224 karma · joined March 14, 2012
I just got this
SSL connection error Unable to make a secure connection to the server. This may be a problem with the server, or it may be requiring a client authentication certificate that you don't have.
FYI - I had the same experience.
I waited for like 20-40 seconds for the stuff to load and then left the site...
Do you think such user experience feedback would be valid for your own project?
Why it's a terrible protocol?
- from quality angle?
- from price angle?
Edit: formatting
How do you place host sshd key in DNS records without first connecting to this instance and getting the key, action which requires you to check/verify host sshd key (which is NOT in DNS yet)?
so it looks a bit like chicken and egg thing ...
What am I missing?
>> 1. Pre-processing data for the entry.
For this specific example if the accounting package does not support certain depreciation method (which rather rare), you can easily do this in Excel, both for financial modelling purposes and as a supporting document for the accounting entry.
>> 2. Post-processing data.
What you describe is not accounting. This is financial and management reporting. Yes, Excel is what is used by most everyone.
Good points.
However, proper tool does make things more efficient. Based on practical experience Excel is excellent for financial modelling.
As for R, Python + Pandas, databases and CSV files - they are mostly useful for supporting and ad-hoc analysis, esp. for sales and marketing data.
>> Invalid point: Formulae are easy to follow and audience can easily verify/reproduce your work.
Actually this is another valid point of Excel.
Unless the financial model was done incorrectly (using VBA, complicated formula chains, unclear logic), it is very easy to verify financial model in Excel, which is a big plus.
But why would you need this? You can do financial model in 1 hour using Excel...
Sorry, I could not comprehend the second paragraph.
Fraud has nothing to do with paper or computer based system. To minimize risk of fraud you need to implement proper sets of controls, like segregation of duties, etc.
As for Excel - Excel is a poor instrument for doing the accounting, therefore it shall not be used ... unless you have some kind of micro/nano business.
What you need is:
- understand your numbers, which requires knowledge, brain and a bit of experience;
- accurate numbers, which shall be output by accounting.
You can prepare P&L forecast for $50-100M business on one piece of paper, if needed. Excel just makes things more efficient.
true, esp if use HaProxy as LB
>> I still believe that using PFS, even with this limitation, is safer ...
I definitely agree, the problem is that usually there is more than 1 web server :-)
>> The standard is still to point clients to a single termination endpoint, and do active/passive cluster, so that there's no need to share the session tickets.
Sorry, I did not understand (esp. the active/passive cluster thing) - could you please may be add some pointers (blog post, etc) with more details?
Julien, do you have any news to address this Adam's point:
>> So how do you run forward secrecy with several servers and support session tickets? You need to generate session ticket keys randomly, distribute them to the servers without ever touching persistent storage and rotate them frequently. However, I'm not aware of any open source servers that support anything like that.
[0] https://www.imperialviolet.org/2013/06/27/botchingpfs.html
It is rather easy to check though - you should forget about time spent on work and need to compare the outcome, i.e. result, of this guy vs every other engineer on the team.
If the check above shows that this guy is better than everybody else, than this:
>> Alarmingly often, he'd have hacker news, or dzone open and would be reading articles (I mean 50%+ of the time, not once or twice a day).
and this:
>> More than one of his coworkers have mentioned something along the lines of "can't we fire him 4 weeks out of 5 ?".
indicates one simple thing - he is not managed properly by his manager and by the company.
It as simple as that...
It is not. `email` field is not publicly visible, you need to add it to `about` text field.
Probably you shall request site re-check by GGL.
So my questions are:
1. In reality is utilizing this feature a real hurdle?
2. Any other way to do this w/o mangling DNS records?
I am on Ubuntu LTS 12.04 with GnuPG 1.4.11 (Linux version 3.2.0-32-virtual (buildd@batsu) (gcc version 4.6.3 (Ubuntu/Linaro 4.6.3-1ubuntu5)).
Q1. Do I need to fix this potential attack?
Q2. Assuming this fix is not backported [now] - if I compile fresh gpg and swap the binary with the old gpg - will this fix it?
Somehow this does not click with my CFO experience.
Can you please elaborate?