HNHacker News
TopNewBestAskShowJobs

derrickpetzold

-10 karma · joined October 4, 2010

https://derrickpetzold.com
submissionscomments
derrickpetzold··on Learn Perl in about 2 hours 30 minutes
haha you crack me up HN. So I get downvoted but the self confessed moderating troll doesn't. That's awesome and for that I give you this

http://www.youtube.com/watch?v=boh92DrYEWs

derrickpetzold··on Learn Perl in about 2 hours 30 minutes
Hi. Thank you for taking all the things I said out of context. I am going to try my best to do the same despite the fact that I believe this is what HN is trying to avoid, moderator.

> My trivial point was that your claim about the down votes was contradicted in the first sentences. It seems you missed that, too.

I am sorry you think your thoughts are trivial and despite your grammatical errors I would love to know how a first sentence can be plural. I have no doubt that I missed a lot things prior. That was my entire point of my following posts. Maybe if I knew which first sentence you were referring to I could have a better response.

> Quite fun to do personal attacks like that after such creative way of misreading.

There were no personal attacks in the previous posts unless of course you are Perl. In this post maybe there are many only because you made it so.

And I would appreciate if you read this small thread, moderator, and came back with an intelligent reply.

Yes I could have not been a dick on this but you reap what you sow.

Edit: Thank you for trolling moderator.

derrickpetzold··on Learn Perl in about 2 hours 30 minutes
> Sigh... :-)

I honestly have no idea what you mean by that :).

> Are you really surprised about the down votes...?

For that post of course not. For the others yes.

I can only assume you are coming from this viewpoint

"Please avoid introducing classic flamewar topics unless you have something genuinely new to say about them."

and no I don't think I had anything genuinely new to bring but I how could I know about something I didn't know about.

I guess what I am really saying if people can't acknowledge the flaws in a thing how could they ever make it better. And to say even more if they can't vocalize their reasoning how does downvoting make it okay but I am sure that is another thing I have missed.

derrickpetzold··on Learn Perl in about 2 hours 30 minutes
To be fair I didn't think I was trolling but I can completely understand why you think I was. I could only talk about things I as knew them to be. Whether that makes me an ass or an idiot I don't care. I did want to hear a good argument as why I was wrong and again I appreciate your reply.

EDIT: My original comment was really just meant to be humorous I am sure know why since you are aware of Perl's syntax. It did make me a lot of money at a time but nevertheless I stand by what I said as that is the best advice I could give myself right now.

derrickpetzold··on Learn Perl in about 2 hours 30 minutes
Thank you for the excellent reply. That was response I was hoping for. I don't know everything and I appreciate you talking on point and not just pressing the down arrow because someone said something you don't like.

Regards,

derrickpetzold··on Learn Perl in about 2 hours 30 minutes
Oh my apologies I wasn't trying to convince anyone of anything if that's what you are thinking. I was only stating fact based on my experience but that's okay just downvote this and make yourself right.
derrickpetzold··on Learn Perl in about 2 hours 30 minutes
Just because you can do something doesn't mean you should...
derrickpetzold··on Learn Perl in about 2 hours 30 minutes
Thank you I did read the post. Python has pypi. Ruby has gems. I'm not going to google the rest but if they don't have one there is no reason why they can't.

And FYI pypi is better than CPAN so all the other stuff in the that post is crap imho. I was a Perl dev for ~10 years. Now have about 5 worth of Python. So thank you.

derrickpetzold··on Learn Perl in about 2 hours 30 minutes
lol so do all the languages mentioned above plus they are prettier.
derrickpetzold··on Learn Perl in about 2 hours 30 minutes
Oh my why would anyone want to lean Perl anymore? Unless you are working with a legacy codebase learn Python, Ruby, Java, C#, Erlang, Scala, Haskell... in other words run the f away from Perl if you can unless you are into S&M.
derrickpetzold··on Is turntable.fm legal?
I wrote a Pandora clone using django and last.fm for recommendations. Because of the licensing issues I plan on open sourcing it on github in the near or distant future.
derrickpetzold··on "SQLite is not designed to replace Oracle. It is designed to replace fopen()."
InnoDB. I understand your support viewpoint but both of those dbs are opensource thereby leaving support open. From what I understand when the support comes into play is when you can sue the other party for not providing the service expected but there is company support for mysql and postgres so that still leaves me in the dark and I have never experienced corruption issues with either. Though my db experience is limited and I don't claim to be an expert.
derrickpetzold··on "SQLite is not designed to replace Oracle. It is designed to replace fopen()."
Can anyone say when Oracle is justified? I have yet to encounter a problem the postgres or mysql didn't support but alas I have not worked on everything.
derrickpetzold··on Should scientific articles be available free online?
They should be if they are payed for by public funds the same applies to software. Of course that doesn't apply to defense or otherwise potentially dangerous software but the general rule should be to opensource government contracted development because if they don't have a good reason for not doing so they are probably doing it wrong.
derrickpetzold··on The horrifying AAA debt-issuance chart
I'm afraid there is no jump. If the US defaults interest rates will rise but they can't as the market is dependant on cheap money. That why interest rates have been at 0% for a long as long as I can remember and it is also why QE1 and QE2 were done. To increase the supply of cheap money. If the US defaults the dollar will crash. Look at what happened to Argentina in the late 90s. No I don't think the chances are very significant now but the conditions are certainly there for it to happen. I'm sure a whole paper could be written on this but I am only trying explain where I am coming from.
derrickpetzold··on Twitter Closing $800M Funding Round at $8 Billion Valuation
What's even more ridiculous is that they did it even though there is now a competitor with a better product. Yes they have a much larger installed base but I do believe G+'s non 140 char limit and other amenities will win out.
derrickpetzold··on If History is any Guide, You’ve Got Two Years
To be fair without downvoting perhaps your insightful post wouldn't exist and some poor fool would be running around thinking he has two years.
derrickpetzold··on The horrifying AAA debt-issuance chart
Really downvoters. You think we need more debt and to ignore the the housing crisis? Really?
derrickpetzold··on The horrifying AAA debt-issuance chart
Wow I never looked at it like that before. Of course if the currency collapses the companies operating in it are f'd. We need to resolve the housing foreclosure mess and stop accruing debt.
derrickpetzold··on The horrifying AAA debt-issuance chart
Well there are 7 levels of A rating. The US certainly doesn't deserve to the top most tier since there is active discussion of default. No I don't think it actually would but what is the point of these ratings if they are being used like this?
derrickpetzold··on The horrifying AAA debt-issuance chart
Sorry you are correct the debt is rated not the country.
derrickpetzold··on The horrifying AAA debt-issuance chart
jellicle is correct the ratings are complete bs. If AAA actually meant something the US would have been downgraded years ago. AAA means there is no chance of default no whatever so ever. It should only be reserved for countries with little or ideally no debt. The fact that our politicians and media are openly talking about default means that AAA does apply to the US but it does. So it means nothing.
derrickpetzold··on Linus Torvalds proposes a change to the Git commit object format
>It seems really ugly to store derived information in a commit

I don't understand how generation numbers are derived information. They are used to find the position of the commit in relation to another. That makes them information that is essential to the commit. The problem was to get around them not being there timestamps were compared and that is not reliable for obvious reasons. So I really don't understand why any one would complain about this.

derrickpetzold··on Linus Torvalds proposes a change to the Git commit object format
I was talking about the case where the timestamps are off. I don't think there is any way to fix that.
derrickpetzold··on Linus Torvalds proposes a change to the Git commit object format
I was wondering how they got along without generation numbers for so long. It was by comparing timestamps and those are unreliable because systems can be misconfigured. How they are going to handle legacy repos with that problem I still don't get. I am guessing that history is f'd.
derrickpetzold··on $1 of every $5 in US wallets in 2010 came from programs like unemployment & SS
That is not true. That is redistribution wealth. You are taking the money away from the people are are making and giving to the people that are spending it. That makes no sense. Savings is what drives the economy. Without savings there would be no capital. omg.

Please tell me where this multiplier comes from? If money was multiplied through taxes the USSR would still be around and booming as they had an effective tax rate of 100%. So do tell please.

derrickpetzold··on $1 of every $5 in US wallets in 2010 came from programs like unemployment & SS
Oh my I'm afraid your understanding of economics is very poor. Infrastructure funding can only come from tax money. Tax money can only come from the private sector. The private sector makes by money by using capital (savings). That is how it works. That is why savings are good and taxes are bad.
derrickpetzold··on The FBI stole an Instapaper server in an unrelated raid
Security through obscurity is never a good idea because it leaves a false sense of security.

I know I am getting totally destroyed here by the down voting and I'll probably end up in negative karma for this but I standby all of it.

derrickpetzold··on The FBI stole an Instapaper server in an unrelated raid
That is fair enough and all your points were very good. However despite the down votes and everything else I stand by what I said. As a user I doubt most devs are as competent as the ones here and I would never trust a site with a password that I depend on. Do that there would need to be third-party auditing to make sure that they adhere to the standards you described.

I guess what I am really trying to say is that the state of web/Internet security is very poor right now and I don't believe bcrypt is worthy pursuit (sorry I am really not trying to troll). Since Mt.Gox was just hacked my salted password is on pastebin and then someone attempted to break into my gmail account but that will never happen because I use two factor authentication.

Maybe that is the best solution to all of this.

derrickpetzold··on The FBI stole an Instapaper server in an unrelated raid
> So what? Just because other people don't do it doesn't mean you don't have to also. Fortunately for us, there are a lot of startup founders here who might read this and learn something.

Yes I hope there are.

> I disagree. I think most people use SHA-1 because they know better than to store plaintext passwords. What they don't know is that it's terribly broken.

SHA-1 is the default on django and its easy to break that my entire point. It leaves a false sense of security.

> There are two problems here. (1) If you have access to the site's password database, there's a really good chance you have access to the entire database, and can look up how they're doing it. (2) Even if you can't lookup how they're doing it, you just try them all and find which one it is. I'd bet you money that if someone's hashing passwords, they're using one of {MD4, MD5, SHA0, SHA1, SHA2, DES}. If, god forbid, they're not using one of those and actually wrote their own hashing algorithm, you have even more to worry about.

They might as well be using ROT-13 if they are using any of those. Now with todays GPUs and rainbow tables the passwords might as well be in plaintext. The real solution is site security not password security.

> Or, you know, you could use bcrypt and be secure about it.

For how long? 4-5 years? Who will be maintaining your site then?

Page 1 of 2Next →