrun (~quassel@unaffiliated/freedomrun) has joined #boycottnovellOct 08 05:41
*freedomrun has quit (Remote host closed the connection)Oct 08 08:50
*pidgin_log (~roy@host109-155-92-45.range109-155.btcentralplus.com) has joined #boycottnovellOct 08 09:23
*freedomrun (~quassel@unaffiliated/freedomrun) has joined #boycottnovellOct 08 09:40
schestowitzhttps://joindiaspora.com/posts/4885055Oct 08 21:28
-TechrightsBN/#boycottnovell-@schestowitz@joindiaspora.com: BEST DISTRO 2014 http://www.linuxvoice.com/linux-distros/ #gnu #linuxOct 08 21:28
schestowitz"I use #linux #deepin"Oct 08 21:28
-TechrightsBN/#boycottnovell--> www.linuxvoice.com | Linux Distros | Linux VoiceOct 08 21:28
schestowitz"huh. Debian is my personal fave but I've heard a lot about Arch. Isn't that a source-only distro?'Oct 08 21:28
schestowitz"Using Arch since 2008!'Oct 08 21:28
schestowitz"Oct 08 21:28
schestowitz@Lee Azzarello. Negatory. It's a pre-built binary, bleeding-edge, distroOct 08 21:28
schestowitzSource-only distros would include Sorcerer, Gentoo, LFS, etc.Oct 08 21:28
schestowitz'Oct 08 21:28
*freedomrun has quit (Remote host closed the connection)Oct 08 21:45
*schestowitz has quit (Quit: Konversation term)Oct 08 21:53
*schestowitz (~schestowi@unaffiliated/schestowitz) has joined #boycottnovellOct 09 01:03
*ChanServ gives channel operator status to schestowitzOct 09 01:03
*freedomrun (~quassel@unaffiliated/freedomrun) has joined #boycottnovellOct 09 05:53
*freedomrun has quit (Read error: Connection reset by peer)Oct 09 06:03
*freedomrun (~quassel@unaffiliated/freedomrun) has joined #boycottnovellOct 09 06:03
*freedomrun has quit (Remote host closed the connection)Oct 09 08:10
*freedomrun (~quassel@unaffiliated/freedomrun) has joined #boycottnovellOct 09 09:17
schestowitzhttps://joindiaspora.com/posts/4890730Oct 09 13:02
-TechrightsBN/#boycottnovell-@schestowitz@joindiaspora.com: How far #amd for #linux has come http://www.phoronix.com/scan.php?page=news_item&px=MTgwODE now: http://www.phoronix.com/scan.php?page=news_item&px=MTgwODQ ttp://www.phoronix.com/scan.php?page=news_item&px=MTgwODMOct 09 13:02
-TechrightsBN/#boycottnovell--> www.phoronix.com | [Phoronix] A Look Back: When Everyone Had Problems With ATI/AMD On Linux [ http://ur1.ca/ibg9g ]Oct 09 13:02
-TechrightsBN/#boycottnovell--> www.phoronix.com | [Phoronix] New ARM Hardware Support For Linux 3.18 Kernel [ http://ur1.ca/ibg9h ]Oct 09 13:02
schestowitzhttp://www.phoronix.com/scan.php?page=news_item&px=MTgwODMOct 09 13:02
-TechrightsBN/#boycottnovell-www.phoronix.com | [Phoronix] AMD's Carrizo Gets Temperature Monitoring On Linux [ http://ur1.ca/ibg9i ]Oct 09 13:02
*schestowitz has quit (Quit: Konversation term)Oct 09 15:01
*schestowitz (~schestowi@unaffiliated/schestowitz) has joined #boycottnovellOct 09 15:03
*ChanServ gives channel operator status to schestowitzOct 09 15:03
schestowitzhttps://joindiaspora.com/posts/4891686Oct 09 17:00
schestowitz"bah - this guy should take his drones and bring them were most americans are killed - to CHIRAQ!"Oct 09 17:00
schestowitzVery few US citizens are killed in IraqOct 09 17:00
-TechrightsBN/#boycottnovell-Not a Diaspora post?Oct 09 17:01
schestowitzMany are killed in their home country because they have no health insurance, never mind obesity and other factors except a predatory heath 'system'...Oct 09 17:01
MinceRwhat's a "chiraq"?Oct 09 17:01
MinceRformer president of france?Oct 09 17:01
schestowitzI guess, but it's misspelledOct 09 17:03
schestowitzhttps://twitter.com/dailylinuxuser/status/520247854896779264Oct 09 17:06
-TechrightsBN/#boycottnovell-@dailylinuxuser: @schestowitz any indication as to why you are being targeted?Oct 09 17:06
schestowitzNo, not done anything controversial in a whileOct 09 17:06
schestowitzhttps://twitter.com/dailylinuxuser/status/520248274176204800Oct 09 17:06
-TechrightsBN/#boycottnovell-@dailylinuxuser: @schestowitz as some of your posts are political it could be the elite classes targeting your websitesOct 09 17:06
schestowitzI think it's more likely software-related, as it probably was before http://www.computerworld.com/article/2481919/internet/burying-the-truth--boycott-novell-hit-by-denial-of-service-attack.htmlOct 09 17:08
-TechrightsBN/#boycottnovell-www.computerworld.com | Burying the truth? Boycott Novell hit by Denial of Service attack | Computerworld [ http://ur1.ca/i9hfv ]Oct 09 17:08
schestowitzhttps://twitter.com/Vecchi_Paolo/status/520268712658485249Oct 09 17:53
-TechrightsBN/#boycottnovell-@Vecchi_Paolo: @schestowitz Then others will do it. @zarafagroupware about to release #WebRTC #SMIME #WebODF integrated in your company server #opensourceOct 09 17:53
schestowitzwow, several good ones, is it still exchange-centric, or has it dropped this strategy?Oct 09 17:53
schestowitzhttps://twitter.com/Vecchi_Paolo/status/520271845577474048Oct 09 18:02
-TechrightsBN/#boycottnovell-@Vecchi_Paolo: @schestowitz The whole point is to provide a #linux based alternative to MS Exchange/#office365 & @zarafagroupware is doing it very wellOct 09 18:02
schestowitz> Were you able to try mod_extract_forwarded and mod_evasive in your testOct 09 18:39
schestowitz> VM to see if they do anything useful for you?Oct 09 18:39
schestowitzIf the attacks continue (sometimes they stop), I can give a go to your script on varnish (Tracy seems open for action). TR is surprisingly robust and I wonder if just adding 2 CPU cores to TM would make give it enough protection (assuming the attacker does not grow his Windows zombies army).Oct 09 18:39
*freedomrun has quit (Remote host closed the connection)Oct 09 21:27
*freedomrun (~quassel@unaffiliated/freedomrun) has joined #boycottnovellOct 09 21:38
*freedomrun has quit (Remote host closed the connection)Oct 09 21:57
schestowitz"The Russians are always a good target of distraction, it's been working since Wilson was President."Oct 09 22:57
schestowitzhttps://joindiaspora.com/posts/4894683Oct 09 22:57
-TechrightsBN/#boycottnovell-@schestowitz@joindiaspora.com: Keith Alexander resorts to #russophobia to deflect and distract from his own criminal conduct http://www.vanityfair.com/online/daily/2014/10/keith-alexander-ed-snowden-russiaOct 09 22:57
-TechrightsBN/#boycottnovell--> www.vanityfair.com | Former Head of N.S.A.: Snowden Is Helping Russia | Vanity Fair [ http://ur1.ca/iblz0 ]Oct 09 22:57
schestowitzhttps://joindiaspora.com/posts/4894919Oct 09 22:58
-TechrightsBN/#boycottnovell-@schestowitz@joindiaspora.com: Let's try to compare #snowden who gave information to US citizens to those who gave it to Russians http://dailyfreepress.com/2014/10/08/rosenberg-panel/Oct 09 22:58
-TechrightsBN/#boycottnovell--> dailyfreepress.com | Panel explores Rosenberg, Snowden, espionage in America — The Daily Free Press [ http://ur1.ca/iblz3 ]Oct 09 22:58
schestowitz"Conveniently forgetting about Daniel Ellsberg/Pentagon Papers..."Oct 09 22:58
*MinceR_ (~mincer@unaffiliated/mincer) has joined #boycottnovellOct 10 02:41
*MinceR has quit (Ping timeout: 260 seconds)Oct 10 02:44
*freedomrun (~quassel@unaffiliated/freedomrun) has joined #boycottnovellOct 10 06:34
*MinceR_ is now known as MinceROct 10 06:44
*ChanServ gives channel operator status to MinceROct 10 06:44
*freedomrun has quit (Remote host closed the connection)Oct 10 07:25
*MinceR_ (~mincer@unaffiliated/mincer) has joined #boycottnovellOct 10 07:26
*MinceR has quit (Ping timeout: 250 seconds)Oct 10 07:29
*freedomrun (~quassel@unaffiliated/freedomrun) has joined #boycottnovellOct 10 07:30
*cubelog has quit (Ping timeout: 272 seconds)Oct 10 07:38
*cubelog (~cubeman@maxhost.org) has joined #boycottnovellOct 10 07:44
*freedomrun has quit (Remote host closed the connection)Oct 10 08:09
schestowitzhttps://joindiaspora.com/posts/4894683Oct 10 08:11
schestowitz"The Russians are always a good target of distraction, it's been working since Wilson was President."Oct 10 08:11
schestowitz"So says the one that is getting one million dollars a month for "consulting"."Oct 10 08:11
*MinceR_ is now known as MinceROct 10 08:43
*ChanServ gives channel operator status to MinceROct 10 08:43
MinceRwhat does that even mean -- russians are easy to distract?Oct 10 08:44
*freedomrun (~quassel@unaffiliated/freedomrun) has joined #boycottnovellOct 10 09:02
*freedomrun has quit (Remote host closed the connection)Oct 10 09:18
schestowitzMinceR: using Russians to distract from issuesOct 10 09:41
schestowitzbut now pedophiles and terrorists are "targets" tooOct 10 09:42
MinceRrussians are issues tooOct 10 10:30
*freedomrun (~quassel@unaffiliated/freedomrun) has joined #boycottnovellOct 10 11:10
*freedomrun has quit (Remote host closed the connection)Oct 10 17:42
*freedomrun (~quassel@unaffiliated/freedomrun) has joined #boycottnovellOct 10 20:54
schestowitzhttps://joindiaspora.com/posts/4900294Oct 11 03:32
-TechrightsBN/#boycottnovell-@schestowitz@joindiaspora.com: Tails OS Will Keep You Anonymous Online and Offline http://news.softpedia.com/news/Tails-OS-Will-Keep-You-Anonymous-Online-and-Offline-461689.shtml #tails #gnu #linux #debian #torOct 11 03:32
-TechrightsBN/#boycottnovell--> news.softpedia.com | Tails OS Will Keep You Anonymous Online and Offline - Softpedia [ http://ur1.ca/ibz5u ]Oct 11 03:32
schestowitz"Oct 11 03:32
schestowitzTails will not keep you anonymous online from NSA-grade COMINT.Oct 11 03:32
schestowitzPeriod.Oct 11 03:32
schestowitzI've explained numerous reasons why not many times here.Oct 11 03:32
schestowitz"Oct 11 03:32
schestowitz"Oct 11 03:32
schestowitzWhat are you suggesting? If perfection isn't possible, should we give up and do nothing? If we can't be assured of success, should we make no effort at all? Are you suggesting that privacy is impossible, so we should just learn to live without any privacy at all.Oct 11 03:32
schestowitzIf Tails is not our best alternative, suggest something better. If you don't have anything useful or helpful to write, why write?Oct 11 03:32
schestowitz"Oct 11 03:32
schestowitzhttps://joindiaspora.com/posts/4901560Oct 11 03:34
-TechrightsBN/#boycottnovell-@schestowitz@joindiaspora.com: #Mozilla Wags Finger at Advertising http://ostatic.com/blog/mozilla-wags-finger-at-advertising-community but "multiple initiatives that will put ads in front of Firefox browser users"Oct 11 03:34
-TechrightsBN/#boycottnovell--> ostatic.com | Mozilla Wags Finger at Advertising Community [ http://ur1.ca/ic2jb ]Oct 11 03:34
schestowitz"Even if the addons we have now don't block this, new addons will be created that do. If all else fails, we can create another fork of Firefox that will block these."Oct 11 03:34
*libertyboxes (~liberty@host109-155-92-45.range109-155.btcentralplus.com) has joined #boycottnovellOct 11 08:40
*liberty_back (~Liberium@host109-155-92-45.range109-155.btcentralplus.com) has joined #boycottnovellOct 11 08:40
*freedomrun has quit (Remote host closed the connection)Oct 11 09:40
*freedomrun (~quassel@unaffiliated/freedomrun) has joined #boycottnovellOct 11 09:45
*roy has quit (Read error: No route to host)Oct 11 14:18
*schestowitz_log has quit (Read error: Connection reset by peer)Oct 11 14:18
*schestowitz_log (~schestowi@host109-155-92-45.range109-155.btcentralplus.com) has joined #boycottnovellOct 11 14:19
*schestowitz_log has quit (Changing host)Oct 11 14:19
*schestowitz_log (~schestowi@unaffiliated/schestowitz) has joined #boycottnovellOct 11 14:19
*ChanServ gives channel operator status to schestowitz_logOct 11 14:19
*roy (~schestowi@unaffiliated/schestowitz) has joined #boycottnovellOct 11 14:19
*ChanServ gives channel operator status to royOct 11 14:19
*Disconnected (Connection timed out).Oct 11 16:17
**** ENDING LOGGING AT Sat Oct 11 16:17:21 2014
**** BEGIN LOGGING AT Sat Oct 11 16:17:52 2014
*Now talking on #boycottnovellOct 11 16:17
*Topic for #boycottnovell is: TechRights.org | Channel #boycottnovell for http://TechRights.org | Free Software Sentry – watching and reporting maneuvers of those who oppose software freedom :: please also join channels #techrights and #boycottnovell-socialOct 11 16:17
*Topic for #boycottnovell set by schestowitz at Thu May 6 23:19:56 2010Oct 11 16:17
-ChanServ-[#boycottnovell] Welcome to the #boycottnovell channelOct 11 16:17
*ChanServ gives channel operator status to logbot2Oct 11 16:17
*pidgin_log (~roy@host109-155-92-45.range109-155.btcentralplus.com) has joined #boycottnovellOct 11 16:18
*schestowitz_log (~schestowi@unaffiliated/schestowitz) has joined #boycottnovellOct 11 16:18
*ChanServ gives channel operator status to schestowitz_logOct 11 16:18
schestowitz_loghttps://twitter.com/schestowitz/status/520969778564198400Oct 11 16:42
-TechrightsBN/#boycottnovell-@schestowitz: "Valve currently working on their Steam Machines, which is their console that is powered by their version of Linux" http://t.co/0sXR7vb8a3Oct 11 16:42
-TechrightsBN/#boycottnovell--> airherald.com | Half Life 3 May be coming in 2015 or 2016, Analysts Say Valve Waiting for Steam Machines or Virtual Reality – Air HeraldOct 11 16:42
schestowitz_loghttps://twitter.com/schestowitz/status/520967420039933952Oct 11 16:42
-TechrightsBN/#boycottnovell-@schestowitz: El Reg throwing in random comments to smear #gnu #linux & make it look bad http://t.co/q8NFN3WpSK typical of post-Microsoft deal RegisterOct 11 16:42
-TechrightsBN/#boycottnovell--> www.theregister.co.uk | I've got a new Linux box, how does it work... WOAH, only asking :-/ • The RegisterOct 11 16:42
schestowitz_loghttps://twitter.com/zewari7/status/520976356578836480Oct 11 16:43
-TechrightsBN/#boycottnovell-@zewari7: @schestowitz the same applies for "Rhodes scholars" who take pride in calling themselves that @OforiAkuffoOct 11 16:43
schestowitzhttps://joindiaspora.com/posts/4906910Oct 11 17:19
-TechrightsBN/#boycottnovell-@schestowitz@joindiaspora.com reshared: #humour #wtf #cheerleader #cheerleadersOct 11 17:19
-TechrightsBN/#boycottnovell- Photo by peter_rabbit@joindiaspora.com: https://joindiaspora.s3.amazonaws.com/uploads/images/thumb_medium_5556893da5216552e511.jpgOct 11 17:19
schestowitz"It's better not be below her :-D"Oct 11 17:20
*freedomrun has quit (Remote host closed the connection)Oct 11 18:58
*freedomrun (~quassel@unaffiliated/freedomrun) has joined #boycottnovellOct 11 19:09
*Disconnected (Connection timed out).Oct 11 20:18
**** ENDING LOGGING AT Sat Oct 11 20:18:42 2014
**** BEGIN LOGGING AT Sat Oct 11 20:19:14 2014
*Now talking on #boycottnovellOct 11 20:19
*Topic for #boycottnovell is: TechRights.org | Channel #boycottnovell for http://TechRights.org | Free Software Sentry – watching and reporting maneuvers of those who oppose software freedom :: please also join channels #techrights and #boycottnovell-socialOct 11 20:19
*Topic for #boycottnovell set by schestowitz at Thu May 6 23:19:56 2010Oct 11 20:19
-ChanServ-[#boycottnovell] Welcome to the #boycottnovell channelOct 11 20:19
*ChanServ gives channel operator status to logbot2Oct 11 20:19
*pidgin_log (~roy@host109-155-92-45.range109-155.btcentralplus.com) has joined #boycottnovellOct 11 20:19
*freedomrun_ (~quassel@unaffiliated/freedomrun) has joined #boycottnovellOct 11 21:28
*freedomrun has quit (Ping timeout: 240 seconds)Oct 11 21:29

Generated by irclog2html.py 2.6 by Marius Gedminas - find it at mg.pov.lt!