Want to read Slashdot from your mobile device? Point it at m.slashdot.org and keep reading!

 



Forgot your password?
typodupeerror
×

Comment Re:Identity theft? (Score 1) 163

While I haven't personally used GoGo, I presume that you have to click "I Agree" after being shown a bunch of legalese that probably includes something like this:

"By clicking 'I Agree', I consent to having all of my traffic monitored while using this service. This includes traffic I might otherwise think would be private. Furthermore, by clicking 'I Agree', I grant such access and I renounce any claims of improper use of the data."

If you click "I agree", you pretty much give up any chance of fighting said nonsense.

Comment Re:Please be good... (Score 4, Interesting) 254

Starship Troopers was directed by Paul Verhoeven, who likes to push action movies just over the edge of campiness. Action movies that don't fit either the comedy or drama genre fall flat, because frankly, shoot-run-shoot-chase-shoot is tedious. You need to either care deeply about the characters portrayed, or be entertained by laughing at the absurdity of the situation. Verhoeven emphasizes the absurd, which makes scenes like the one where Clancy Brown throws the dagger through Jake Busey's hand during training ( then yells "Medic!") hilarious.

Before I saw it, there was a part of me that wanted Starship Troopers to be a serious movie worthy of the title of Sci Fi, and I remember being initially disappointed that it wasn't. But because he turned it into a "fun" movie, I came to appreciate it as entertainment.

Comment Re:Internets of Things (Score 1) 162

Check OpenHAB, which allows you to build the automation system on open source code, and doesn't require "the cloud". (I'm using Vera, which is a more mature and stable alternative. Vere doesn't require the cloud, which is great; but while it's built on top of OpenWRT, it's not an actual open source code product.)

But the bank breakers come in the form of the devices. I've bought various Z-wave switches at prices ranging from $10 to $100, with the bulk of them costing about $40 a device these days. At this rate it doesn't take much time to spend a thousand dollars on it.

I've tried to save money by picking them up on clearance, but I've also learned that the usability factor goes down once I started mixing the kinds of switches I installed. We prefer rocker switches, with a familiar top-on/bottom-off action; GE/Jasco makes some so I picked up a bunch for $10 each at the local Radio Shack, and there are other brands. Leviton makes a bottom-toggle pushbutton switch; I bought several from Monster at $20 closeout prices. But the variety of switches in the house was very confusing to guests, so I ended up removing all the Leviton switches anyway. Not a money saver if you can't use them.

Comment Re:Not so sure about this... (Score 1) 252

I have been building my home automation system since the first iteration of Vera came out (still using my original Vera controller, which is woefully underpowered.) I initially bought it to control the plant lights by having the duration of supplemental lighting follow the duration of the actual day, providing seasonally appropriate lighting which causes the plants to bloom on schedule. It has been much more reliable at keeping track of the time than I ever was, and our plant growth has been much improved as a result. That was the initial outlay; further additions included automating lights, coordinating indoor and outdoor lighting without having to rewire the house, and the additions of temperature and water sensors. In terms of money, though, I don't know that any of those qualify as a "savings". At best, they've been a cost avoidance (one of the sensors alerted me to a water leak before the basement flooded.)

In terms of my time spent, like you, it's a hobby for me. I'm learning what works, what doesn't, and playing with various things to see if I get interesting or valuable results. Home automation has long claimed to have potential, but it's going to take a lot of real world examples to prove it.

Comment Re: Not so sure about this... (Score 2) 252

People are all panicky about smart meters, and they imagine they're some kind of Big Brother device that reports on their TV watching habits, or know exactly what kinds of subversive web sites they visit based on their power usage, and report their pr0n habits to the gubbamint. But "smart meters" are not "omniscient meters". They just measure your home's overall consumption of electricity, same as your current meter.

Smart meters essentially work like what you're talking about. The difference is they are in near constant communication with the utility, so they broadcast a rate schedule to your home's appliances that advertise the current and near future electric rates, and they can report overall house consumption on a near-real-time basis. And that's about it.

The utility can predict "At 4:00 today it will be very hot, so we will be bringing on supplemental generators at that time to meet all the extra A/C demand." They also know that regular electricity normally goes for $0.08/kWh, but supplemental generators cost them $3.00/kWh. They then tell the meters the rate schedule for today is $0.50/kWh from 12:00 to 3:00; $0.60/kWh for the first 2kW from 3:01 to 8:00, but $5.00/kWh for everything above 2kW; and $0.20/kWh from 8:01 to 12:00. The meter then announces the price schedule to your home appliances. You may choose to have your washing machine configured to run only if the cost of your electricity is less than $0.25/kWh; you may have your thermostat set to reduce air conditioner use when the cost is greater than $0.75/kWh; and you may set your electric water heater and pool pump to switch completely off if the cost is greater than $1.00/kWh. It's all your choice, how you want to manage your consumption remains up to you. You simply have to know you'll pay more when overall demand is greater.

Your electricity usage today is not a secret. Your meter already reports usage to your utility company so you can pay for what you use. But today, your dumb meter can't tell what time of day the electricity was consumed, and it doesn't know the rate in effect when you consume it, so your utility company has to front-load everyone's rates with the predicted cost of supplemental generation, the future cost of fuel, etc, and they only change the rate on a monthly or annual basis. What will change with smart meters is the rate you pay will depend on the rate in effect when you consume it; the meter will know the current rate and you will be charged accordingly. Even after smart meters roll out, how you choose to use the energy your house consumes is still up to you, and whether or not you're spending it on a dishwasher or indoor pot-growing farm is still not the utility company's business.

Comment Re:not just many eyes (Score 1) 255

I look at it as a methodology to spread the risk.

We've had a few packages dominate the landscape, and each of them has had some of the best and the brightest people looking at it, reviewing it, analyzing it, looking for flaws, running code analysis, fuzzers, everything. We've done exactly what you've said: we dedicated resources to develop a single (or few) libraries. Yet they still have flaws.

I don't believe the perfection-alone-model works, because there is no evidence that it does. So far we have evidence that every commercial-grade protocol and implementation has had some kind of security flaw. Therefore we need to stop believing that we can engineer our way out of the situation, because we haven't. We need a completely different and complementary approach. We need to better manage the risk of failure.

To me it doesn't matter why someone would choose a particular library over another, only that we don't all put our eggs in the one basket. The evidence suggests they're all going to fail at some point; it's only a matter of when.

Comment Re: not just many eyes (Score 3, Interesting) 255

So all we need are 11 more sets of programmers to program free version of SSL 2-12?

Yes, and demand for them. But the big problem you're correctly implying is there's no economic justification that will drive this behavior. Maybe it will take a dozen big companies and foundations to drive this. Imagine if IBM, Microsoft, Google, RedHat, Yahoo, HP, Dell, Apache, Wikimedia, Mozilla, FSF, Apple, Intel, AMD, nVidia, Bungiesoft, and others each contributed their own versions of openSSL; each written in their own choice of language, using their own code, and building their own implementations of everything from the crypto through the command line interpreter logic. My company may decide we do more business with Intel, so we choose theirs. Or your company may be more Apple focused, so you'd choose theirs. In every case, we'd all nervously watch each other looking for signs of intrusions, hoping we won't be the victims, but knowing that alternatives exist if we are.

While a 1/12th scale incident of Heartbleed is still a huge problem for a lot of companies, it's no longer the catastrophe-sized disaster that Heartbleed actually was.

Comment Re:not just many eyes (Score 4, Interesting) 255

The security of the open source model isn't really the problem or the answer here. The problem is homogeneity. A million different sites and applications rely on just a few libraries, so that when a bug hits one, it has massive impact on the entire internet.

We also know that the answer isn't in rolling your own security. Very few people or organizations are likely to be able to securely implement their own version of TLS. Even the best packages of today didn't start out perfect, they had to iterate through several flaws to get to where they are today.

So perhaps the better answer is in having more packages to choose from? Instead of picking just openssl by default, it would be better to have a broad array of choices. With a dozen packages on the market, that might mean 11 times out of 12 the bad guys wouldn't exploit our site. If the packages are interchangeable, we'd be better positioned to switch them quickly in case of emergency.

Comment Re:blu rays are cheaper than the movie (Score 2) 400

There is always some demand for lone-wolf revenge movies. Remember all the Charles Bronson "Death Wish" movies from the 1970s? He also looked like an ordinary guy, living an ordinary life; not at all dissimilar from Liam Neeson.

Many people enjoy seeing vigilante justice, and for some reason they especially enjoy seeing a guy who has been wronged taking out an entire gang of deserving villains (with just a little help from his friends.) They also get to overlook the fact that in normal circumstances we'd label such a person a "mass murderer".

Comment Re:Are people sick of the MPAA? (Score 1) 400

That would mean movies would cost like a buck or two? Even I'd go for that price.

I wouldn't. Remember "dollar theaters" from the 1990s? They were built on that exact premise. It turned out the audience was primarily a bunch of noisy kids who could afford to go at that rate, so they went to the theater to socialize instead of watching the movie. They had all the manners and polish of a herd of goats.

Even though the dollar theaters had much higher attendance numbers than the first-run theaters, the local ones went out of business. I think it's due to the amount of cleaning staff they had to run through the auditorium after each show, mopping up spilled drinks, clearing pathways paved with popcorn and litter, and chiseling used chewing gum off of every surface. We tried the dollar theater a few times, but it was so disgusting we chose to continue to pay full price for the few movies we did attend. The higher prices set a bar where the people in the theater actually want to see the show.

Something else that the dollar theaters can't compete with is cable. When we are in a theater watching the previews, my wife and I will critique each: "that looks good, we'll have to go see it"; "that looks like your kind of movie"; "let's wait for it to come out on cable"; or it looks so ridiculously awful or inappropriate that all we can do is laugh or cringe. But "wait for cable" is pretty much the stock answer for everything of interest. When we were at the theater yesterday, I don't recall seeing a single preview for any movie we really wanted to catch in the theater.

Slashdot Top Deals

Gee, Toto, I don't think we're in Kansas anymore.

Working...