<?xml version="1.0" encoding="utf-8"?>
<feed xmlns="http://www.w3.org/2005/Atom">
<title>Internetnews Blog</title>
<link rel="alternate" type="text/html" href="http://blog.internetnews.com/blog/" />
<link rel="self" type="application/atom+xml" href="http://blog.internetnews.com/blog/atom.xml" />
<id>tag:blog.internetnews.com,2007-12-06:/blog//7</id>
<updated>2009-11-21T01:41:59Z2009-11-20T22:56:24Z2009-11-20T15:52:53Z2009-11-20T15:28:30Z2009-11-19T21:51:53Z2009-11-19T20:30:10Z2009-11-19T17:17:00Z2009-11-19T16:06:22Z2009-11-18T17:30:39Z2009-11-18T15:15:48Z2009-11-17T18:22:56Z2009-11-17T14:49:16Z2009-11-16T23:08:44Z2009-11-16T20:16:41Z2009-11-16T16:07:17Z</updated>

<generator uri="http://www.sixapart.com/movabletype/">Movable Type Enterprise 4.25</generator>

<entry>
<title>Google laughs off the &apos;Osborne Effect&apos;</title>
<link rel="alternate" type="text/html" href="http://blog.internetnews.com/dneedle/2009/11/google-laughs-off-osborne-effe.html" />
<id>tag:blog.internetnews.com,2009:/dneedle//20.59234</id>

<published>2009-11-20T22:56:21Z</published>
<updated>2009-11-21T01:41:59Z</updated>

<summary>I&#8217;m guessing not many folks at Google are old enough to remember Adam Osborne (though CEO Eric Schmidt is one). Back in the &#8217;80s Osborne&#8217;s namesake Osborne Computer Corp. introduced the first popular portable computer. In those days, a 25-pound...</summary>
<author>
<name>David Needle</name>
<uri>http://blog.internetnews.com/dneedle</uri>
</author>

<category term="chromeos" label="Chrome OS" scheme="http://www.sixapart.com/ns/types#tag" />
<category term="google" label="Google" scheme="http://www.sixapart.com/ns/types#tag" />
<category term="osborne" label="Osborne" scheme="http://www.sixapart.com/ns/types#tag" />
<category term="iphone" label="iPhone" scheme="http://www.sixapart.com/ns/types#tag" />
<category term="netbooks" label="netbooks" scheme="http://www.sixapart.com/ns/types#tag" />

<content type="html" xml:lang="en-us" xml:base="http://blog.internetnews.com/dneedle/">
I&#8217;m guessing not many folks at Google are old enough to remember Adam Osborne (though CEO Eric Schmidt is one). Back in the &#8217;80s Osborne&#8217;s namesake Osborne Computer Corp. introduced the first popular portable computer. In those days, a 25-pound...
<![CDATA[<p><strong>Google looks a year ahead</strong></p>

<p>Another big reason not to pre-release details is it tips off the competition, but in the world of open source and Web services that isn&#8217;t always a priority. </p>

<p><a href="http://www.internetnews.com/hardware/article.php/3849366/Google+Aims+Chrome+OS+at+Pro+Netbook+Market.htm">Google&#8217;s Chrome OS preview</a> yesterday is a case in point. The company showed off an early version of its Chrome OS, but said it wouldn&#8217;t be available till a year from now in time for the 2010 holiday season. </p>

<p><span class="mt-enclosure mt-enclosure-image" style="display: inline;"><a href="http://blog.internetnews.com/dneedle/assets_c/2009/11/Sundhar and Matt Google Chrome-thumb-221x166-4052-thumb-300x225-4053.jpg"><img alt="Thumbnail image for Thumbnail image for Sundhar and Matt Google Chrome.jpg" src="http://blog.internetnews.com/dneedle/assets_c/2009/11/Sundhar and Matt Google Chrome-thumb-221x166-4052-thumb-300x225-4053-thumb-300x225-4054.jpg" width="300" height="225" class="mt-image-center" style="text-align: center; display: block; margin: 0 auto 20px;" /></a></span>
<em>Sundar Pichai and Matthew Papakipos, engineering director for Google Chrome OS, talk up the new operating system at Google&#8217;s headquarters. (Photo by David Needle)</em></p>

<p>&#8220;We&#8217;re opening up the project  a year ahead of release. A lot of the UI will change and one thing I can guarantee is it won&#8217;t look like it does today, but important concepts will carry over,&#8221;, said Sundar Pichai, Google&#8217;s vice president of product management. </p>

<p>While much of the media focus was on the news that Chrome OS will initially be available on a new class of netbooks, the company really wanted to get the word out that the OS is an open source project &#8212; an effort nicely <a href="http://blog.internetnews.com/skerner/2009/11/google-chrome-goes-open-source.html">detailed by my colleague Sean Michael Kerner </a>yesterday. That means getting outside developers involved early and often. </p>

<p>Google said it&#8217;s working with netbook manufacturers to deliver a better consumer experience than the current models offer. This will include bigger screens, full-sized keyboards and solid state drives that will boot the system in seven seconds or less. </p>

<p>(Side note: Hallelujah. I&#8217;ve been hearing promises of fast PC startup times from Intel and Microsoft for over a decade. SSD drives finally deliver on that promise. They haven&#8217;t become a staple of mainstream notebooks or desktops due to their higher cost and relatively limited capacity, but it looks like the netbook market is a good fit). </p>

<p>Analyst <a href="http://gesterling.wordpress.com/">Greg Sterling </a>said the new Chrome OS notebooks will have to come in under $500 by next Christmas and probably under $400 to achieve significant sales. </p>

<p>Given that&#8217;s about what netbooks are selling for today, that could be a pretty enticing package &#8212; a 12- to 14-inch screen, near-instant on netbook that&#8217;s always saving my work to the cloud and runs any number of Web applications and games. </p>

<p>Maybe I should hold off buying a netbook this year.</p>
]]>
</content>
</entry>

<entry>
<title>Blue Coat securing local networks with the Cloud</title>
<link rel="alternate" type="text/html" href="http://blog.internetnews.com/skerner/2009/11/blue-coat-securing-local-netwo.html" />
<id>tag:blog.internetnews.com,2009:/skerner//21.59233</id>

<published>2009-11-20T22:18:38Z</published>
<updated>2009-11-20T22:56:24Z</updated>

<summary> From the &apos;Faster&apos; files:A big emerging trend in enterprise IT this year has been the move to the Cloud, for almost everything. One particular area where I&apos;m seeing a strong use of a hybrid cloud/on-premise model is for security...</summary>
<author>
<name>Sean Michael Kerner</name>

</author>


<content type="html" xml:lang="en-us" xml:base="http://blog.internetnews.com/skerner/">
 From the &apos;Faster&apos; files:A big emerging trend in enterprise IT this year has been the move to the Cloud, for almost everything. One particular area where I&apos;m seeing a strong use of a hybrid cloud/on-premise model is for security...
<![CDATA[<blockquote><br /><b>"The model for us in the cloud is to provide a real time
extension of what the on box security does, so we get immediate
visibility," Valimaki said. </b><br /></blockquote>He told me that by
having a hybrid approach, the user gets the benefit of updates from the
cloud service, but the speed and enterprise policies of a local
on-premise solution.<br /><br />From an infrastructure point of view,
Valimaki&nbsp; said that Blue Coat now has 4 data centers and then some
others that are used as security research centers supporting WebPulse.
He added that he expects to continue to grow the service over time.<br /><blockquote><b>"In the cloud we see the collective trends of the Internet and we see the forest for the trees," Valimaki said.<br /></b></blockquote>It's a good idea and one that Blue Coat rival Cisco is also<a href="http://www.internetnews.com/security/article.php/3816596/Cisco+Expands+Security+to+the+Cloud.htm"> now advocating as well.</a> While Blue Coat is a smaller company overall than Cisco, they're clearly showing that leveraging the cloud for security is the right way forward to really understand and defend against the evolving threats of the modern web.<br />]]>
</content>
</entry>

<entry>
<title>PHP 5.3.1 released for 5 security flaws, 113 bugs </title>
<link rel="alternate" type="text/html" href="http://blog.internetnews.com/skerner/2009/11/php-531-released-for-5-securit.html" />
<id>tag:blog.internetnews.com,2009:/skerner//21.59229</id>

<published>2009-11-20T15:28:53Z</published>
<updated>2009-11-20T15:52:53Z</updated>

<summary> From the &apos;Yum/Apt-Get Update&apos; files:The first update to PHP 5.3 is now available providing 5 security fixes in addition a long list of bug fixes to the popular open source dynamic language.PHP 5.3 was released at the end of...</summary>
<author>
<name>Sean Michael Kerner</name>

</author>


<content type="html" xml:lang="en-us" xml:base="http://blog.internetnews.com/skerner/">
 From the &apos;Yum/Apt-Get Update&apos; files:The first update to PHP 5.3 is now available providing 5 security fixes in addition a long list of bug fixes to the popular open source dynamic language.PHP 5.3 was released at the end of...
<![CDATA[<br />There are 113 named PHP bugs that have been fixed in PHP 5.3.1.<br /><br />On
top of that there are an additional 28 improvements in PHP 5.3.1 that
don't have an official PHP bug number attached to them. So the grand
total of items addressed in the PHP 5.3.1 update is (5 security + 113
numbered bugs + 28 un-numbered bugs) 146 items.&nbsp; That's not a trivial
amount of change in a code base.<br /><br /><i><b>And you wonder why pessimists
like me NEVER update to the first new major point version of a PHP
release. </b></i><br /><br />Make no mistake about it PHP 5.3 is a major release up from
PHP 5.2.&nbsp; Now with the availability of the first update to PHP 5.3, I
think it's time for PHP users to take serious look at migrating from
their legacy PHP 5.x installations.<br />]]>
</content>
</entry>

<entry>
<title>Fedora 12 updates package installation policy </title>
<link rel="alternate" type="text/html" href="http://blog.internetnews.com/skerner/2009/11/fedora-12-updates-package-inst.html" />
<id>tag:blog.internetnews.com,2009:/skerner//21.59227</id>

<published>2009-11-20T15:06:22Z</published>
<updated>2009-11-20T15:28:30Z</updated>

<summary> From the &apos;Error Correction&apos; files:The public milestone release of Fedora 12 this week had one big flaw in it that is now set to be corrected.One key standard practice on nearly every Linux system I have ever seen or...</summary>
<author>
<name>Sean Michael Kerner</name>

</author>


<content type="html" xml:lang="en-us" xml:base="http://blog.internetnews.com/skerner/">
 From the &apos;Error Correction&apos; files:The public milestone release of Fedora 12 this week had one big flaw in it that is now set to be corrected.One key standard practice on nearly every Linux system I have ever seen or...
<![CDATA[<br />The problem with that system is it that its not usually a good idea to
automatically remember the root permission password. So what Fedora
developers wanted to do instead was to rework the permission setup such
that users would be assigned roles based on what they need to do with a
system and the type of system in use.<br /><blockquote><b>"The idea was that the change in PolicyKit would be accompanied by a
default set of roles, and a nice user interface for assigning users to
roles," Taylor wrote. "Unfortunately, with the constraints of time, it became clear that
this all (and especially the GUI) wasn't going to be there for Fedora
12. So, PackageKit needed a fixed policy for all users."<br /></b></blockquote>The
fixed policy that Fedora went with was to allow all users to install
signed packages from the Fedora repositories. <br /><br />In my own personal case,
I'm running Fedora 12 on a single-user system so this is something that
works for me. Yeaah I know, we should have a separation of root and user.
But really all that means is just entering SUDO/pswrd doesn't it? Since
the only allowed packages that non-root could install were signed
packages from the Fedora repository, what is the risk? <br /><br />In
any event, Fedora 12 is now going back to its historical behavior, so
no harm done. <br /><br />Fedora listens to its community and it responds quickly.
Unlike a proprietary software vendor where you'd wait weeks for such a
patch, Fedora users get their changes extremely rapidly.]]>
</content>
</entry>

<entry>
<title>Mozilla earned $78.6 million in 2008</title>
<link rel="alternate" type="text/html" href="http://blog.internetnews.com/skerner/2009/11/mozilla-earned-786-million-in.html" />
<id>tag:blog.internetnews.com,2009:/skerner//21.59225</id>

<published>2009-11-19T20:57:18Z</published>
<updated>2009-11-19T21:51:53Z</updated>

<summary> From the &apos;Free Software Making $$&apos; files:Mozilla gives its software away for free, yet year after year they keep making money. For the 2008 year, Mozilla is just now disclosing how much revenue it generated and it was another...</summary>
<author>
<name>Sean Michael Kerner</name>

</author>


<content type="html" xml:lang="en-us" xml:base="http://blog.internetnews.com/skerner/">
 From the &apos;Free Software Making $$&apos; files:Mozilla gives its software away for free, yet year after year they keep making money. For the 2008 year, Mozilla is just now disclosing how much revenue it generated and it was another...
<![CDATA[<br />Why the expense increase? <br /><br />Well Mozilla continues to invest in people. So
 while other commercial entities cut their cost by cutting employees, 
Mozilla is going the opposite route.<br /><br />From an asset basis, 
Mozilla's 2008 tally was up by 17 percent to $116 million.<br /><br />Overall,
 from a financial perspective, a decent year for Mozilla and I haven't 
even mentioned all their actual release either. But what is important to
 remember in my view is that it is the money that keeps the machine 
moving forward.<br /><br />It is the money that helps to pay the leadership 
and engineering people to continue to advance Firefox and by extension 
the web itself. It's a virtuous circle whereby the more we all use 
Firefox, the more money they make, the more they can invest right back 
into making Firefox better for everyone.]]>
</content>
</entry>

<entry>
<title>Google Chrome OS goes open source in Chromium OS</title>
<link rel="alternate" type="text/html" href="http://blog.internetnews.com/skerner/2009/11/google-chrome-goes-open-source.html" />
<id>tag:blog.internetnews.com,2009:/skerner//21.59224</id>

<published>2009-11-19T18:58:28Z</published>
<updated>2009-11-19T20:30:10Z</updated>

<summary> From the &apos;Browser Operating System&apos; files:Google today has officially open sourced its under-development Chrome OS operating system under the Chromium OS project.The code is available now at: http://www.chromium.org/chromium-os/building-chromium-os - I&apos;m currently in the process of trying to build a...</summary>
<author>
<name>Sean Michael Kerner</name>

</author>


<content type="html" xml:lang="en-us" xml:base="http://blog.internetnews.com/skerner/">
 From the &apos;Browser Operating System&apos; files:Google today has officially open sourced its under-development Chrome OS operating system under the Chromium OS project.The code is available now at: http://www.chromium.org/chromium-os/building-chromium-os - I&apos;m currently in the process of trying to build a...
<![CDATA[<br />Security is a big focus with the Security Verified Boot process. Basically ChromeOS checks to ensure the OS hasn't been corrupted on 
boot. If it has, it automatically re-images the users hardware.&nbsp; Another 
interesting idea, though how that will work in practical utility is 
another question. I can see it adding time to the overall boot process 
as time progress and what happens if the wireless driver (for Internet 
connectivity) gets corrupted?<br /><br />Google didn't specifically say 
which version of Linux they were using inside of their ChromeOS build, 
but Pichai did specifically thank the Ubuntu community for their 
efforts. No ChromeOS is not an Ubuntu knock-off but it likely borrows 
some of the same Debian-based plumbing and as I noted earlier, there is a contractual relationship in place.<br /><br />Overall, few surprises in
 ChromeOS from what they had originally led us to believe when they 
announced the effort a few months back. It's all about the web and the 
browser is the OS.<br /><br />Chrome - the browser- will continue on its own
 development path and for current Linux, Mac and Windows users they'll 
get some of the benefits that ChromeOS will ultimately deliver as well.]]>
</content>
</entry>

<entry>
<title>Schmidt, Otellini join tech lobby</title>
<link rel="alternate" type="text/html" href="http://blog.internetnews.com/kcorbin/2009/11/schmidt-otellini-join-tech-lob.html" />
<id>tag:blog.internetnews.com,2009:/kcorbin//17.59223</id>

<published>2009-11-19T17:15:55Z</published>
<updated>2009-11-19T17:17:00Z</updated>

<summary>The chief executives of Google and Intel have joined the executive committee of TechNet, a lobbying group representing the technology industry. TechNet announced the appointments of Google&apos;s Eric Schmidt and Intel&apos;s Paul Otellini along with word that Rey Ramsey would...</summary>
<author>
<name>Kenneth Corbin</name>

</author>

<category term="ericschidt" label="Eric Schidt" scheme="http://www.sixapart.com/ns/types#tag" />
<category term="google" label="Google" scheme="http://www.sixapart.com/ns/types#tag" />
<category term="intel" label="Intel" scheme="http://www.sixapart.com/ns/types#tag" />
<category term="lobbying" label="lobbying" scheme="http://www.sixapart.com/ns/types#tag" />
<category term="oneeconomy" label="One Economy" scheme="http://www.sixapart.com/ns/types#tag" />
<category term="paulotellini" label="Paul Otellini" scheme="http://www.sixapart.com/ns/types#tag" />
<category term="reyramsey" label="Rey Ramsey" scheme="http://www.sixapart.com/ns/types#tag" />
<category term="technet" label="TechNet" scheme="http://www.sixapart.com/ns/types#tag" />

<content type="html" xml:lang="en-us" xml:base="http://blog.internetnews.com/kcorbin/">
The chief executives of Google and Intel have joined the executive committee of TechNet, a lobbying group representing the technology industry. TechNet announced the appointments of Google&apos;s Eric Schmidt and Intel&apos;s Paul Otellini along with word that Rey Ramsey would...


</content>
</entry>

<entry>
<title>Google Chrome Frame security flaw discovered by Microsoft</title>
<link rel="alternate" type="text/html" href="http://blog.internetnews.com/skerner/2009/11/google-chrome-frame-security-f.html" />
<id>tag:blog.internetnews.com,2009:/skerner//21.59222</id>

<published>2009-11-19T15:55:18Z</published>
<updated>2009-11-19T16:06:22Z</updated>

<summary> From the &apos;I Told You So&apos; files:Back in September, Google launched Chrome Frame which embeds a Chrome-type browser inside of a Microsoft Internet Explorer(IE) browser. At the time, Microsoft claimed that Chrome Frame could make IE less secure.Guess what?...</summary>
<author>
<name>Sean Michael Kerner</name>

</author>


<content type="html" xml:lang="en-us" xml:base="http://blog.internetnews.com/skerner/">
 From the &apos;I Told You So&apos; files:Back in September, Google launched Chrome Frame which embeds a Chrome-type browser inside of a Microsoft Internet Explorer(IE) browser. At the time, Microsoft claimed that Chrome Frame could make IE less secure.Guess what?...
<![CDATA[<br />The flaw was discovered by Microsoft security research superstar Billy 
Rios (<i>who speaks regularly at Black Hat events</i>) and was reported 
to Google. <br /><br />If I read the notes correctly, all previous versions 
of Chrome Frame were at risk, meaning that since the day Chrome Frame 
launched in September until now, Chrome Frame users were vulnerable. To 
be fair, there were no public exploits that we know of, so it's not a 
zero day flaw by any measure.<br /><br />It is still ironic to note that 
Microsoft was in some respects correct in their fears about Chrome 
Frame. What is even more ironic though is that it is Microsoft (<i>and not 
Google</i>) that took the lead here in ensuring that Chrome Frame is secure 
for IE users.]]>
</content>
</entry>

<entry>
<title>Mozilla Firefox 3.6 Beta 3 released with 83 bug fixes</title>
<link rel="alternate" type="text/html" href="http://blog.internetnews.com/skerner/2009/11/mozilla-firefox-36-beta-3-rele.html" />
<id>tag:blog.internetnews.com,2009:/skerner//21.59209</id>

<published>2009-11-18T17:09:14Z</published>
<updated>2009-11-18T17:30:39Z</updated>

<summary> From the &apos;Coming Soon, Very Soon&apos; files:The third beta of Mozilla&apos;s open source Firefox 3.6 browser is now adding fixing 83 bugs and adding several new features.Of the 83 bugs fixed, 13 have been tagged as being critical. It...</summary>
<author>
<name>Sean Michael Kerner</name>

</author>


<content type="html" xml:lang="en-us" xml:base="http://blog.internetnews.com/skerner/">
 From the &apos;Coming Soon, Very Soon&apos; files:The third beta of Mozilla&apos;s open source Firefox 3.6 browser is now adding fixing 83 bugs and adding several new features.Of the 83 bugs fixed, 13 have been tagged as being critical. It...
<![CDATA[<br />Nightingale commented that components were not as visible as add-ons,
making them more difficult to track, update and disable. So now,
Mozilla is disabling them all.<br /><blockquote><b>"If you're a Firefox user, this should be 100 percent positive," Nightingale wore. "You don't have
to change anything, your regular add-ons should continue to work
properly - you just might notice fewer crashes or odd bugs. If you do
notice that something has stopped working, particularly a third party
addition to Firefox, you might want to contact the producer of that
addition to ensure they know about the change."<br /></b></blockquote>I
think this is clearly a good move and frankly i'm amazed that such a
loophole existed in the first place. I expect though that the change
will have some impact, I've just started using Beta 3 myself and time
will tell what (if anything) will break as a result of the component
lockdown.<br /><br />With these two new big items in Beta 3, I'd also
expect there to be at least one more beta and then at least on release
candidate prior to a final Firefox 3.6 release.]]>
</content>
</entry>

<entry>
<title>Google Chrome OS: What to look for this week</title>
<link rel="alternate" type="text/html" href="http://blog.internetnews.com/skerner/2009/11/google-chrome-os-what-to-look.html" />
<id>tag:blog.internetnews.com,2009:/skerner//21.59203</id>

<published>2009-11-18T14:35:53Z</published>
<updated>2009-11-18T15:15:48Z</updated>

<summary> From the &apos;It&apos;s Not Vaporware&apos; files:Google is holding an event on Thursday to discuss its Chrome OS open source operating system. Details are sparse at this point, though the official media invitation gives us some clues that we&apos;ll get...</summary>
<author>
<name>Sean Michael Kerner</name>

</author>


<content type="html" xml:lang="en-us" xml:base="http://blog.internetnews.com/skerner/">
 From the &apos;It&apos;s Not Vaporware&apos; files:Google is holding an event on Thursday to discuss its Chrome OS open source operating system. Details are sparse at this point, though the official media invitation gives us some clues that we&apos;ll get...
<![CDATA[<br />The other item that Google that is likely is a new Google engineered
Windowing system and user interface. Chrome OS will not be using GNOME
or KDE. Chrome OS will have its own windowing
system. Seeing as Google is doing this all in open source, I'd expect
that whatever the windowing system is, it will eventually be available
on all distros as a rival to GNOME and KDE.<br /><br />We also can expect
that since Chrome OS is browser based, and Chrome used Gears as its
HTML 5 offline storage base, that Chrome OS will include all the major
Google Apps. That is, I'd expect to see Gmail, and Apps available as
desktop shortcuts with full offline storage (via Gears) built-in to the
OS.<br /><br />Instead of Skype, we'll see Google Voice for VoIP.<br /><br />Overall,
I think many of the components that make up Chrome OS are already
known. <br /><br />What isn't known is how they'll all be put together and what the
actual interface will look like. But after nearly 6 months of
anticipation, I'd expect that on Thursday, we won't have to guess any
longer.]]>
</content>
</entry>

<entry>
<title>Mozilla Weave nears release</title>
<link rel="alternate" type="text/html" href="http://blog.internetnews.com/skerner/2009/11/mozilla-weave-nears-release.html" />
<id>tag:blog.internetnews.com,2009:/skerner//21.59200</id>

<published>2009-11-17T18:00:45Z</published>
<updated>2009-11-17T18:22:56Z</updated>

<summary> From the &apos;Open Source Sync&apos; files:Mozilla this week released the first beta for its browser data synchronization service, Weave 1.0.I&apos;ve been tracking Weave for nearly two years now and it sure has been a long and winding road for...</summary>
<author>
<name>Sean Michael Kerner</name>

</author>


<content type="html" xml:lang="en-us" xml:base="http://blog.internetnews.com/skerner/">
 From the &apos;Open Source Sync&apos; files:Mozilla this week released the first beta for its browser data synchronization service, Weave 1.0.I&apos;ve been tracking Weave for nearly two years now and it sure has been a long and winding road for...

</content>
</entry>

<entry>
<title>SSL at risk (again), this time Twitter is the first target</title>
<link rel="alternate" type="text/html" href="http://blog.internetnews.com/skerner/2009/11/ssl-at-risk-again-this-time-tw.html" />
<id>tag:blog.internetnews.com,2009:/skerner//21.59198</id>

<published>2009-11-17T14:18:03Z</published>
<updated>2009-11-17T14:49:16Z</updated>

<summary> From the &apos;Not a Hoax&apos; files:SSL is of critical importance to all web users as the most commonly used method for securing websites. There is now a new publicly posted exploit technique available for SSL that takes advantage of...</summary>
<author>
<name>Sean Michael Kerner</name>

</author>


<content type="html" xml:lang="en-us" xml:base="http://blog.internetnews.com/skerner/">
 From the &apos;Not a Hoax&apos; files:SSL is of critical importance to all web users as the most commonly used method for securing websites. There is now a new publicly posted exploit technique available for SSL that takes advantage of...
<![CDATA[<br />The good news is that SSL vendors and standards makers are aware of the
issue and are working on a fix. The open source OpenSSL project has
already pushed out a new version that removes the ability for a TLS/SSL
renegotiation in the first place.<br /><br />Going a step further the IETF
standard body is working on an effort to solve the problem in a more
definitive manner. <br /><br />The IETF solution is similar in some respects to how
DNS is getting secured with DNSSEC by way of a cryptographic signature
to provide an additional layer of integrity and authentication.<br /><blockquote><b>"SSL and TLS renegotiation are vulnerable to an attack in which the
attacker forms a TLS connection with the target server, injects
content of his choice, and then splices in a new TLS connection from
a client," the IETF draft <a href="https://datatracker.ietf.org/drafts/draft-rescorla-tls-renegotiation/">state</a>s.  "The server treats the client's initial TLS handshake as a
renegotiation and thus believes that the initial data transmitted by
the attacker is from the same entity as the subsequent client data.
This draft defines a TLS extension to cryptographically tie
renegotiations to the TLS connections they are being performed over,
thus preventing this attack."<br /></b></blockquote>Unlike
DNSSEC which is difficult to roll out on a global basis, the new TLS
extension would be an incremental update for existing TLS users to
implement. I suspect that it will take some time till the entire web is
secured as the first official patches roll out from vendors and users
around the world upgrade their software.]]>
</content>
</entry>

<entry>
<title>Obama takes Internet freedom message to China</title>
<link rel="alternate" type="text/html" href="http://blog.internetnews.com/kcorbin/2009/11/obama-takes-internet-freedom-m.html" />
<id>tag:blog.internetnews.com,2009:/kcorbin//17.59197</id>

<published>2009-11-16T23:07:28Z</published>
<updated>2009-11-16T23:08:44Z</updated>

<summary>In a town hall meeting with university students in Shanghai Monday morning, President Obama tried to strike a diplomatic tone when asked about his views on China&apos;s less-than-stellar record on Internet censorship. &quot;I&apos;ve always been a strong supporter of open...</summary>
<author>
<name>Kenneth Corbin</name>

</author>

<category term="censorship" label="censorship" scheme="http://www.sixapart.com/ns/types#tag" />
<category term="china" label="China" scheme="http://www.sixapart.com/ns/types#tag" />
<category term="greatfirewallofchina" label="Great Firewall of China" scheme="http://www.sixapart.com/ns/types#tag" />
<category term="obama" label="Obama" scheme="http://www.sixapart.com/ns/types#tag" />
<category term="twitter" label="Twitter" scheme="http://www.sixapart.com/ns/types#tag" />

<content type="html" xml:lang="en-us" xml:base="http://blog.internetnews.com/kcorbin/">
In a town hall meeting with university students in Shanghai Monday morning, President Obama tried to strike a diplomatic tone when asked about his views on China&apos;s less-than-stellar record on Internet censorship. &quot;I&apos;ve always been a strong supporter of open...
<![CDATA[<p>The two-part question asked both about China's firewall that restricts access to sites the government deems objectionable, and to a more recent manifestation of online censorship, and here was where Obama really made news.</p>

<p>In response to the query, "Should we be able to use Twitter freely?" Obama told his audience:</p>

<p>"Well, first of all, let me say that I have never used Twitter. I noticed that young people -- they're very busy with all these electronics. My thumbs are too clumsy to type in things on the phone. But I am a big believer in technology and I'm a big believer in openness when it comes to the flow of information."</p>

<p>So there you have it: the president has never used Twitter.</p>

<p>As for the other message, the one about free and open access to Internet content, Obama is expected to broach the subject when he meets with Chinese President Hu Jintao today.</p>
]]>
</content>
</entry>

<entry>
<title>Linux dominates top 500 supercomputer list</title>
<link rel="alternate" type="text/html" href="http://blog.internetnews.com/skerner/2009/11/linux-dominates-top-500-superc.html" />
<id>tag:blog.internetnews.com,2009:/skerner//21.59196</id>

<published>2009-11-16T19:47:37Z</published>
<updated>2009-11-16T20:16:41Z</updated>

<summary> From the &apos;Beefy Penguin&apos; files:The latest Top 500 Supercomputer list is now out (see my colleague Andy Patrizio&apos;s story on InternetNews.com), with the top rig doubling its performance to 1.75 petaflops.Of particular interest to me is the fact that...</summary>
<author>
<name>Sean Michael Kerner</name>

</author>


<content type="html" xml:lang="en-us" xml:base="http://blog.internetnews.com/skerner/">
 From the &apos;Beefy Penguin&apos; files:The latest Top 500 Supercomputer list is now out (see my colleague Andy Patrizio&apos;s story on InternetNews.com), with the top rig doubling its performance to 1.75 petaflops.Of particular interest to me is the fact that...
<![CDATA[<br />Back in November of 2000, Linux (generic) represented nearly 11 percent
of the top supercomputer list, while AIX dominated at 42 percent. Times
do change.<br /><br />Bottom line is that Linux is now the most capable operating system for the world's most powerful computers, not Unix. <br />
<br />
Linux is the operating system of choice for super computers for a
number of reasons, most notably in my view is the simple fact that it
can be adjusted and customized for the very unique clustered/grid
setups used by supercomputers. Linux also has excellent interconnect
stacks for Infiniband and Ethernet which is also critical. <br />
<br />
Over the last 9 years, Linux has gone from being an important part of supercomputing to being the dominant OS.]]>
</content>
</entry>

<entry>
<title>Cisco blinks and increases Tandberg offer </title>
<link rel="alternate" type="text/html" href="http://blog.internetnews.com/skerner/2009/11/cisco-blinks-increases-tandber.html" />
<id>tag:blog.internetnews.com,2009:/skerner//21.59194</id>

<published>2009-11-16T15:21:47Z</published>
<updated>2009-11-16T16:07:17Z</updated>

<summary> From the &apos;Kroner, Corona&apos; files:Over the last several weeks, Cisco executives have publicly said on a number of occasions that their offer $3 billion for Tandberg was a fair and that they&apos;d walk if they didn&apos;t get it. To...</summary>
<author>
<name>Sean Michael Kerner</name>

</author>


<content type="html" xml:lang="en-us" xml:base="http://blog.internetnews.com/skerner/">
 From the &apos;Kroner, Corona&apos; files:Over the last several weeks, Cisco executives have publicly said on a number of occasions that their offer $3 billion for Tandberg was a fair and that they&apos;d walk if they didn&apos;t get it. To...
<![CDATA[During Cisco's annual general meeting last week, Cisco CEO John
Chambers was asked about Tandberg and he made a half-hearted joke about
Kroners (norwegian currency) and Corona (the beer). The issue of 90
percent shareholder approval though is no laughing matter and it's not
one that Cisco expected to be an issue, that much Chambers made clear.<br /><br />Cisco
knows how to make acquisitions, they've made more than anyone else in
the technology market over the last 5 years. Chambers said during<a href="http://www.internetnews.com/bus-news/article.php/3848316/Shareholders+Press+Cisco+to+Reform+Exec+Pay.htm"> the AGM last week</a>,
that making acquisitions is a core competence for Cisco. <br /><br />It's clear
that Cisco really wants Tandberg and is willing to pay a premium for
the business, but we'll see on December 1st how far Tandberg
shareholders will push Cisco. <br /><br />With an extra $400 million, Tandberg
shareholders should be ecstatic today. I'd be surprised if they don't all
down a few Coronas as they count their Kroners in celebration.]]>
</content>
</entry>

</feed>

