Ⓧⓞⓟⓗⓔⓡ xopher@identi.ca
Montreal, Canada
Linux nerd, musician, trombone player, open source advocate, programmer, audio engineer, free thinker.
:D
j1mc, deejoe, Michael Gratton, Ⓧⓞⓟⓗⓔⓡ and 16 others likes this.
Space Hobo, Christopher Allan Webber, axel, axel and 2 others shared this.
No estoy conforme con este cambio. Andaba bien Identi.ca Pump.io no tiene buscador, ni tengo mis grupossssss.juancuyo at 2013-07-26T22:06:40Z
RiveraValdez likes this.
Evan pumps your friends and family in and out and in and out, back and forth forever.Space Hobo at 2013-07-27T02:30:52Z
Christopher Allan Webber, Evan Prodromou, aether, Stephen Michael Kellat likes this.
Christopher Allan Webber at 2013-07-24T14:55:07Z
BMI: 28.12
Weight: 213.2
(Height used in BMI calculation: 6 feet, 1 inches)
Weight chart for month: http://dustycloud.org/tmp/weight_month.png
Weight chart of all time: http://dustycloud.org/tmp/weight.png
Chance of being under 200 in the next 4 months: good, assuming when it comes time to traveling I keep things under control (that's what always throws me off my routine)
Chance of being at a "normal weight" BMI by end of the year: reasonable-ish, more likely will be just above there considering holidaze risk
Chance of staying there once I get there: good, assuming I continue morning weigh-ins in orgmode
Present mood: Pretty good.Ⓧⓞⓟⓗⓔⓡ, Evan Prodromou likes this.
Evan Prodromou at 2013-07-24T17:13:00Z
Security alert: cross-site scripting vulnerability in pump.io 0.2.x and 0.3.x (master)
A security researcher who asked to remain anonymous identified several cross-site scripting vulnerabilities in pump.io. These attacks allow a user of a pump.io site to insert JavaScript code into the displayName property of a pump.io activity object (like a person, image, or note) which will be executed on other users' pages.
A new release of the 0.2.x (stable) branch has been made and is available in npm:https://npmjs.org/package/pump.io
The same patches have been made to the 0.3.x (master) branch and are available from Github.
All administrators should upgrade their pump.io servers as soon as possible to the tip of the master version or to version 0.2.4.Cyber Killer, Douglas Perkins, ostfriesenmärz, Ⓧⓞⓟⓗⓔⓡ and 3 others likes this.
arthurlutz, Olivier Mehani, Olivier Mehani, ostfriesenmärz and 7 others shared this.
Evan Prodromou at 2013-07-16T19:33:13Z
I just did a security release of StatusNet 1.1.x and 1.0.x. There's a SQL injection attack in the lists functionality that can get unauthorized data or on misconfigured servers can damage the file system.
http://status.net/2013/07/16/security-alert-sql-injection-attack-for-statusnet-1-0-x-and-1-1-x
Security releases suck. You have to do them immediately, as soon as you hear about them. You have to verify the error and make sure that it's actually exploitable.
Then you have to push everything out the door. I usually push the whole stable branch, so that means a few extra features and bug fixes go out with it.
You also have to check to see if earlier versions are vulnerable. For this one, the 1.0.x versions are vulnerable, so I had to cherry-pick and patch that one, too.
Make tarballs for both. Upload to status.net. Make a blog post.
Note on forum.status.net. /topic on #statusnet in Freenode.
Post on freshmeat.net.
My last task is to send out updates on update.status.net, but... the *.status.net wildcard SSL cert expired last Thursday! I have to upgrade that before sending anything out on update.hellekin, Ⓧⓞⓟⓗⓔⓡ, j1mc, Aracnus and 12 others likes this.
Aracnus, Arthur Lutz, Johan Vervloet, Hilton Garcia Fernandes and 3 others shared this.
Show all 8 repliesI'm sure you could have done without all that work right now. P.S. Some fine yak shaving with that ssl.rpcutts at 2013-07-16T20:41:08Z
Michele likes this.
I just want to point out that he maned to do all that AND get Taco Tuesday on the table on time. Mad skillz.Michele at 2013-07-17T02:03:53Z
Evan Prodromou, ostfriesenmärz, Stephen Michael Kellat, Ryan Weal likes this.
Evan Prodromou at 2013-07-18T02:20:30Z
Nobody's pointed out that identi.ca is 100% SSL now.mray INACTIVE, Claes Wallin (韋嘉誠), The Anarcat, Josué Ortega and 17 others likes this.
Claes Wallin (韋嘉誠), ostfriesenmärz, Diego Cordoba, Steven Rosenberg and 1 others shared this.
Show all 6 repliesThe insecure warnings will be coming from pumps which don't do TLS. Something I don't think should be supported anyway, when you can go out and get free class 1 certificates these days. Especially when WebFinger says you must *only* do requests over TLS
Owen Shepherd at 2013-07-18T13:10:00Z
jpope, Mike Linksvayer likes this.
Evan Prodromou at 2013-07-13T00:29:33Z
Sorry for the down time, folks. Something wrong with my mongodb replication setup. I'll see what I can do to fix it.Ⓧⓞⓟⓗⓔⓡ, linuxaria, Mohan Ram, axel668 (inactive) and 1 others likes this.
mcnalu, bijan@identi.ca, a(n) person shared this.
Show all 12 repliesno worries, time to catch some sleepaxel668 (inactive) at 2013-07-13T07:43:52Z
ZettaGeek likes this.
Was that the reason I couldn't login? Today I tried again, no chance. Frustrated I clicked on recover password, and followed the instructions and here I am. Maybe a big hint on the main site of identi.ca should be placed to tell people what to do. I accidentily opened an account on another pump.io site (pumpit.info). Very confusing. Other than that it looks very promising.Txe Llenne likes this.
axel668 (inactive) at 2013-07-13T15:39:31Z
My blog post about pump.io and the new identi.ca ...
http://axel668.wordpress.com/2013/07/13/pump-io-identi-ca-the-next-federated-social-network/Ⓧⓞⓟⓗⓔⓡ, Mark Jaroski, jpope, Mauricio Mejia and 5 others likes this.
Alberto Oses N., Colegota, Evan Prodromou, Evan Prodromou and 2 others shared this.
Show all 6 repliesI've also been more active on D recently. The awful single post view is still there, but I think new project developers are fixing federation bugs and so on.Really wish the new devs all the luck, hope they can clean up some of the mess the old devs left. D* really was a great place to be in for a while, which is why I'm so mad at the inital devs for neglecting it in favor of a website that lets you type stupid texts over lolcatz- gifs, and is, of all things, connected to f###book ... man, I was REALLY mad at these guys !!axel668 (inactive) at 2013-07-13T18:54:17Z
Claes Wallin (韋嘉誠), null, Christopher Allan Webber, Evan Prodromou likes this.
D* is better now in the hands of the users, that system got the right direction from the start. Not focusing on people but on content, using hashtags as filters. tent is also focused on content but too young, devs dont care much about promoting the framework. pump, for now, feels more about who does what in a frozen stream and people dont care much about what other people does but what says. But is too earlier to judge, I remember how where the youngs KDE SC 4 and GNOME 3 and how evolvedEvan Prodromou at 2013-07-12T17:37:03Z
I am really glad to see how much traffic there is on identi.ca right now. Great to see lively discussions going on.Michele Ann Jenkins, j1mc, Dennis Zeit, Deceased. Please use 'andyc@pumpdog.me'. and 5 others likes this.
Hashem Nasarat, Stefano Zacchiroli, CUENTA NO ACTIVA shared this.
Show all 8 repliesand mine from Tags and Groups. I am not only interested in people, but also in topics.Arthur Schiwon at 2013-07-13T08:46:43Z
Kevin Renfrow, axel668 (inactive), Susan Pinochet, McScx and 1 others likes this.
Evan Prodromou at 2013-07-11T21:50:38Z
Thanks to everyone who has had kind words to say about identi.ca's new look today.
And thanks to everyone who's had critiques and bad reactions. Those help, too.
If anyone sees some things that need work, please try to sweep them in the direction of the issue tracker. It helps a lot.
If you haven't installed a desktop or android client yet, please give them a try; the developers have been working hard over the last few weeks to make them awesome for you.Hosh, Brian Wisti, Ⓧⓞⓟⓗⓔⓡ, Kuro Sawai and 20 others likes this.
Hilton Garcia Fernandes, Steven Rosenberg, Dylan Thiedeke, morgenland and 2 others shared this.
Show all 6 repliesWilliam, you webfinger ID, or just "your address" is your_identi.ca_username@identi.ca, or in your case: band@identi.ca
JanKusanagi @identi.ca at 2013-07-11T23:00:26Z
William L. Anderson likes this.
Desktop clients for pump.io: any recommendations, comparissons or just lists of available software?luissoeiro at 2013-07-12T12:17:40Z
Alberto Oses N. likes this.
https://github.com/e14n/pump.io/wiki/ClientsDeceased. Please use 'andyc@pumpdog.me'. at 2013-07-13T07:04:40Z
Evan Prodromou at 2013-07-11T22:11:38Z
One thing I almost forgot to mention: pump.io is supposed to be part of a network of software. There are a lot of things you probably want to have, and they're not here.
I feel like a few hackers have jumped in with both feet on this recently, and I admit that I've had a lot of fun building sites like ih8.it and openfarmgame.
If you're at all interested in coding for social networks, you should scratch the itch and give it a try.Stephen Sekula, axel668 (inactive), James Bryce Clark, Dennis Zeit and 13 others likes this.
axel668 (inactive), Cyber Killer, Randy Noseworthy, l30bravo and 11 others shared this.
Show all 5 repliesTwo levels of comments would be good... I think I weighed in on this issue at some point. Regarding RSS/Atom feeds you could write a service to provide these, I think.I'm not a developer. Using an API is too hard for me (so it's useless, at least without a dedicated lib for my favorite language)), RSS is way better cause it's simple. I also have many people reading my dents without having an account here. They use RSS readers for this. RSS is needed like hell!Cyber Killer at 2013-07-14T06:51:09Z
Christopher Roberts likes this.
Please NO mult- level comments, it's confusing and usually leads to an endless tree of comments in comments of comments, because everyone presses the comment button on the last comment and never on the post. It's a big feature of Pump.io to have just one level of comments and sharing comments if you share a note. Please don't change this.axel668 (inactive) at 2013-07-14T07:47:17Z
David Nelson, Stephen Sekula likes this.
ralesk at 2013-02-28T14:49:27+00:00
@xopher I'm not personally against HTML emails as much as I'm against MS-quotation style :P My biggest issue was varying encodings.Ⓧⓞⓟⓗⓔⓡ likes this.
Michael Armbrecht at 2013-02-27T22:53:54+00:00
doesn't integrate with KDE very well, though. And I don't think KMail is the problem. Akonadi is.Ⓧⓞⓟⓗⓔⓡ likes this.
@txt Yeah, Akonadi is definitely the problem. I have lost count of the number of times I've had to restart it in the last couple of days.Christopher Allan Webber at 2013-02-26T19:59:53+00:00
If you combine "community manager" and "benevolent dictator for life" you get "community dictator for life", which sounds truly malicious.Ⓧⓞⓟⓗⓔⓡ, Kat Walsh, Stephen Michael Kellat likes this.
Stephen Michael Kellat, Stephen Michael Kellat, Gabriel Saldana, Gabriel Saldana shared this.
Evan Prodromou at 2013-02-26T17:23:15+00:00
I think so; there's some Confoo stuff that night too.Ⓧⓞⓟⓗⓔⓡ likes this.
joshix at 2013-02-15T03:42:27+00:00
Oh damn. You just reminded me and I did my shopping wrong. I guess I better eat all this meat before midnight. It's what Jesus would do.Paige Stuart, Alex, Ⓧⓞⓟⓗⓔⓡ, Lady J likes this.
Peter Cook at 2013-02-13T02:21:02+00:00
Former U Mass Lowell student develops own stereo microphone technique. Cool #AESorg http://ur1.ca/csmekⓍⓞⓟⓗⓔⓡ likes this.
Did you ever see the mic array I created when at McGill? I called it the 'J5' (for 'Jecklin 5'). A 5 channel array using baffles.I was very happy with how it sounded. I can send you the details on it if you like. There's a picture of one here: http://ombu.ca/en/info/Another shot. Although, I preferred using B&K '006s instead of 414s and MKH-20s, but I used what I had available. :-) http://ur1.ca/csr8vMáirín at 2013-02-08T16:53:32+00:00
@xopher so i have adding a warning for that (and other warning level notices) into the UI on our UI worklist, thanks for letting us know!Ⓧⓞⓟⓗⓔⓡ likes this.
@mairin Thanks! I'll see if my re-install fares better.Máirín at 2013-02-08T16:51:16+00:00
@xopher i've heard a lot of KDE users say that. good luck! :)Ⓧⓞⓟⓗⓔⓡ likes this.
Máirín at 2013-02-08T16:46:42+00:00
@xopher sounds like it may have been a bug that it let you through without swap, i'll ask about it!Ⓧⓞⓟⓗⓔⓡ likes this.
Evan Prodromou at 2013-02-08T14:49:46+00:00
Wait a second; I thought they _were_ the ROC.Ⓧⓞⓟⓗⓔⓡ likes this.
@evan And this is why we had the Reform Party that gave us Harper. That's right. It is your fault. #blameevanBrian van den Broek at 2013-02-08T14:52:34+00:00
Evan Prodromou likes this.
No, they're 'Canada', *we're* the ROC, at least to the YYZ focused 'national' media.Ⓧⓞⓟⓗⓔⓡ at 2013-02-08T15:08:43+00:00
Evan Prodromou likes this.