/srv/irclogs.ubuntu.com/2011/02/02/#ubuntu-za.txt

superflymorning everyone ;-)04:46
superflycocooncrash: this sounds a little FUDy to me... http://codahale.com/how-to-safely-store-a-password/05:37
sakhimorning superfly 06:15
superflymorning sakhi!06:36
superflyinetpro: that blog post is more FUD than fact... sure it takes longer, but that doesn't make it any safer06:46
superflyjust longer to crach06:46
superfly*crack06:46
* inetpro that were my thoughts as well06:47
inetprosuperfly: its interesting nevertheless06:48
cocooncrashsuperfly: It's true07:16
cocooncrashPassword hashing should be slow.07:16
cocooncrash(Nimbula uses bcrypt ;-) )07:17
cocooncrashMaaz: 62**807:20
Maazcocooncrash: 21834010558489607:20
cocooncrashMaaz: 218340105584896/700000000/360007:20
Maazcocooncrash: 86.642899041607:20
cocooncrashJust over 3 days to bruteforce an 8 character alphunumeric password hashed with MD5 using 4 GPUs.07:22
cocooncrashs/MD5/SHA1/07:42
cocooncrash(See also scrypt, which is designed to protect against hardware attacks by forcing more memory to be used.)07:43
cocooncrashhttp://www.tarsnap.com/scrypt.html07:43
superflycocooncrash: but it doesn't make it more difficult to hack, just slower07:46
cocooncrashhttp://chargen.matasano.com/chargen/2007/9/7/enough-with-the-rainbow-tables-what-you-need-to-know-about-s.html07:46
cocooncrashsuperfly: Which is the whole point07:46
cocooncrashDays is feasible, centuries is not.07:46
cocooncrashMaaz: 86.6428990416 * 1000 / 2407:50
Maazcocooncrash: 3610.120793407:50
cocooncrashIf you use a hash function 1000 times slower than SHA1, then it'll take abotu 10 years to bruteforce an 8 character password.07:50
superflycocooncrash: like I said, slower doesn't mean safer... it's a side effect that the person will probably give up, but I wouldn't call that "safe"07:52
cocooncrashBut if you change your password once a year, it becomes highly unlikely that it'll be bruteforce if the expected time is 5 years07:53
cocooncrashIf the expected time is a day or two it becomes very possible07:54
cocooncrashsuperfly: All cryptography is based on the premise that it is not feasible to bruteforce07:55
tumbleweedit's also pretty safe to say anything you encrypt today can be trivially decrypted in the future07:56
cocooncrashIf you use bcrypt with a 100ms hashing time, the expected time becomes centuries.07:56
cocooncrashMaaz: 218340105584896 / 10 / 50000 / 4 / 3600 / 2407:57
Maazcocooncrash: 1263.5422776907:57
cocooncrash3 years to bruteforce an 8 character password with 100ms bcrypt hashing using the whole of EC2.07:59
Tonberrydamn07:59
cocooncrashMaaz: 62**10 / 10 / 50000 / 4 / 3600 / 24 / 36507:59
Maazcocooncrash: 13307.004151907:59
cocooncrash13 centuries for a 10 character passsword.08:00
* drubin likes this conversation08:32
drubinsuperfly: Where did that link just randomly come from?08:33
superflydrubin: you mean where did I find it?08:57
drubinsuperfly: Well you kinda popped out of the blue and pasted that link to cocooncrash 08:58
drubinjut wanted to know context (although it was interesting008:58
superflydrubin: just that I tihnk cocooncrash has recommended bcrypt to be before08:59
tumbleweedmarcog: your xdg-open bug got accepted into maverick-proposed. Care to test it?08:59
marcogtumbleweed: i've starred it, will test08:59
queeryUbuntu hour Sunday 12pm Gino's, Stellenbosch10:33
queeryhttp://loco.ubuntu.com/events/team/666/detail/10:46
inetprodrubin: I tweeted it but seriously, don't ask me where I got it, I can't remember11:19
drubininetpro: tweeted what?11:29
inetpro02/02 10:33:06 <drubin> superfly: Where did that link just randomly come from?11:29
drubininetpro: Ah hehe11:31
tumbleweedmarcog: nice, someone else dealt with it11:58
marcogtumbleweed: i assume that means i don't have to do anything?11:59
tumbleweedindeed11:59
marcogobviously it was quite the me too bug12:00
tumbleweedmarcog: I suffered that bug for ages :)12:00
marcogwith chrome?12:01
tumbleweedchromium12:01
marcogsame thing :P12:01
tumbleweednot at all12:01
marcogsame thing12:01
tumbleweednobody even knows what's in chrome12:01
froztbyteMaaz: reverse karmaladder12:03
Maazfroztbyte: 0: ubuntuforums (-3), 1: tomtom (-2), 2: empathy (-2), 3: hal (-1), 4: virtualbox (-1), 5: KnightRider (-1), 6: car services (-1), 7: kde (-1), 8: ucf (-1), 9: virtualenv (-1), 10: drl (-1), 11: wordpress (-1), 12: Nokia (-1), 13: opendns (-1), 14: digests (-1), 15: kspread (-1), 16: --. --- --- -..   -- --- .-. -. .. -. (-1), 17: Nepomuk (-1), 18: Virtuoso (-1), 19: Strigi (-1), 20: KDE's Desktop Search (-1), 21: sars (0), 22: w12:03
tumbleweedseems like we are rather positive around here12:03
froztbyteMaaz: karmaladder12:03
Maazfroztbyte: 0: superfly (20), 1: cocooncrash (18), 2: maiatoday (11), 3: drubin (10), 4: tumbleweed (10), 5: Vhata (8), 6: morgs (7), 7: confluency (6), 8: highvoltage (6), 9: Kilos (6), 10: ubuntu-za (2), 11: nuvolari (2), 12: russell (2), 13: Symmetria (2), 14: |3o|3 (2), 15: yusuf (2), 16: youtube-dl (1), 17: ScorpKing (1), 18: Web Africa (1), 19: Lenovo (1), 20: fnb (1), 21: ibid devs (1), 22: Hodgestar (1), 23: Android (1), 24: doghouse12:03
linuxboyMaaz: morsecode --. --- --- -..   -- --- .-. -. .. -.12:04
Maazlinuxboy: Encodes as -.-. --- -.. .   -....- -....- .-.-.-   -....- -....- -....-   -....- -....- -....-   -....- .-.-.- .-.-.-       -....- -....-   -....- -....- -....-   .-.-.- -....- .-.-.-   -....- .-.-.-   .-.-.- .-.-.-   -....- .-.-.-12:04
tumbleweedMaaz: morse --. --- --- -..   -- --- .-. -. .. -.12:04
Maaztumbleweed: Decodes as GOOD  MORNIN12:04
superflyhow did I get up there?12:06
tumbleweedMaaz: superfly ftw [[ clearly ]]12:07
queery     bye15:07
superflycocooncrash: that grub error i'm getting is actually "out of disk"15:54
cocooncrashsuperfly: Hrm15:54
cocooncrashreturn grub_error (GRUB_ERR_OUT_OF_RANGE, "%s out of disk", disk->name);15:55
cocooncrashsuperfly: Looks like a geometry issue actually15:56
superflynope, no disk name, just "error: out of disk."15:56
cocooncrashOh15:56
cocooncrashSo that seems to happen if it's got a sector number that lies outside the disk15:57
superflyI booted into a live cd and did a grub-install, so now I get "GRUB loading." and then "error: out of disk.", and then the grub rescue prompt15:57
cocooncrashOnly thing I can think of is that the partition table has a partition extending past the last sector15:57
nuvolariooh :> I have karma :D16:00
nuvolariok, home time16:00
cocooncrashgtg16:00
Kilosevening superfly and every   one else16:04
Kiloswe got data again yoohoo16:04
Kilosused gumtree for the first time16:05
Kiloslo bmg505  how do you do16:06
superflyKilos: I got ADSL, uncapped, no more data worries for me16:06
Kiloshehe that so lekker superfly 16:06
Kilosis it darem faster16:06
superflyI already downloaded like 9 or 10 gigs last night16:07
superflyKilos: no, it's about the same speed as my HSDPA16:07
Kilosaw16:07
Kilosmind you with ians modem here on hsdpa it was fast at times16:07
Kilosmuch better than a cell16:08
superflyKilos: ja, I had the super fast modem16:08
Kilosoh well, at least you rid of the data cap hassle16:09
Kilosand the costs of course16:09
superflywhen I get that sorted out, yes16:09
superflyfor this month (and probably next) I'm paying double :-(16:09
Kiloseish16:10
Kilosat least now I can do a clean install here and get rid of that bug16:11
superflyah, cocooncrash... "19457 cylinders" ... "19267 - 19458"16:12
superflythat doesn't look quite right16:12
cocooncrashThat looks a bit dubious16:22
cocooncrashTry to work in sectors though, fdisk should set CHS sensibly16:22
cocooncrashfdisk -u16:23
superflyyeah, i've done that - still getting that error16:43
neil__hey all nlsthzn here *waves*... how to upgrade from Kubuntu 10.10 to 11.04... ubuntu is easy, I am finding Kubuntu a bitt less so 16:44
superflyneil__: how are you doing it? via alternate CD or via apt-get and friends?16:45
neil__want to use apt-get or what ever means to do it via the net... ubuntu I would just run update-manager -d -c but in Kubuntu I am stumped :/16:46
bmg50510 months and 23 days to xmas :)16:48
bmg505hello south africa16:48
neil__so long to wait for x-mas QQ16:49
neil__ just run do-release-upgrade and added a -d and something is happening... cheers16:52
Kiloshi neil__  bmg505 16:52
Kilosbmg505, where are you16:52
neil__Kilos: hey uncle :)16:53
Kiloshehe16:53
neil__thanks... IRC server going down for maintenance... catch u guys later16:55
Kiloscheers neil__ 16:55
superflycocooncrash: I just did a complete reinstall, and I still get that stupid error17:31
superflyrecreated the partitions, everything17:31
Morganvdhey folks17:46
superflyohi17:50
* superfly restarts to experience KDE 4.617:50
Morganvdlol18:00
Morganvdsuperfly: you having issues18:01
* Symmetria contemplates doing remote medical procedures over south african internet18:02
* Symmetria is scared at the very thought18:02
Symmetria"Sorry about the 3 dead people, the internet went down"18:03
Kiloshehe18:03
Symmetria"Please do nawt be fishing the med today, if you cut SEMEWE people gonna dieeeee"18:03
Kilosnight all. sleep tight19:22
cocooncrashsuperfly: Oh bleh19:34
superflyindeed19:34
cocooncrashTry using grub-legacy?19:36
cocooncrashfp22:00

Generated by irclog2html.py 2.7 by Marius Gedminas - find it at mg.pov.lt!