<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	>

<channel>
	<title>blog.iloaf.com &#187; Knee Jerk</title>
	<atom:link href="http://blog.iloaf.com/category/knee-jerk/feed/" rel="self" type="application/rss+xml" />
	<link>http://blog.iloaf.com</link>
	<description>Blogging revisited</description>
	<pubDate>Sat, 05 Jul 2008 14:03:01 +0000</pubDate>
	<generator>http://wordpress.org/?v=2.5.1</generator>
	<language>en</language>
			<item>
		<title>Mailchannels first impressions &#038; its feedback loop</title>
		<link>http://blog.iloaf.com/2008/05/25/mailchannels-first-impressions-its-feedback-loop/</link>
		<comments>http://blog.iloaf.com/2008/05/25/mailchannels-first-impressions-its-feedback-loop/#comments</comments>
		<pubDate>Sun, 25 May 2008 22:09:22 +0000</pubDate>
		<dc:creator>Chris</dc:creator>
		
		<category><![CDATA[Knee Jerk]]></category>

		<category><![CDATA[Spam]]></category>

		<category><![CDATA[feedback]]></category>

		<category><![CDATA[mailbox]]></category>

		<category><![CDATA[mailchannels]]></category>

		<category><![CDATA[smtp proxy]]></category>

		<category><![CDATA[spy]]></category>

		<guid isPermaLink="false">http://blog.iloaf.com/?p=104</guid>
		<description><![CDATA[	I love the idea of abusing the fact that spammers are in a hurry. Traffic Control checks all the geeky check-boxes of a SMTP proxy I should take a closer look at.
So the first thing I do once I can netcat to the proxy and check it&#8217;s running is fire up a &#8220;tcpflow -c -i [...]]]></description>
			<content:encoded><![CDATA[	<p>I love the idea of abusing the fact that spammers are in a hurry. Traffic Control checks all the geeky check-boxes of a <span class="caps">SMTP</span> proxy I should take a closer look at.<br />
So the first thing I do once I can netcat to the proxy and check it&#8217;s running is fire up a &#8220;tcpflow -c -i eth0 not port 22&#8221; to watch it in action.  I could immediately see how it slows connections (sweet), and then the instant phone home traffic or feedback mechanism.<br />
I&#8217;m not so sure I like the feedback mechanism. The main issue is &#8220;but not be limited to&#8221; statement in the license as usual not the fact that they aggregate logs, over http on port 25.</p>

	<p>Exhibit #1 &#8211; License snippet :<br />
<blockquote>17.Feedback. The Software may periodically submit statistics about its<br />
operation to servers operated by MailChannels and other parties<br />
authorized by MailChannels (the &#8220;Feedback&#8221;). The Feedback shall<br />
include <strong>but not be limited to</strong> the IP addresses of email senders,<br />
server memory usage, server <span class="caps">CPU</span> usage, and various attributes of<br />
email sending hosts such as operating system type.</blockquote><br />
Exhibit #2 &#8211; Stream capture : feedback.mailchannels.com port 25 gets sent a log line per email as a http post.<br />
<blockquote>rd.42946-feedback.mailchannels.com.00025: <span class="caps">POST </span>/et/capture <span class="caps">HTTP</span>/1.1<br />
Host: feedback.mailchannels.com<br />
Content-Length: 402<br />
Connection: keep-alive</p>

	<p>[2008-05-25 16:58:53 +0100] [22019] i=78.149.112.169:52371 h= o=N u= a= t= p=0 d=0<br />
x=&#8221;ClientACL t=0,0|EarlyTalker t=0|RBL action=reject;cbl.abuseat.org=no_data;hul.habeas.com=no_data; query.bondedsender.org=no_data;sbl-xbl.spamhaus.org=no_data; t=0.11,0.17,0.04,0.28,0.17;zen.spamhaus.org=127.0.0.11.reject&#8221;<br />
l=ACCEPT c=550 z=&#8221;Found on zen spamhaus&#8221; e=&#8221;[550,Found on zen spamhaus]&#8221;<br />
q= n=1/0/1 b=0/0/0/1 v=</blockquote><br />
<sup>CR&#8217;s added for readability</sup></p>

	<p>I completely understand why they want the spy-in-the-box (having worked with Justin I know the possibilities are endless) but that license is a bit too lax for me. It&#8217;s just a niggle but I&#8217;d feel more comfortable if it was defined explicitly, and explained in full and have the option to disable it on privacy grounds.</p>

	<p>You need to disable <span class="caps">SPF</span> in your mailserver too, since the postfix sees the proxy ip, spf hard fails result in a reject &#8230; I should have thought of that <img src='http://blog.iloaf.com/wp-includes/images/smilies/icon_wink.gif' alt=';)' class='wp-smiley' /> Maybe thats where my license file has gone <img src='http://blog.iloaf.com/wp-includes/images/smilies/icon_wink.gif' alt=';)' class='wp-smiley' /> Woops.</p>

	<p>Just in case Ken reads this..<br />
<ul></p>
	<p><li>Kudos for the non commercial licensing</li><br />
<li>I&#8217;ve mailed free-beer and am still waiting for a key.</li><br />
</ul></p>
	<p>Being a typical old school QA guy I&#8217;ve a heap of suggestions, but for the time being this image of my mailbox shows the performance in the first hour or two with the default config.<br />
<a href="/wp-content/mailbox.png"><img class="aligncenter" src="/wp-content/mailbox.png" alt="mailbox" width="70%" height="70%" /> </a><br />
...eww, but you should see what happens without it.<br />
In fact if you look at the graph below you can see the effect is that the server is relaying more mail and rejecting less.</p>

	<p><sup> E&#038;OE plus the fact I&#8217;m in a rotten mood, I&#8217;m blaming the prescription(s) <img src='http://blog.iloaf.com/wp-includes/images/smilies/icon_wink.gif' alt=';)' class='wp-smiley' /> </sup></p>
 <div><a href="http://www.addthis.com/bookmark.php" onclick="window.open('http://www.addthis.com/bookmark.php?pub=&amp;url=http%3A%2F%2Fblog.iloaf.com%2F2008%2F05%2F25%2Fmailchannels-first-impressions-its-feedback-loop%2F&amp;title=Mailchannels+first+impressions+%26%23038%3B+its+feedback+loop', 'addthis', 'scrollbars=yes,menubar=no,width=620,height=520,resizable=yes,toolbar=no,location=no,status=no'); return false;" title="Bookmark using any bookmark manager!" target="_blank"><img src="http://s3.addthis.com/button1-bm.gif" width="125" height="16" border="0" /></a></div>]]></content:encoded>
			<wfw:commentRss>http://blog.iloaf.com/2008/05/25/mailchannels-first-impressions-its-feedback-loop/feed/</wfw:commentRss>
		</item>
		<item>
		<title>cottages4you (aka VRG) suck</title>
		<link>http://blog.iloaf.com/2008/01/02/cottages4you-aka-vrg-suck/</link>
		<comments>http://blog.iloaf.com/2008/01/02/cottages4you-aka-vrg-suck/#comments</comments>
		<pubDate>Wed, 02 Jan 2008 11:27:09 +0000</pubDate>
		<dc:creator>Chris</dc:creator>
		
		<category><![CDATA[Knee Jerk]]></category>

		<category><![CDATA[News]]></category>

		<category><![CDATA[cottages4you]]></category>

		<category><![CDATA[customer service]]></category>

		<category><![CDATA[holiday]]></category>

		<category><![CDATA[vrg]]></category>

		<guid isPermaLink="false">http://blog.iloaf.com/2008/01/02/cottages4you-aka-vrg-suck/</guid>
		<description><![CDATA[	I hope you all had a better festive season than me. -4 degrees on Christmas morning with a broken boiler in the heart of northern France wasn&#8217;t much fun. We perceivered for a couple of nights with the loan of some crappy electric heaters and a temperamental example of French home wiring. We had to [...]]]></description>
			<content:encoded><![CDATA[	<p>I hope you all had a better festive season than me. -4 degrees on Christmas morning with a broken boiler in the heart of northern France wasn&#8217;t much fun. We perceivered for a couple of nights with the loan of some crappy electric heaters and a temperamental example of French home wiring. We had to give up when the elder family decided it was way too cold and enough was enough.</p>

	<p>I&#8217;m going to cause a lot of pain for somebody at cottages4you today &#8211; their emergency numbers were off-line for the duration of our troubles.</p>

	<p><strong>Update:</strong> c4u customer care are now in the office and have been very responsive. If only they could have been like this out of normal hours.</p>

	<p><strong>Update #2:</strong> Situation resolved. c4u do not deny our situation and their errors and have resolved matters accordingly.<br />
The out of hours services need to improve. It still sucks that cottages4you&#8217;s emergency numbers were offline (not even voicemail based callback) on bank holidays. They really need to step it up a gear and make sure that phone is covered 24h 365.25days a year for big issues. Being an agent for a contracted landlord is no excuse and does not prevent them being liable for issues since thats who the customer has a contract with at the end of the day.</p>
 <div><a href="http://www.addthis.com/bookmark.php" onclick="window.open('http://www.addthis.com/bookmark.php?pub=&amp;url=http%3A%2F%2Fblog.iloaf.com%2F2008%2F01%2F02%2Fcottages4you-aka-vrg-suck%2F&amp;title=cottages4you+%28aka+VRG%29+suck', 'addthis', 'scrollbars=yes,menubar=no,width=620,height=520,resizable=yes,toolbar=no,location=no,status=no'); return false;" title="Bookmark using any bookmark manager!" target="_blank"><img src="http://s3.addthis.com/button1-bm.gif" width="125" height="16" border="0" /></a></div>]]></content:encoded>
			<wfw:commentRss>http://blog.iloaf.com/2008/01/02/cottages4you-aka-vrg-suck/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Having sobered up from the rugby&#8230;</title>
		<link>http://blog.iloaf.com/2005/03/24/having-sobered-up-from-the-rugby/</link>
		<comments>http://blog.iloaf.com/2005/03/24/having-sobered-up-from-the-rugby/#comments</comments>
		<pubDate>Thu, 24 Mar 2005 04:14:34 +0000</pubDate>
		<dc:creator>Chris</dc:creator>
		
		<category><![CDATA[Knee Jerk]]></category>

		<category><![CDATA[SlowNewsDay]]></category>

		<category><![CDATA[~/]]></category>

		<guid isPermaLink="false">http://blog.iloaf.com/index.php/2005/03/24/having-sobered-up-from-the-rugby/</guid>
		<description><![CDATA[	..  It&#8217;s back to knee jerk reality with a bump.  It&#8217;s stupid&#8217;o&#8217;clock and I can&#8217;t sleep.
I should probably explain this category at this point.
 &#8220;Knee-Jerk&#8221;; Synonyms:  absence of thought, automatic reaction, gut reaction, involuntary impulse, Pavlovian response.
(Strangely rarely the latter ;))

	So Knee-Jerk is something thats done for the sake of doing something, [...]]]></description>
			<content:encoded><![CDATA[	<p>..  It&#8217;s back to knee jerk reality with a bump.  It&#8217;s stupid&#8217;o&#8217;clock and I can&#8217;t sleep.<br />
I should probably explain this category at this point.<br />
<blockquote> &#8220;Knee-Jerk&#8221;; <strong>Synonyms:</strong>  absence of thought, automatic reaction, gut reaction, involuntary impulse, Pavlovian response.<br />
(Strangely rarely the latter ;))</p>

	<p>So Knee-Jerk is something thats done for the sake of doing something, usually when that something had no good reason to be fscked with in the first place (<em>one misunderstood</em>), often as a verbal reaction whilst (<em>pea or chemically abused</em>) brain is clearly in neutral but one felt the need to be seen to verbalise something.</p>

	<p>(<em>usually when they can&#8217;t stand the awesome power of pause/silence that is generally used part way thorough a sentence whilst the speaker waits for your penny to drop (NB: g!=9.81 inside bags of water and protein)</em>). Feel free to comment with other examples <img src='http://blog.iloaf.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>

	<p>Back to the category; It has nothing in-particular to do with flora, fauna, family, work, life, the universe and everything I would like to add.   It is just situations, however big or small that were caused due to memory corruption in a sentient being.</p>

	<p>We all do it from time to time but most of us twig and apologise <img src='http://blog.iloaf.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> <br />
</blockquote><br />
It&#8217;s been a fun week, 2 steps forwards followed buy a step back, but fun all the same.<br />
...<a href="http://money.cnn.com/2005/03/22/technology/ibm_spam/index.htm">3 back in <span class="caps">CNN</span>&#8217;s case</a>. (It&#8217;s just a challenge response gizmo, <a href="http://freshmeat.net/search/?q=challenge+response&#38;trove_cat_id=29&#38;section=trove_cat&#38;Go.x=14&#38;Go.y=7">They are not new or costly</a> (they just suck).<br />
So they win today&#8217;s award of the coveted Knee-jerk trophy. (Quiet news day, had to say something about <span class="caps">IBM</span>&#8217;s <strike>old</strike>new toy, fscked up with foot in mouth and brain is clearly in neutral).</p>

	<p>It&#8217;s nice to know <em>some</em> people get paid to think rather than talk.</p>
 <div><a href="http://www.addthis.com/bookmark.php" onclick="window.open('http://www.addthis.com/bookmark.php?pub=&amp;url=http%3A%2F%2Fblog.iloaf.com%2F2005%2F03%2F24%2Fhaving-sobered-up-from-the-rugby%2F&amp;title=Having+sobered+up+from+the+rugby%26%238230%3B', 'addthis', 'scrollbars=yes,menubar=no,width=620,height=520,resizable=yes,toolbar=no,location=no,status=no'); return false;" title="Bookmark using any bookmark manager!" target="_blank"><img src="http://s3.addthis.com/button1-bm.gif" width="125" height="16" border="0" /></a></div>]]></content:encoded>
			<wfw:commentRss>http://blog.iloaf.com/2005/03/24/having-sobered-up-from-the-rugby/feed/</wfw:commentRss>
		</item>
		<item>
		<title>We all loved RFC 1321 (even if you didn&#8217;t know you did)</title>
		<link>http://blog.iloaf.com/2005/03/13/we-all-loved-rfc-1321-even-if-you-didnt-know-you-did/</link>
		<comments>http://blog.iloaf.com/2005/03/13/we-all-loved-rfc-1321-even-if-you-didnt-know-you-did/#comments</comments>
		<pubDate>Sun, 13 Mar 2005 08:59:17 +0000</pubDate>
		<dc:creator>Chris</dc:creator>
		
		<category><![CDATA[Knee Jerk]]></category>

		<guid isPermaLink="false">http://blog.iloaf.com/index.php/2005/03/13/we-all-loved-rfc-1321-even-if-you-didnt-know-you-did/</guid>
		<description><![CDATA[	
	http://www.win.tue.nl/~bdeweger/CollidingCertificates/
http://eprint.iacr.org/2005/067.pdf
http://www.computing.dcu.ie/~coheigeartaigh/presentations/redbrick_talk.pdf


	Don&#8217;t start any FUD please, this attack can be thwarted since it requires you know the templates of the certificates and as most serial numbers are long enough randoms or created via a secret, this will mostly foil this as I understand it.
 ]]></description>
			<content:encoded><![CDATA[	<p><ul></p>
	<p><li><a href="http://www.win.tue.nl/~bdeweger/CollidingCertificates/">http://www.win.tue.nl/~bdeweger/CollidingCertificates/</a><br />
</li><li><a href="http://eprint.iacr.org/2005/067.pdf">http://eprint.iacr.org/2005/067.pdf</a><br />
</li><li><a href="http://www.computing.dcu.ie/~coheigeartaigh/presentations/redbrick_talk.pdf">http://www.computing.dcu.ie/~coheigeartaigh/presentations/redbrick_talk.pdf</a></li></ul></p>


	<p>Don&#8217;t start any <span class="caps">FUD</span> please, this attack can be thwarted since it requires you know the templates of the certificates and as most serial numbers are long enough randoms or created via a secret, this will mostly foil this as I understand it.</p>
 <div><a href="http://www.addthis.com/bookmark.php" onclick="window.open('http://www.addthis.com/bookmark.php?pub=&amp;url=http%3A%2F%2Fblog.iloaf.com%2F2005%2F03%2F13%2Fwe-all-loved-rfc-1321-even-if-you-didnt-know-you-did%2F&amp;title=We+all+loved+RFC+1321+%28even+if+you+didn%26%238217%3Bt+know+you+did%29', 'addthis', 'scrollbars=yes,menubar=no,width=620,height=520,resizable=yes,toolbar=no,location=no,status=no'); return false;" title="Bookmark using any bookmark manager!" target="_blank"><img src="http://s3.addthis.com/button1-bm.gif" width="125" height="16" border="0" /></a></div>]]></content:encoded>
			<wfw:commentRss>http://blog.iloaf.com/2005/03/13/we-all-loved-rfc-1321-even-if-you-didnt-know-you-did/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Internet spurs poor quality software</title>
		<link>http://blog.iloaf.com/2005/03/06/internet-spurs-poor-quality-software/</link>
		<comments>http://blog.iloaf.com/2005/03/06/internet-spurs-poor-quality-software/#comments</comments>
		<pubDate>Sat, 05 Mar 2005 21:59:15 +0000</pubDate>
		<dc:creator>Chris</dc:creator>
		
		<category><![CDATA[Knee Jerk]]></category>

		<guid isPermaLink="false">http://blog.iloaf.com/?p=6</guid>
		<description><![CDATA[	Test Bed has some good points about the &#8220;ship it quick, patch it later&#8221; culture that follows some (not all) Internet focused software. Internet spurs poor quality software
In the past, console games have always been more stable than PC games, in general, because they are not easy to patch. If a company releases a screwed [...]]]></description>
			<content:encoded><![CDATA[	<p>Test Bed has some good points about the &#8220;ship it quick, patch it later&#8221; culture that follows some (not all) Internet focused software. <a href="http://blogs.pingpoet.com/philblog/archive/2004/11/19/954.aspx">Internet spurs poor quality software</a><br />
<blockquote>In the past, console games have always been more stable than PC games, in general, because they are not easy to patch. If a company releases a screwed up console game it&#226;&#8364;&#8482;s a lot more detrimental because a customer cannot go download patch.</blockquote></p>

	<p>...T-Shirts for sale, Get ya Quality T-Shitrs ere. Quality is after all an investment right?</p>
 <div><a href="http://www.addthis.com/bookmark.php" onclick="window.open('http://www.addthis.com/bookmark.php?pub=&amp;url=http%3A%2F%2Fblog.iloaf.com%2F2005%2F03%2F06%2Finternet-spurs-poor-quality-software%2F&amp;title=Internet+spurs+poor+quality+software', 'addthis', 'scrollbars=yes,menubar=no,width=620,height=520,resizable=yes,toolbar=no,location=no,status=no'); return false;" title="Bookmark using any bookmark manager!" target="_blank"><img src="http://s3.addthis.com/button1-bm.gif" width="125" height="16" border="0" /></a></div>]]></content:encoded>
			<wfw:commentRss>http://blog.iloaf.com/2005/03/06/internet-spurs-poor-quality-software/feed/</wfw:commentRss>
		</item>
	</channel>
</rss>

<!-- Dynamic Page Served (once) in 0.350 seconds -->
