
<!DOCTYPE rss PUBLIC  "-//Netscape Communications//DTD RSS 0.91//EN"
"http://my.netscape.com/publish/formats/rss-0.91.dtd">
<rss version="0.91">
<channel> 
<title></title> 
<link>http://www-int.stsci.edu/~bsimon/weblog.cgi</link> 
<description>The work log of Bernie Simon</description> 
<language>en</language> 
<item>
<title>Big Boss</title>
<link>http://www-int.stsci.edu/~bsimon/weblog.cgi/post/301246393180.html</link>
<description>&lt;p&gt;I started the day looking at a fix for the RSS bug that took our site down over the weekend. I got drafted into looking for security holes in some user web scripts. In between I fielded calls assigned to our group and responded to some myself.&lt;/p&gt;</description>
</item>

<item>
<title>Tests and Fixes</title>
<link>http://www-int.stsci.edu/~bsimon/weblog.cgi/post/261246049422.html</link>
<description>&lt;p&gt;I I tested the new diagram submission form (it passed) and then went back to testing and fixing cmlib.&lt;/p&gt;</description>
</item>

<item>
<title>Testing and Looking</title>
<link>http://www-int.stsci.edu/~bsimon/weblog.cgi/post/251245963053.html</link>
<description>&lt;p&gt;I retested the changes for the next par release and looked at the Zope LDAP Manager code to find where LDAP attributes are defined. In turned out to be SchemaDefaults.py&lt;/p&gt;</description>
</item>

<item>
<title>PAR Time</title>
<link>http://www-int.stsci.edu/~bsimon/weblog.cgi/post/241245875385.html</link>
<description>&lt;p&gt;I  checked out a php script for security problems, wrote my par employee comments, and did a project review for my two ldap projects.&lt;/p&gt;</description>
</item>

<item>
<title>Security Checking</title>
<link>http://www-int.stsci.edu/~bsimon/weblog.cgi/post/231245788975.html</link>
<description>&lt;p&gt;I finished my security testing. No additional vulnerabilities were found. I tlaked with Greg about Jared's problems and worked some more on debugging stiki.&lt;/p&gt;</description>
</item>

<item>
<title>Testing</title>
<link>http://www-int.stsci.edu/~bsimon/weblog.cgi/post/171245270393.html</link>
<description>&lt;p&gt;I sent a new message to Jared documenting the par ldap interface. I finished testing Greg's modifications to the par. Then I went back to my security audit.&lt;/p&gt;</description>
</item>

<item>
<title>Par Is Still With Us</title>
<link>http://www-int.stsci.edu/~bsimon/weblog.cgi/post/161245183898.html</link>
<description>&lt;p&gt;I spent the day answering a question by Jared and testing recent changes to the par application.&lt;/p&gt;</description>
</item>

<item>
<title>Security</title>
<link>http://www-int.stsci.edu/~bsimon/weblog.cgi/post/121244840863.html</link>
<description>&lt;p&gt;I looked for security holes in our web applications in order to justify spending more time on this work and it didn't take me very long to find a hole in one of our cgi-bin scripts.&lt;/p&gt;</description>
</item>

<item>
<title>Stiki Again</title>
<link>http://www-int.stsci.edu/~bsimon/weblog.cgi/post/111244754063.html</link>
<description>&lt;p&gt;I did more work on stiki, the demo app for cmlib. I'm squashing bugs and it's close to done.&lt;/p&gt;</description>
</item>

<item>
<title>Cmlib again</title>
<link>http://www-int.stsci.edu/~bsimon/weblog.cgi/post/101244665362.html</link>
<description>&lt;p&gt;Monday nad Tuesday I was attending web security training. Today I worked on fixing security problems in cmlib that the training made me aware of.&lt;/p&gt;</description>
</item>

</channel>
</rss>
