Looking back on Drupal City Berlin 2011

It’s been a while since Drupal City Berlin 2011. In fact it has taken place in September 2011 already but i think a short wrap-up is necessary, especially since the first video captures popped up in the last days.

Tempelhofer Hafen, Veranstaltungsort Drupal City Berlin 2011 Camp, Montage und Photo Copyright 2011 Christian Stottmeister
Photo and Montage © 2011 Christian Stottmeister, dcb11 Logo by their respective owners

I’ve been invited by Jutta Horstmann of Bonn based Drupal shop data in transit to join her Fishbowl panel discussion on Drupal business called "$title, $thesen, $temperamente" It was real fun. Jutta asked five so called visionaries to present their idea on what Drupal business is now or supposed to be. The audience had then to pick one of the six visions which should be discussed afterwards. It had to be a controversial topic so i presented my statement that there is a misconception of "What is a Drupal developer?" Fortunately the audience decided in favor of my thesis and we had a good discussion with lots of requests to speak and speaker rotation (see the concept of a fishbowl panel on Wikipedia). As far as i can remember there was someone who took a video so hopefully a live recording will be uploaded soon.

Drupal City Berlin 2011, Fishbowl panel discussion, Christian Stottmeister, second from right
Photo of the panel discussion © 2011 Sven Culley, all rights reserved. Used with permission.

Until the recording of the fishbowl discussion will be published you can view other videos of the #dcb11 uploaded so far by b-connect.de and the Drupal City organizers. A more extensive review of the camp by Ralf can be found over at comm-press’ blog. Last but not least kudos to the dcb11 team for the well organized event!

Posted in hands off! this is my stuff, open source and free software | Tagged , , | Leave a comment

PHP 5.3.7 contains a serious security risk

As discussed in a current bugreport the current stable PHP version has a serious issue. This issue affects security critically as it might be the opener for some serious authentication problems. Let’s have a look on the facts.

broken key by torbakhopper at Flickr
Creative Commons License photo credit: torbakhopper

PHP v5.3.7 is offering the crypt() function which is a proxy for several encryption algorithms. It supports DES, MD5, Blowfish and several SHA variants. It can be salted optionally and comes with its own implementation of these algorithms since PHP 5.3.0 (it relied on available system functions before). We have discussed earlier why salting is good when using hash functions. When passing an optional salt parameter crypt() decides upon the structure of the salt which hashing algorithm to use else it defaults to the standard DES.

Read More »

Posted in my beloved code, open source and free software, world wide webtech | Tagged , , , , , , , | Leave a comment

Hosting with eleven2 works like a charm

As i wrote earlier i am currently restructuring my hosting sites. For my plain websites i used to host on shared ressources over at 1&1’s but while they provide great service they’re quite expensive. I was searching for an alternative and found it with eleven2. I have used their service for over a year now and am very pleased. Let me list some of the advantages i’ve found:

Read More »

Posted in friends & partners, the operating system and you, world wide webtech | Tagged | Leave a comment

MD5 hash cracker list updated

Just to let you noticed: i updated the list of MD5 cracking services over at How to crack MD5 passwords online. I added a handful of new services and local software packages. Let me know if you know some more!

Posted in security & privacy | Tagged , , , , | Leave a comment

Searching for SOHO Network Attached Storage solution

Dear readers,

sorry for being so quiet at the moment. I am currently in the process of restructuring the services of the mainframe8 network so i’m quite occupied these days.

Anyway i am searching for a network attached storage device for my home-office. I need a two-disk device that provides some reliability (RAID 1 is sufficient). The box itself should have some computing power and a bunch of access methods (SSH, FTP, Samba is a must, DLNA would be good). I have thought of the DS210+ NAS server of Synology or some device of QNAP, but i’m not sure which. Perhaps the QNAP TS-239 Pro II? What do you think?

Posted in hardware fetishism | Tagged , | Leave a comment