10/26/07 12:42 - 47ºF - ID#41808
picking a scab
But I got it solved. 1: Never send 401 Unauthorized without a WWW-Authenticate header. It's not allowed, and you'll get what you deserve. RFC 2617

Why do I care about HTTP authentication? Most importantly, I want to support authenticated, noninteractive web services [specifically an authenticated RSS feed]. Since this code will have to live in my server somewhere, I might as well get some mileage out of it. HTTP Digest is often overlooked but it's a nice middle ground between static hashes [which are plaintext-equivalent] and full-blown encryption [CPU load].
Source code available upon request.
- Z


Permalink: picking_a_scab.html
Words: 198
Location: Buffalo, NY
10/24/07 10:18 - 50ºF - ID#41787
dorky geek question
Here's a stupid geek trick. The correct login information for this

Here's the sitch: I have an XMLHttpRequest going out to a password-protected resource. The credentials are supplied by the user and thus they are likely to be wrong some of the time. The script is designed to gracefully handle authentication failure - specifically, I want to avoid the crappy infinite HTTP authentication dialog box loop. I'd think that this issue would come up from time to time, but I guess it doesn't because this is really hairy:
XMLHttpRequest

To work around this, Paul James

HTTP/1.1

HTTP/1.1 also gives us 403 Forbidden: "Authorization will not help and the request SHOULD NOT be repeated." This response has the same bizarre effects as 401 without WWW-Authenticate.
I'm actually kind of an AJAX newb, so ... does anyone have any recommendations?
- Z


Permalink: dorky_geek_question.html
Words: 387
Location: Buffalo, NY
Category: fun
10/17/07 01:00 - 67ºF - ID#41688
more halloween fun
But this year it seems like there's a lot of fun stuff happening. Consider this, first off, a bump for "Nosferatu," below.
At the other end of the film spectrum, Regal Transit is going to be screening The Nightmare Before Christmas in 3-D this year. [I was initially surprised that they'd taken the expense of shooting in 3-D if they weren't going to distribute as 3-D ... but alas, this is yet another film digitally altered by ILM. Thank you George Lucas!]
[Woah, rerecompression. I hear Flash 9 is going to have native support for H.264?]
Is everyone familiar with fundamentalist Christian haunted houses? Alleyway Theatre bought a copy of the 'official' script and is presenting "Hell House Buffalo" upstairs of the costume store/bike shop at 745 Main.

- Z


Permalink: more_halloween_fun.html
Words: 276
Location: Buffalo, NY
Category: movies
10/12/07 10:57 - 47ºF - ID#41609
nosferatu
Five months later, the German silent film 'Nosferatu, eine Symphonie des Grauens [a Symphony of Horror]' made its American debut. Nosferatu paved new ground, being one of the first German Expressionist films and the first [albeit unauthorized] screen adaptation of Dracula. It's still pretty fucking creepy.
On Tue 30 Oct at 7:30p, Shea's will once again screen Nosferatu, with a musical accompaniment by the Devil Music Ensemble [admission $15.50]. I am going and so should you. That goes double for the non-(e:peeps) who read this, and triple for the Buffalo n00bz who have never been to Shea's.
Let me know who's in [non-peeps can email me], I'll run down to the box office & pick up tix.
- Z


Permalink: nosferatu.html
Words: 161
Location: Buffalo, NY
Category: a series of tubes
10/10/07 01:51 - 59ºF - ID#41574
little bobby tables

[(e:dragonlady7)'s previous place of employment made a database system for nursing homes. They released an update and started getting complaints from their clients that they couldn't enter Irish patients. It took them a little while to figure out that the backend was tripping over O'Malley.]
- Z


Permalink: little_bobby_tables.html
Words: 66
Location: Buffalo, NY
Category: a series of tubes
10/06/07 09:41 - 71ºF - ID#41523
?
- Z


Permalink: _.html
Words: 6
Location: Buffalo, NY
Category: mental health
10/04/07 12:18 - 73ºF - ID#41491
future perfect & quantum mechanics
The Copenhagen interpretation of quantum mechanics (WIKIPEDIA - Schrodinger's cat) states that all of the possible outcomes of an experiment - even if contradictory - are true until the outcome is observed. This is a purely theoretical thought experiment, since it can only be validated by observation and it's not possible to observe an experiment before it has been observed. Thank you, Bohr and Heisenberg, for being such jackoffs.
Which brings me to the point I was trying to make: health insurance. We signed up for Healthy NY and our coverage took effect 1 August. We were shuffling around finances at the time, and missed our first bill. We received a notice postmarked 10 September saying that they'd cancelled our coverage effective 1 Sept, and if we wanted to continue coverage we'd have to pay for coverage received and prepay one month's worth. I sent the payment off, but upon further inspection I thought, damn this is a lot of money. Instead of the two months' payment I had expected [August, the payment we missed, and October, the prepayment], it was for three months. So I called.
Me: Am I covered?
Univera: ...no.
Z: OK, I sent my payment 27 Sept. How long will that take to process?
U: Couple days, don't worry about it. Any other questions?
Z: Yeah, so I [explain the situation]. August and October I understand, but where does this third month come in?
U: That's for September.
Z: OK, but I got a letter saying that I wasn't covered in September.
U: Because you didn't pay.
Z: Right. So what am I paying for?
U: August, September and October.
Z: What about this letter I got?
U: When your payment goes through, you will have been covered for September.
Z: Woah, hold on. When I was told I didn't have insurance I canceled my doctors appointments. [Not true but it could be.]
U: We would have covered them.
Z: But you dropped my coverage.
U: We would have covered them once the payment went through.
Z: OK. So let's say I broke my leg today.
U: You are not covered, but once your payment goes through you will have been covered.
Z: So am I covered today or not?
U: You are not covered for today. But once your payment goes through you will have been covered for today.
Z: I don't understand. Was I covered in September or not?
U: You are not yet covered for September, but once we receive your payment you will have been covered.
Z: So this letter I got ... was I actually dropped or not?
And I basically just talked in circles for fifteen minutes with two separate customer service representatives until we reached an agreement: that I am completely incapable of understanding my own health insurance coverage.
- Z


Permalink: future_perfect_amp_quantum_mechanics.html
Words: 522
Location: Buffalo, NY
Category: a series of tubes
09/28/07 12:28 - 59ºF - ID#41378
please... bring me a toothpick


Permalink: please_bring_me_a_toothpick.html
Words: 19
Location: Buffalo, NY
Category: politics
09/27/07 11:43 - 61ºF - ID#41354
i hate bush


Permalink: i_hate_bush.html
Words: 17
Location: Buffalo, NY
Category: blogging
09/23/07 02:01 - 71ºF - ID#41268
buffalo blogtoberfest
Roll call: Mr. and Mrs. Punaro


Meanwhile (e:strip)

- Z
_______________
xpost:



Permalink: buffalo_blogtoberfest.html
Words: 187
Location: Buffalo, NY
Author Info
Date Cloud
- 10/11
- 08/10
- 07/10
- 06/10
- 05/10
- 04/10
- 03/10
- 02/10
- 01/10
- 12/09
- 11/09
- 10/09
- 09/09
- 08/09
- 07/09
- 06/09
- 05/09
- 04/09
- 03/09
- 02/09
- 01/09
- 12/08
- 11/08
- 10/08
- 09/08
- 08/08
- 07/08
- 06/08
- 05/08
- 04/08
- 03/08
- 02/08
- 01/08
- 12/07
- 11/07
- 10/07
- 09/07
- 08/07
- 07/07
- 06/07
- 05/07
- 04/07
- 03/07
- 02/07
- 01/07
- 12/06
- 11/06
- 10/06
- 09/06
- 08/06
- 07/06
- 06/06
- 05/06
- 04/06
- 03/06
- 02/06
Category Cloud
More Entries
After This
My Fav Posts
- This user has zero favorite blogs selected ;(
Are you getting Leopard jitters yet!!
With HTTP Digest, the server sends a random session nonce to the client. The client adds its own random request nonce and sends back (r-nonce, md5(password, s-nonce, r-nonce)). The effect is that the hash that's sent to the server is different for every request. There's actually more that goes into it that also prevents someone from using an old hash.
Will clean up code & post this afternoon.
- Z
Can you post the source so we can see it or send it to me.