• You call that a bug fix?

    The other day I wrote about a security fix that Apple put into Mac OS X server. Basically Apple removed a checkbox that said "Require Authenticated Binding between Clients and Server". The original bug was that you couldn't turn off anonymous LDAP binding which is a security risk if your LDAP server is exposed to the Internet or hackers are on your LAN. Apple's fix effectively removes the illusion of security as anonymous LDAP binding is still permitted. I've re-opened the bug as Apple's fix is not acceptable from a security point of view.

    I'm a bit disappointed with this fix as it took almost 2 years to remove a checkbox which doesn't even come close to fixing the problem. Nice job, Apple!

  • Geek cred just went up!

    Almost 2 years ago, I wrote about a security issue with Mac OS X server. Well, Apple has finally addressed this in the latest security update and latest Snow Leopard Server. I even got credit in the security update notes for reporting it! One thing I'm a little confused on is the fix, "The issue is addressed by removing this configuration option." I'm going to have to download the update and see what exactly they mean.

  • Review: HandShoeMouse

    One of the things I enjoy about going to Macworld Expo is finding something I didn't know I needed. A few weeks back, I was diagnosed with tendonitis in my right arm. I've been wearing a brace on it and trying to do some exercises to help it. At Macworld Expo, I stumbled upon a booth for an ergonomic mouse.

    I'm not a huge mouse person as I have been using trackballs for many years. However, I listened to the HandShoeMouse pitch, put my hand on a mouse and within minutes, I bought one. This mouse was not cheap (it cost $89 which apparently is a $40 savings), but how much is my health worth? I use a computer all day long and if I have pain, it will seriously impact my ability to earn money, so it is a small investment.

    I've been using the mouse for about 2 weeks now and am pretty used to it by now. The only quirk I've had is that it goes to sleep and you have to press a button on the mouse to wake it up. The developers of this mouse have really put a lot of time and thought into it. It has a rechargable battery that recharges via USB when it gets low; and the light on the scrollwheel lights up when you need it to recharge. They were also very insisitent that they didn't want it to have any drivers which sold me even more; plug and play.

    Time will only tell if this mouse will help me, but it is definitely worth looking at if you use a computer for long periods of time which these days is just about everyone I know.

    Pros

    • Glides smoothly on my desk.
    • Very comfortable.
    • Wireless.
    • Very accurate tracking (I got the BluRay Track version.
    • May prove to help with RSI.

    Cons

    • High cost.
    • Feels weird using a mouse having used a trackball for many years.
    • Scroll wheel sometimes feels like it is slipping.
    • Takes a second or two to wake when it has gone to sleep; you have to wake it by pressing a button as moving it does nothing.

    Summary

    I'm pretty pleased with this purchase and am hopeful that it will help with my current injury and help prevent future ones. I still need to look into getting a very smooth mousepad as my desk is a little rough and I'd like a bit less friction when moving the mouse; maybe they could have included one, but I guess mousepads are a dime a dozen these days (maybe not the real smooth ones).

  • Shareware or Freeware?

    I was taking a look at programs to go with my new Forerunner 405 and stumbled upon TrailRunner and am fairly impressed. The author says it is donation-ware as he doesn't have time to support it and people would expect support. That's fine and dandy, but if you don't donate, you get a reminder when you launch the app to donate. So what is the difference between shareware and donation-ware that nags you? In my opinion, there is no difference. The author wants 25 Euros for the app to get rid of the screen.

    While the application looks well done, I have a problem with what the author is doing. He should either make it free without a nag (and accept donations) or make it shareware. It is misleading, in my opinion, to say it's free, but nag you at every startup to donate. Will this prevent me from buying (let's face it, it is not a donation), I'm not sure. I like how it presents the data and like the mapping, but this really irks me.

    Hey author, wake up and make your app shareware. You'd actually be surprised how much well written software can earn you and then you can stop making excuses on why you can't support the software.