Keep on Balping Balp Skiver Om allt och alla…

18Apr/08Off

WordPress update, 2.5 now

I did it as well now I'm running the WordPress 2.5 release, this after ui notice that the upcomming hardy relase of Ubuntu isn't giving me 2.5 either. The process for doing this was quite straign forward. As I hade the ubuntu package installed i deside to take the long details hard install. Some small thins differs as the locations on the configfile, /etc/wordpress/config-blog.balp.nu.php

Popularity: 2% [?]

7Mar/08Off

Balp Build -w for 1.19.0 (5)

Balp Build version of 1.19.0 (5), no major changes to the GUI but many stability fixes.

$ wget http://download-secondlife-com.s3.amazonaws.com/SecondLife_i686_1_19_0_5.tar.bz2
$ wget http://www.acc.umu.se/~balp/second_life/balp-build-w.tar.bz2
$ tar jxf SecondLife_i686_1_18_6_77495_WINDLIGHT.tar.bz2
$ tar jxf balp-build-w.tar.bz2
$ cd SecondLife_i686_1_19_0_5
$ chmod +x balp-secondlife
$ wget http://www.acc.umu.se/~balp/second_life/releasenotes.txt
$ ./balp-secondlife

There are some irritating bug's left to fix, VWR-4575 IM tabs no longer blink when new IM text is received. A so called hot, issue at LL since 1.19.0.RC1. But LL have been working getting this back and we'll probably get it in 6 months, that's about the same time if took to get the friends list out of the communication window.

Popularity: 2% [?]

29Feb/08Off

Godwin’s law

xkcd 261

Inte trodde jag att jag skulle på se Godwin's law i en pappers tidning. Men här är det, säkerhetshet experten, säkert skälv utnämd, Kim Pihl, skriver i Ålands posten, " - De nyare mac-datorerna med operativsystem med djurnamn drabbas lättare av virus än vad windows gör. ... Det gamla systemet var skyddat från virus. [MacOS Classic] Men nya datorer behöver brandvägg och virusskydd." Fel, uppenbart fel, gamla MacOS classic var inte skyddat från virus för fem öre det var ett vanligt problem med virus på gamla macar. Jag har rensat åtskilliga macar från virus. Inga nya MacOS X maskier ännu dock. Brandvägg och virus skydd fungerar bara när man fått in skit redan, det är inte ett skydd mot problemet utan symtomen. En dator bör vara säker utan virus-skydd annars bör man inte använda den till något viktigt, en dator skall vara säker utan brandvägg. Den skall inte finna någon trafik från internet som kan ta sig in på maskinen utan att man startar en tjänst, en tjänst man valt att köra en tjänst som skall vara säker. Massor med servrar kör utan virus skydd för det har ingen effekt.

Att han sedan refererar till Microsofts reklam, via i ZDnet, och IDG där någon har lyckats sammanställa Secunias säkerhets rapporter för XP, Vista och MacOS X. På ett sätt som närmast kan likställas med lögn. Samman räkningen i ZDnet blir 34, 20, och 243, Källan Secunia räknar också samman sak, 30, 17 och 26. Det spektakulära här är att alla siffor är för höga, och MacOS siffran mycket för hög, hur fick man detta, jo genom att inte titta på Secunias samnstallning utan att söka på hur många gånger de olika OS kommit upp in en säkerhets lista, ett av de tydligaste exemplen på fel räkning är CVE-2007-3005, ett av den flesn som listans till Mac OS X. När man läser på vilket säkerhets hål det är: "Description: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER." Jag måste erkänna att jag inte gått igenom alla säkerhets hål till alla plattformarna, jag litar på secunia här. ZDnet gick så klart ut och gjorde avbön på den förta artikeln och erkände at det inte kunde räkna, även detta rapporterat av IDG.

Popularity: 1% [?]

15Feb/08Off

Second Life and Qucktime security.

Thanks to Vint I have now read an uninformed rant over at the register. “Second Life from a security perspective is horribly broken," Greg Hogland sais to The register, and continues "When you look at Second Life, you know in your bones they simply did not think about security when they developed this application. It's broken from the inside." Yes in many ways he is correct, but the quicktime hole is not the a good example of this. A quicktime, or os problem is nothing Second life can protect it self from. The new fixes from Linden is quite useless if you like to hack a Second life users account using quick time. Make the attack vector a little different, but doesn't and cant protect the user. Sort of eliminating the end users computer is all transactions, which isn't practical. Linden labs can't do anything. With eliminating the computer a good second hard ware like a good online banking have. Where you enter what you like to have done and get a security token from that. Yes you need to enter least the value and to how to pay for the protection to be good, so for each linden or item you transfer you enter it's value/uuid/name into a box togeather with the name of the person to get is and get a security token so the transfer can proceed. All this have to happened on some other secured hardware than the computer. It's will make the system unusable, so you have to risk some lindens.

I personally think Linden have done more that needed to secure it's customers computers. Yes it's trivial to install a root kit on a machine that takes internet data and have a local exploit. The next problem can be in the operating system, in the gfx driver for once. Anything that during a second life sessions receives and processes data from the net is a potential problem for us users. Also many of us uses services as slx or onrez, this includes the normal web-browser, if you have offline IM's the email program is also a possible program. However to put the blame on linden labs for problems with these as quick time. Is putting the blame where it doesn't belong.

If someone can get your computer compromised anyway the current design, for any online game (and many internet shops, banks, etc) can't protect you. Make sure that all programs you use on your computer is updated, when a know hole is spotted (at least). This is much work and needs much attention especially in windows and mac os as none of these have a central code collections to install and update against.

Popularity: 3% [?]

9Feb/08Off

Second Life Windlight 19.0.79462

W00T, I'm connected to Second Life with:

Second Life (Nicholaz Edition) 1.19.0 (79462) Feb 9 2008 09:14:42 (SecondLife Nicholaz NICHOLAZ_VERSLONG Edition) BBWL-c-b0

Most memory leak and bug fix patches are in, almost none of the gui fixes, I'm not planning to release this until the GUI also is better than the Linden version. From the nicholaz EC viewer the following patches are left not added:

1550_revert_voice_chatterbox.patch
With 2037 main GUI stuff.

2037_disable_voice_controls_save_space.path

With 1550 main GUI changes, the .19 have many UI changes and this it not clean to add back in, and maybe in parts need to be changed.

1857_apr_thread_mutex_nested.patch

This is a memory fix, that somehow isn't clean to add, not time to find the reason for it yet. Works.

1857_cache_uploaded_textures_v0.82.patch

Party 2 of 1857 same stuff as the fellow patch. Works.

2038_overlaybar_rearrange_media_controls_V2.patch

GUI changed so much needs to be reworked.

2074_toggle_chat_bar_in_near_me_if_main_chat_activated.patch

Big GUI changes in here.

x3151_undo_statusbar_search_by_Henri_Beauchamp.patch

Appliec but crashed on start up, the status bar have changed much.

Popularity: 1% [?]

31Jan/08Off

Secondlife 1.19, the future.

When Linden land thou Joshua published the Roadmap: 1.19.0 Viewer, I was sceptic and not thrilled, one could say negative. The updated time plan looked much better and realistic. The only bad stuff making it into 1.19 is the age verification, look at Nadine's killing of the technology. Keeping under ages out might be good, but not this way.

I have compiles a first look of the viewer, thanks Linden for the new updated subversion handling! The biggest changes are in the UI, the 1.19 looks much better than anything since the release of voice in august. The biggest change is that the friends list now finally is possible to get out of the f**king communicate window. Also finally there is an addition of voice to Linux, soon the message "Second life is now fully voice enabled" might be true. Now it just time to live up to "Voice viewer release is open source". Voice is still a secret binary blobb, not portable and probably not working well at all computers, it's a little early to tell. There exist no possibility for fix the stuff so it works with esd or an other sound deamon, the same way as the viewer does. Adding Nicholas patches will be a little harder this time, and some might not any more be usable.

Popularity: 1% [?]

31Dec/07Off

Relesed: Balp Build wl-a (Nicholaz EC-b)

Ok, back from vacation and new patches from Nicholaz, this time for the windlight code. My build is made against the 18.6.76116 versions of the code, (last source code, new viewer from LL). I have tested with the 18.6.76453 viewer as well. The 18.6.76116 contain an error in a German language file that might have you log into a false SL site. (The kind of stuff the new login behaviour is there to "save" us all from...)

However downloads are on acc, binaries and patches. Inteneded for 18.6.76116 but works with 18.6.76453 as well. (LL seams to have removed the 76116 version from all but source code...)

To install with 18.7.76453 do as follows.

$ wget http://firstlook-secondlife-com.s3.amazonaws.com/SecondLife_i686_1_18_6_76453_WINDLIGHT.tar.bz2

$ wget http://www.acc.umu.se/~balp/second_life/balp-build-wl-a.tar.bz2

$ tar jxf SecondLife_i686_1_18_6_76453_WINDLIGHT.tar.bz2

$ cd SecondLife_i686_1_18_6_76453_WINDLIGHT

$ tar --strip 1 -jxf ../balp-build-wl-a.tar.bz2

$ wget http://www.acc.umu.se/~balp/second_life/18.6.7453/releasenotes.txt

The last file added the 18.6.76116 to the top of the release notes to tell the nicholaz version you have 76116 installed.

Popularity: 1% [?]

30Nov/07Off

Release: Balp Build – 18.5.3 – u

A build for Second Life 18.5.3 with the addition of Nicholaz patches. It needs a install of SL 18.3.5 Linux version to run.

E.g:

balp@kitiara:~$ tar jxf SecondLife_i686_1_18_5_3.tar.bz2
balp@kitiara:~$ tar jxf balp-build-u.tar.bz2

Then start Second life from that directory with:

balp@kitiara:~$ cd SecondLife_i686_1_18_5_3/
balp@kitiara:~/SecondLife_i686_1_18_5_3$ ./balp-secondlife

Patches at the same place for download.Feed back on the build to me, anders (at) arnholm.se.

Popularity: 1% [?]

16Nov/07Off

Release: Bleeding Edge BE-t for Linux

As Nicholaz have released BE-t i can't be worse, down load of my build from Umeå University, and patches from the same place. This build need the 18.4.3 build from Linden Labs. Unpack my files into the Second_life directory.

E.g:

balp@kitiara:~$ tar jxf SecondLife_i686_1_18_4_3.tar.bz2
balp@kitiara:~$ tar jxf balp-build-t1.tar.bz2

Then start Second life from that directory with:

balp@kitiara:~$ cd SecondLife_i686_1_18_4_3/

balp@kitiara:~/SecondLife_i686_1_18_4_3$ ./balp-secondlife

Feed back on the build to me, anders (at) arnholm.se.

/ Balp

Popularity: 2% [?]

23Jul/07Off

Vista, XP, Ubuntu hell!

Why does stuff have to be that hard, to install XP i did have to disconnect the main drive of the computer. As XP liked to destoy my Ubuntu install. So whan XP and vista was running i connected thet drive again, told grub to add a many alternative to boot the windows ion the second drive. Bahh stupid me! No way that could boot on the second drive! Ok swap the drives, But now grub would not find stage 1.5, ahh. Well boot the ubuntu live cd and try to figure out how to get it working. Reinstalling the Unbuntu and maikna a small /boot partionion on the first dirve lookes like the best option, I also have to make a shared pariotion where all OS can share my files, or move the computer tyo a public IP and used ther server as filesharing for all data.

Popularity: 1% [?]