/srv/irclogs.ubuntu.com/2013/09/11/#ubuntu-us-pa.txt

=== scottrigby is now known as scottrigby_away
=== scottrigby_away is now known as scottrigby
=== scottrigby is now known as scottrigby_away
JonathanDMorning.09:59
rmg51Morning10:00
JonathanDHey rmg5110:00
rmg51o/10:00
InHisNamemorning10:09
jedijfthose threads crack me up - pick one - use it - stfumorning11:48
jedijferr, morning11:48
jedijfChinnoDog: fwiw i don't like the concave pad - prefer old eraser head - better grip/grab11:53
rmg51looks like the latest kernel update broke Teddy's laptop :P12:32
rmg51have to go back two kernels to get it to boot to the login screen12:35
ChinnoDogjedijf: My Thinkpad has a bulb with a rough surface on it. I miss it.13:53
jedijfChinnoDog: yeah, that  sounds like classic eraserhead14:01
jedijfbest pointing device evah14:01
ChinnoDogOn Sunday I found an international grocery store by accident while I was out shopping and bought a box of chai from the Indian aisle. Idk how it is so different from grocery store knockoff chai but one cup gives me the caffeine buzz.14:06
ChinnoDogI think you should look for some jedijf. You could supplement your coffee intake.14:08
cyberangergood chi is worth it just for the taste14:09
cyberangerI mean, having a good variety is nice14:09
jedijfwhat is this chai you speak of? a tea?14:10
jedijfi'm on a green kick - with tumeric - lemon - cinnamon14:10
ChinnoDogYes. Tea. I'd tell you the brand but I threw out the box so I could put the remaining bags in a ziplock bag.14:11
ChinnoDogThis one has cardamom.14:11
jedijfi will give it a try - the green doesn't caffeine me at all (or at least i don't feel it, per se)14:11
ChinnoDogI don't buy the cheap knockoffs in most grocery stores. They aren't strong enough and don't taste much much like chai imho.14:12
ChinnoDogThis chai is strong even with heavy cream added.14:13
=== scottrigby_away is now known as scottrigby
jedijfi'll definitely give it a shot14:14
ChinnoDogThai tea can be pretty strong too but only if you brew it yourself. The stuff in Thai restaurants is usually very diluted.14:15
teddy-dbearMorning peoples, dogs, turkeys and everything else14:16
ChinnoDogMorning teddy14:16
teddy-dbearo/14:16
=== InHisName1 is now known as HowdyDoody
ChinnoDogAnyone know of an open source PCI compliance scanner?15:15
InHisNameNot yet but sounds interesting15:15
ChinnoDogSeems like there are a lot of commercial ones but no good free ones.15:18
square-r00tChinnoDog: not free, but iirc nessus scans for pci compliance16:01
square-r00tand is good for scanning for other stuff too16:01
square-r00thttp://www.tenable.com/products/nessus16:01
* square-r00t remembers back in the day when nessus was F/OSS16:02
square-r00t"Nessus compliance checks help to eliminate fines and external audit findings. It covers PCI DSS, HIPAA / HITECH, NIST, DISA STIGs..."16:02
ChinnoDogsquare-r00t: Thanks. I'm checking that out right now. Looks promising? It /used/ to be OSS? :-(16:27
square-r00tyeah :/ that was like, yeaaars ago16:28
square-r00thttp://en.wikipedia.org/wiki/Nessus_%28software%29#History16:29
square-r00t"On October 5, 2005, Tenable Network Security, the company Renaud Deraison co-founded, changed Nessus 3 to a proprietary (closed source) license.[3] The earlier versions appear to have been removed from the official website since then."16:29
square-r00topenvas (openvas.org) is a pretty good fork of nessus 2 that's fairly well maintained, but i don't recall if it scans for PCI compliance16:30
ChinnoDogIt does not do PCI compliance. However, it does also look like it could be a good tool.16:40
square-r00thonestly with a little scripting it could probably do PCI. PCI's more or less just a port scan with versioning info and matching it against PCI requirements. the tricky thing is generating the reports so you can show an auditor16:54
square-r00tbecause you'd still need to be licensed as compliant, and the auditor would want to see them.16:54
square-r00t(shrug) or just use nessus, which is an authorized PCI compliance tool. heh16:55
square-r00t(and does generate reports)16:56
cyberangerwhat PCI class?16:56
square-r00tnot sure, ChinnoDog is the one looking for comp16:56
cyberangerChinnoDog: what PCI class?16:57
cyberangerthe sad thing is compliance is usually easier to meet than documenting it is16:58
ChinnoDogI think you are referring to the compliance level based on transaction volume. We have customers in more than one class.16:58
square-r00tlol. too true, though.16:58
cyberangerChinnoDog: yeah, I was, what's the highest class, 4?16:58
cyberangerhighest class you have16:58
ChinnoDogI don't know. I don't consider myself a PCI expert. For the customers I work with probably not the higher classes.16:59
square-r00tChinnoDog: http://www.pcicomplianceguide.org/pcifaqs.php#517:00
cyberangerthe highest class is actually for the losest transctions if I recall, yeah not one myself, consulting work it may have happened to a coworker twice in my time17:01
square-r00tcyberanger: yep, you're right. PCI-4 = < 20k transactions17:02
square-r00tPCI-3 = 20k - 1m, PCI-2 = 1m - 6m, PCI-1 = 6M+17:03
=== InHisName1 is now known as HowdyDoody
=== HowdyDoody is now known as Guest9666
cyberangerI was thinking in terms of cost for licensing17:09
cyberangerif you went with nesus17:09
ChinnoDogWe would probably do all the scanning so one license would be sufficient.17:13
square-r00thttps://store.tenable.com/?gclid=CN7TlZjsw7kCFRIaOgodfmcADw17:15
square-r00tor they're running some sales on their bundles, https://store.tenable.com/index.php?main_page=index&cPath=717:16
square-r00tbut probably not really worth it if you aren't an auditor by trade17:16
square-r00t(though, $your_company could then offer pci compliance services to everyone else and charge a nice penny for it as long as you get licensed as an auditor. is good money, so the investment could potentially pay for itself)17:17
ChinnoDogThat is what I was thinking. I suggested that after I saw the licensing.17:33
jedijfstarving18:20
square-r00tsamesies18:30
jedijfto the diner!18:39
square-r00ti wish18:40
square-r00ttoo busy today18:40
square-r00tand THEN18:40
square-r00ti need to drop the supernode server off at hive7618:40
jedijfwhat time is server drop18:41
* jedijf may do a parts drop at hive18:43
square-r00tmmm 7ish18:44
square-r00tserver image isn't perfected, but the box VPNs back to NOC so it's not too big a deal18:45
square-r00ti need to make a18:46
square-r00terr18:46
jedijflate night :/18:46
square-r00ta "supernode" pacman package18:46
square-r00topen house doesn't even start till 7 lol18:46
square-r00ti don't think i've been to enough to go up for membership approval yet18:46
jedijfdismember; certainly18:47
jedijfand that's the coolest name too18:47
square-r00tyeah but i was gonna go for the basic membership18:48
jedijfi was a dis first18:48
square-r00tthat way i could come in in the middle of the night when i can't sleep18:48
square-r00trmg51: i kind of want to out a rPi or beagleboard inside teddy-dbear with an IRC client, stitch him back up, and have vga and usb hookups coming out of his paws.18:58
square-r00tcyborg_teddy++18:58
square-r00ts/out/put/18:58
square-r00t(well, and cat-5 hookup too for times when wi-fi wouldn't work)18:59
teddy-dbearno way!!!!! :-/18:59
square-r00tteddy-dbear: but you could IRC with your body then!18:59
square-r00tthe surgery would be quick and painless19:00
square-r00tforget transhumanism, you could be the first transbearist19:00
teddy-dbearthis bear is not going to be cut open19:01
square-r00tyou could even run a custom ubuntu derivative! ubearntu.19:02
rmg51sq19:05
rmg51oops19:05
rmg51square-r00t: you need to go to build-a-bear19:06
square-r00tthat's not as fun19:06
teddy-dbearbetter for me :-D19:12
square-r00t:( but teddy-dbear you could let rmg51 ssh or vnc into you then!19:13
square-r00tand then down the road we could put in some servos and motors...19:13
square-r00tyou could be like a real bear! walking around!19:13
teddy-dbearthen I might have to do something :'(19:21
teddy-dbearI likes just sitting here looking way cute19:22
* waltman suddenly has a vision of teddy-dbear catching swedish fish from a chocolate fountain19:28
pleia2I have dreams like that sometimes19:28
waltmando you now?19:28
teddy-dbeardang silly humans19:30
square-r00tsilly ol' bear.19:30
=== scottrigby is now known as scottrigby_away

Generated by irclog2html.py 2.7 by Marius Gedminas - find it at mg.pov.lt!