Skip to main content.

Episode 033: Certified Package Delivery

2014-04-16

Direct Download:

Video | HD Video | MP3 Audio | OGG Audio | Torrent

This episode was brought to you by

iXsystems - Enterprise Servers and Storage For Open Source


Headlines

BSDCan schedule, speakers and talks

  • This year's BSDCan will kick off on May 14th in Ottawa
  • The list of speakers is also out
  • And finally the talks everyone's looking forward to
  • Lots of great tutorials and talks, spanning a wide range of topics of interest
  • Be sure to come by so you can and meet Allan and Kris in person and get BSDCan shirts

NYCBSDCon talks uploaded

  • The BSD TV YouTube channel has been uploading recordings from the 2014 NYCBSDCon
  • Jeff Rizzo's talk, "Releasing NetBSD: So Many Targets, So Little Time"
  • Dru Lavigne's talk, "ZFS Management Tools in FreeNAS and PC-BSD"
  • Scott Long's talk, "Serving one third of the Internet via FreeBSD"
  • Michael W. Lucas' talk, "BSD Breaking Barriers"

FreeBSD Journal, issue 2

  • The bi-monthly FreeBSD journal's second issue is out
  • Topics in this issue include pkg, poudriere, the PBI format, hwpmc and journaled soft-updates
  • In less than two months, they've already gotten over 1000 subscribers! It's available on Google Play, iTunes, Amazon, etc
  • "We are also working on a dynamic version of the magazine that can be read in many web browsers, including those that run on FreeBSD"
  • Check our interview with GNN for more information about the journal

OpenSSL, more like OpenSS-Hell

  • We mentioned this huge OpenSSL bug last week during all the chaos, but the aftermath is just as messy
  • There's been a pretty vicious response from security experts all across the internet and in all of the BSD projects - and rightfully so
  • We finally have a timeline of events
  • Reactions from ISC, PCBSD, Tarsnap, the Tor project, FreeBSD, NetBSD, oss-sec, PHK, Varnish and Akamai
  • pfSense released a new version to fix it
  • OpenBSD disabled heartbeat entirely and is very unforgiving of the IETF
  • Ted Unangst has two good write-ups about the issue and how horrible the OpenSSL codebase is
  • A nice quote from one of the OpenBSD lists: "Given how trivial one-liner fixes such as #2569 have remained unfixed for 2.5+ years, one can only assume that OpenSSL's bug tracker is only used to park bugs, not fix them"
  • Sounds like someone else was having fun with the bug for a while too
  • There's also another OpenSSL bug that OpenBSD patched - it allows an attacker to inject data from one connection into another
  • OpenBSD has also imported the most current version of OpenSSL and are ripping it apart from the inside out - we're seeing a fork in real time

Interview - Jim Brown - info@bsdcertification.org

The BSD Certification exams


Tutorial

Building OpenBSD binary packages in bulk


News Roundup

Portable signify

  • Back in episode 23 we talked with Ted Unangst about the new "signify" tool in OpenBSD
  • Now there's a (completely unofficial) portable version of it on github
  • If you want to verify your OpenBSD sets ahead of time on another OS, this tool should let you do it
  • Maybe other BSD projects can adopt it as a replacement for gpg and incorporate it into their base systems

Foundation goals and updates

  • The OpenBSD foundation has reached their 2014 goal of $150,000
  • You can check their activities and goals to see where the money is going
  • Remember that funding also goes to OpenSSH, which EVERY system uses and relies on everyday to protect their data
  • The FreeBSD foundation has kicked off their spring fundraising campaign
  • There's also a list of their activities and goals available to read through
  • Be sure to support your favorite BSD, whichever one, so they can continue to make and improve great software that powers the whole internet

PCBSD weekly digest

  • New PBI runtime that fixes stability issues and decreases load times
  • "Update Center" is getting a lot of development and improvements
  • Lots of misc. bug fixes and updates

Feedback/Questions


  • All the tutorials are posted in their entirety at bsdnow.tv
  • Send questions, comments, show ideas/topics, or stories you want mentioned on the show to feedback@bsdnow.tv
  • If you've got something cool to talk about and want to come on for an interview, shoot us an email
  • Also if you have any tutorial requests, we'd be glad to show whatever the viewers want to see
  • If you're in or around Colorado in the US, there's a brand new BSD users group that was just formed and announced - they'll be having meetings and doing tutorials, so check out their site (also, if you have a local BUG, let us know!)
  • Watch live Wednesdays at 2:00PM Eastern (18:00 UTC)

Latest News

New discussion segment

2015-01-17

We're thinking about adding a new segment to the show where we discuss a topic that the listeners suggest. It's meant to be informative like a tutorial, but more of a "free discussion" format. If you have any subjects you want us to explore, or even just a good name...

How did you get into BSD?

2014-11-26

We've got a fun idea for the holidays this year: just like we ask during the interviews, we want to hear how all the viewers and listeners first got into BSD. Email us your story, either written or a video version, and we'll read and play some of them for...

EuroBSDCon 2014

2014-09-18

As you might expect, both Allan and Kris will be at EuroBSDCon this year. They'll be busy hunting down various BSD developers and forcing them to do interviews, but don't hesitate to say hi if you're a listener!...

BSDCan 2014

2014-04-30

We just wrapped up episode 35 after having some horrible audio issues. Sorry about the quality being lower than usual, we did the best we could given the circumstances. Next week we've got a normal episode, but the following week Allan and Kris will be at BSDCan. That week will...


Episode 090: ZFS Armistice

2015-05-20

Direct Download: Video | HD Video | MP3 Audio | OGG Audio | Torrent This episode was brought to you by Headlines Playing with sandboxing Sandboxing and privilege separation are popular topics these days - they're the goal of the new "shill" scripting language, they're used heavily throughout OpenBSD, and they're gaining traction with the...

Episode 089: Exclusive Disjunction

2015-05-13

Direct Download: Video | HD Video | MP3 Audio | OGG Audio | Torrent | YouTube This episode was brought to you by Headlines OpenSMTPD for the whole family Setting up a BSD mail server is something a lot of us are probably familiar with doing, at least for our own accounts This article talks about...

Episode 088: Below the Clouds

2015-05-06

Direct Download: Video | HD Video | MP3 Audio | OGG Audio | Torrent This episode was brought to you by Headlines FreeBSD quarterly status report The FreeBSD team has posted a report of the activities that went on between January and March of this year As usual, it's broken down into separate reports from the...

Episode 087: On the List

2015-04-29

Direct Download: Video | HD Video | MP3 Audio | OGG Audio | Torrent This episode was brought to you by Headlines New PAE support in OpenBSD OpenBSD has just added Physical Address Extention support to the i386 architecture, but it's probably not what you'd think of when you hear the term In most operating systems,...