Forgot your password?
typodupeerror

Comment I could live with rapid deletion (Score 1) 55

I would prefer not having these cameras at all. If you need to read license plates, hire people to do the jobs. If it's that important, it's worth paying for.

But that's not going to happen.

So, I can live with destroying all images within seconds unless there was an actual need to keep them, then keeping them and the data gathered from them in an encrypted, non-network-accessible location only for as long as they are needed, with strong oversight to make sure images really are deleted when no longer needed. Any supposed "need" to keep these images beyond, say, the time it takes to send out a you-didn't-pay-your-toll-bill invoice and give the recipient an opportunity to pay or protest should require court oversight.

In rare cases where the police are "on the lookout" for car matching a general description ("driver in green station wagon kidnapped small child from Springfield Kwik-E-Mart, no license plate"), keeping all images within a small targeted search area for hours instead of seconds may be tolerable, with the police keeping only those images that are useful for the investigation after the several hours have expired. In any case, keep the images offline.

In any case, keep the images encrypted and offline. I don't want some overseas black-hat group collecting a dossier of my car's travels.

Comment Re:Uhuh, sure.. (Score 1) 55

How would you feel if one of these cameras was pointed at your house and the cops could access the video anytime they like?

You are confusing the police department's FLOCK camera with my across-the-street-nosy-neighbor's doorbell camera that stores data unencrypted on a weak- or no-password-required web site that the cops happen to be watching and recording 24/7.

Comment Re:Design choices (Score 1) 32

Whew thank God Linux is a monolithic kernel with a minimal attack surface and no drivers up the wazoo to worry about.

There are ways to do just that. Minimal drivers, all compiled in. No loadable modules. Secure/trusted boot environment. Minimal access to I/O with strong input sanitization and very likely a read-only filesystem so a reboot is a true fresh start. This won't be your general-purpose computer though.

Comment Re:Open source was supposed to fix all this (Score 1) 32

formal verification and comprehensive testing

Comprehensive testing is expensive.

Formal verification is also very difficult, but at least one formally verified microkernel, SeL4, is in production. Having a formally verified microkernel is NOT the same as having a formally verified computing environment.

Comment Re:Open source was supposed to fix all this (Score 1) 32

but only the bad guys know about them because the code is not open for public audit

The developers may know about them but don't have the resources to fix ALL of the known bugs.

More likely, the developers are careful not to go on an internal "bug hunt" that will find bugs faster than they can fix, because someone out there will be "injured" by the one bug they prioritized as "fix later" and sue. "Because lawyers."

Comment A and B systems (Score 5, Interesting) 60

Back in the last quarter of the 20th century, many POTS telephone switches had an A side and a B side.

During software upgrades - and yes those were a thing - they would route all new calls to the A side and wait until the last call on the B side ended before they would take the B side down for the upgrade.

Then they would do some testing before bringing up the B side.

Only after they were confident that the B side was working would they upgrade the A side.

This worked in part because they could schedule upgrades when the load was low enough to be handled only by half of the switch's capacity.

Slashdot Top Deals

COBOL is for morons. -- E.W. Dijkstra

Working...