PaPer – Paranoies Personals – Blog d'en Sergi Pons Freixes
5Feb/120

Simple virtual user mail system on Debian

On this post I will explain how to set-up an  e-mail server on Debian using Postfix, Cyrus, Courier, PAM, PostfixAdmin and Roundcube. I'm not going to explain nothing completely new or revolutionary neither reinvent the wheel. To be clear, what I did to implement the server was following this guide: Simple Virtual User Mail System. But, it's for Arch Linux, so if we want it to work on Debian there are several changes that we have to take into account. So, instead of repeating everything, I will just highlight the changes.

27Jan/120

Looking for a new logo

With the new home page, the old cube logo was a bit out of  place. It still had the old flavour of the previous web page, so I also wanted to change it.

I remember that I did it with Gimp, following a tutorial about how to do a 3D cube. I even used the same colours and did everything exactly as explained there, so it was not very original... but I liked it. Geez, so many years have passed since then...

The old cube

The old cube

This time, I tried asking my brother (who is supposedly studying graphic design or something like that :P) for help, but after a few weeks he has not shown much interest on it. So, "ni corto ni perezoso", one afternoon of boringness I opened Inkscape and started to play with it. The results are what you can see below.

The new cube?

The new cube?

So, what do you think? Actually, I'm open to new options, therefore if you think you can do something much better and appealing than that (quite easy to achieve), just sent it to me and I will praise you on this so cool place that my blog is. Or if you have a suggestion about how I could improve it by myself, leave a comment, it will also be welcomed :).

Filed under: Cub3 No Comments
11Jan/120

New year, new home

Applying the KISS principle, from crappy:

Cub3.net old Home page screenshot

 

To cool:

Cub3.net new Home page screenshot

Check it :)

Filed under: Cub3 No Comments
9Jan/120

Dropbox + Truecrypt: your files everywhere, and safe

If you work with several computers, sharing data between them, you probably:

  • Go around with a memory stick all the day.
  • Use a online file-sync service.

For convenience, I use the second option. I have some files in the cloud, so they are always accessible and updated from any PC I use (three PCs at work and my laptop at home/wherever). In fact, I can even access them from my phone. For that, I greatly recommend Dropbox. I've already talked about it, but in Catalan, so I will make a short summary for English speakers (the Google translation is not so good).

How Dropbox works

  1. Create an account.
  2. Install the software on one computer (be the OS Linux, Windows or Mac).
  3. Link the software to your account.
  4. Decide which folder you want to sync. All the contents of the folder are uploaded to Dropbox servers, in real-time (well, as fast as your connection allows). Any modification/deletion/addition of files is automatically updated, with no user intervention.
  5. Install the software on another computer.
  6. Link again to your account.
  7. Decide which folder to share. The contents of the folder are synchronised with the server, or what is the same: the two folders of your computers are always synchronized between them as soon as they have access to the network (usually, at boot up).
  8. Repeat steps 5,6, 7 in many computers as you want.

Pros:

  • No need to manually sync every time you modify the files, it is automatically done (you can check the sync status).
  • You have local copies of the files, so you can work if network is not available.
  • You can even access to your files via a web browser.
  • Data transfer between server and clients is encrypted.

Cons:

  • You have a local copies of the files on each computer, so it could be considered "wasted space" for some people (I prefer to say redundancy :) ).
  • Dropbox workers could have a look at you files, even if they say they are not going to. They are on their servers, so...

Making Dropbox safer: Truecrypt is your friend

If you like the idea of using Dropbox, but you are worried about your privacy, or you have to store sensitive/confidential data, there is a solution to the dilemma. Do not share files; share encrypted files.

Truecrypt allows you to create encrypted partitions or containers. A container is a file which can be used as a partition or disk drive, encrypted and protected with a password. Actually, it can be encrypted with a password + a key file, but then you always need to have at hand this file for accessing to it. As I like lists a lot, I will explain how to use Truecrypt in this way.

To create your encrypted container:

  1. Install Truecrypt software on you computer.
  2. Execute it, and follow the wizard to create a virtual volume.
  3. That's all! :D

How to use the container:

  1. Run Truecrypt.
  2. Select the file (container) you have created before, and mount it.
  3. Now you should have a new disk drive/partition available on you system. Copy files to it as you would normally.
  4. Unmount the volume using Truecypt.

Quite simple, right? So, what's the deal with Dropbox? You can put the encrypted container inside the Dropbox shared folder, so instead of getting access to all the files, they only receive a single encrypted file with no idea of what's in there. Sure that they could try to crack it, but its like if somebody would like to hack your server by brute force (not impossible, but at least quite difficult).

To be sincere, there is a couple of drawbacks on that:

  • You have to manually mount and unmount the encrypted file each time you want the data to be synced. While the volume is open, Dropbox will not sync it as it is considered to be "used by another application".
  • The sync is slower, as instead of just updating the files you have changed, it has to update the whole encrypted file.

I have found a balance between convenience and privacy putting on the encrypted volume just the sensitive files or personal data (e.g., pictures and documents), and outside of the container (but still inside the shared folder) the files that are not important but I want accessible and updated at all times.

 

Filed under: Internet, Privacy No Comments
7Dec/110

Search for me, my little duck.

Before starting with my brick of words, I would like to advise you that if you try my proposal, it's going to have a big impact on your internet habits. Actually, I'm going to propose you to use a different search engine from the one you are used to, and I'm sure that at the beginning you will feel uncomfortable with it and you will be very keen to come back to your previous tool. But, honestly, give it a try for at least a month. The more you use a new tool, the more you discover how to use it correctly, and the more you enjoy it. After that pseudo-disclaimer, let's begin with the interesting content.

Nowadays we use search engines a lot. They have become the standard way of finding websites on the jungle of information that the WWW is today. Web directories are a resource of the past, we just input our words of interest in a textbox, hit the Enter key, and rely on the answers of Google, Bing or Yahoo. They seem to work quite well, and they are free, so what's wrong with them?

Just two things:

  • You are getting a biased view of the web.
  • Your telling A LOT about you to a company (and it's third parties). Probably more than you would under other circumstances.

There is more out there.

When using a search engine, you are getting results according to its criteria. At the beginning, the results were sorted according to more or less objective parameters that measured the quality of the sites. But it has changed. You have probably noticed that you get different results for the same search when you use other computers or compare it with the results that other persons get. I could explain here why this happens, but the web page Don't Bubble Us explains it with a lot of pictures, not much text and in a funny and easy to understand way. So, before continuing, please have a look at it (and then come back ;) ).

Done? Are you a bit disappointed about the search engine you use? I was. You have probably read the last part about DuckDuckGo, but I'll talk about it later.

Searching for "herpes" is telling them (and other companies) that maybe you have it.

This is how it works. They know about your interests, your problems, what you are shopping... your life. Again, and in order to do not repeat what others have explained better, I recommend having a quick look at Don't Track Us.

 

Profile vs Anonymous

How do you prefer to be recognised?

 

So, now you could just be in the mood of "I don't care about all this bullshit, you are a paranoid" or "OMG! I'm selling my life and having a distorted view of the world! I'll never use it again." Or something intermediate, just a bit worried and willing to find a better search engine that keeps your privacy while providing a good service.

Emergency services use dogs. I use ducks.

That's the search engine I'm using, and the one I recommend: DuckDuckGo (DDG from now on). The have a very nice privacy policy, and I'm quite happy with the results. Actually, what they do is using other search engines to get a bunch of results, and then rank them according to its parameters of quality. So, we could say that they are acting as an anonimizer between you and several search engines.

In addition to that, they have some tricks that make the experience more enjoyable. One is the red box, also known as zero-click info. It is a red box (d'oh!) shown at the beginning of the search results, containing a topic summary or related topics.  It could be the explanation of an acronym, the result of a mathematical operation or conversion between units, a short definition, etc. I've solved several of my quick searches just with that, with no need to go inside other sites.

 

Zero-clik results for ESA at DuckDuckGo

Zero-clik results for ESA

 

Next tip I love is the !bang. There are a set of keywords that allow you to perform specialized searches. You can !python to look at python documentaion, !mineforum for minecraft forum, !images for Google images (yes, they don't provide this service yet), !filestube for search in filestube, etc. So, kind of shortcuts for other sites. And the list of options is huge.

To sum up this short review, to get an idea of the overall capabilities of DDG, try the searches on the goodies page.

Putting a duck in your life.

If you have decided to give DuckDuckGo a try, do not rely just on opening the web page each time. You are not going to do it. You will just use the search box in Firefox or the omnibox in Chrome/Chromium, therefore relying again on you previous search engine. To force yourself to use it for a while, you have to configure it as you default search engine on your browser. Fortunately, it's really really easy, just a couple of clicks. If you visit the DDG homepage, you'll see a link with the instructions to do it. So, do it. Now. If you don't like it, you can always come back. But I haven't ;)

Happy searching!

 

22Nov/110

I don’t like cookies from strangers

I will start the set of articles about privacy with something simple: avoiding cookies from third parties. So, let's remind what is a cookie.

Cookies not for eating

Citing wikipedia, we have:

A cookie, also known as an HTTP cookie, web cookie, or browser cookie, is used for an origin website to send state information to a user's browser and for the browser to return the state information to the origin site. The state information can be used for authentication, identification of a user session, user's preferences, shopping cart contents, or anything else that can be accomplished through storing text data on the user's computer.

The part about user's preferences and shopping cart sounds quite useful, doesn't it? Actually, cookies are useful. Thanks to them we can autologin to sites where we have logged in before, keep our preferences if the website has some personalization, etc. So, the concept is not completely evil. If you visit a site and accept their cookies, you're accepting that they keep track of you in exchange of some services.

Demotivational poster about cookies.

He also thinks that cookies matter.

Cookies from strangers

So, we agree on accepting cookies from a website, but do you know that by default you are also accepting cookies from other sites apart from the one you are visiting? Maybe the website you are visiting has ads, from a third party, and these ads are storing cookies in your PC so that they can track you. Or if it has a Like button from Facebook (like I have in the blog... should I remove it?), Facebook is using it to put a cookie on your browser to track you even if you are not in the social network. These cookies are called Third Party Cookies, because they don't belong to the domain/website you are visiting.

Do not eat the bad cookies

Fortunately, blocking those cookies is easy with most of the browsers. In some very rare cases not accepting these external cookies could affect the navigation experience (that's what they say), but I've never had any problem. An easy step-by-step guide for Firefox can be found on the Firefox Help, with nice screenshots and everything. For Google Chrome/Chromium, it's not so well explained on the official Chrome Help (it's hidden in the "Block cookies by default" section), but it's just going to Preferences > Under the Hood in the left panel > Content Settings button on Privacy section > Check Block third-party cookies from being set.

And that's all, Folks. If you research a bit you will find that there are plug-ins and extensions to improve even more your privacy regarding to cookies, but this is a good starting point.

Filed under: Internet, Privacy No Comments
17Nov/110

Privacy, I want you back

I have to admit it: Google has been doing his work very well. I've been seduced by its services, embracing its technologies... and therefore providing them a lot of data about myself. Actually, not only to them. I've become lazy, caring less and less about my privacy and becoming easily trackable and telling too much about my life. And no, I'm not worried about what I've posted in this blog or said in Twitter, I have nothing to hide in these places.

But it's time for changes. A few weks ago, an innocent comment of a friend awoke something inside me. During the next days I deeply thought about how I've been managing my digital life, and the conclusion was that I've been screwing it up. Time to take action. Time to be like it was before, when it started with a 28800 bps modem (I really miss that sound) and paying per second of connection.

I'll try to write posts about different topics: search, mail, web services, online calendar, file sharing... Actually, I've already changed several of my habits and I'm very happy with the results, so writing about it shouldn't take long. Stay tuned.

 

28Sep/110

30 dies sense afaitar-me a contrapèl – Conclusió

Mare meva, el temps passa volant! Hauria d'haver escrit aquesta entrada a principis de mes per anar bé, ja que així hauria fet un mes des de que vaig anunciar que començava amb l'experiment. Resumint: Estic content amb el resultat i ho segueixo fent. I ho seguiré fent per molt de temps si no hi ha res que em faci canviar de parer.

Afaitar-se essent vampir no és cosa fàcil.

Afaitar-se essent vampir no és cosa fàcil.

Pel que fa als granets i irritacions, si que em noto que m'han disminuït. De fet, la irritació és quasi inexistent. A la part del coll encara surten alguns granets, però ni de bon tros com abans, i solen ser només puntets vermells (que dintre del que cap, no és el més antiestètic que et pot arribar a sortir a la cara :P).

Sobre la barba, doncs no ens enganyem, surt abans. Fins i tot el mateix dia que t'has afaitat no vas amb "cara de nen", però es nota que t'has afaitat recentment. Per qualsevol situació que l'etiqueta requereixi anar afaitat (una presentació en un congrés, una reunió important a la feina, una cita amb una noia), compleix perfectament.

I, l'últim valor afegit que no havia contemplat al principi, és la disminució de temps. Tardo molt menys a afaitar-me, el que fa que se'm faci molt menys feixuc el procés. Abans afaitar-me dos cops a la setmana em feia mooolta mandra, en canvi ara no em fa res.

En conclusió, si sou dels que teniu problemes amb la barba i/o pell, proveu-ho durant uns dies i ja veureu com segurament la cosa millora.

Filed under: 30 dies No Comments
12Aug/112

Hola Google+, adiós Facebook

A día de hoy podemos decir que Google+ ya es accesible a cualquiera interesado en ello. Te encuentras invitaciones hasta debajo de la sopa (cada usuario tiene 150 a repartir), así que es como si estuviera abierto al público. En el caso que no tengas ni idea de lo que estoy hablando (porque vives debajo de una piedra como Patricio, o rehuyes de la tecnología por causas alérgicas) pero domines el inglés, este vídeo es bastante divertido y te ayudará a ponerte al día:

Pues eso, Google+ es la red social de Google. Después de estar escarmentado con Facebook, me la tomé con cierto escepticismo al principio, pero después de un par de tardes de documentarme, la abracé como el sustituto perfecto de Facebook. Para dejar las cosas claras, yo no era un gran fan de Facebook, principalmente debido a:

  • Sus condiciones de uso. Cualquier cosa que pones en Facebook pasa a ser de su propiedad.  Les das permiso para hacer casi cualquier cosa con el contenido que pones en Facebook. Sí, incluidas las fotos esas de tus últimas vacaciones.
  • La casi imposibilidad de controlar con quien te comunicas. ¡Yo no quiero hacerlo todo público a todo el mundo, ostias!. Si, en un suponer, cuelgo una foto yendo de farra por ahí todo colocado para hacer la gracia con los amigos del pueblo, no quiero que mi madre la vea (hola mama!), ni tampoco mi director de tesis (ei, hola Jaume!). Facebook incorpora un sistema de listas para poder filtrar el contenido pero está tan mal diseñado y es tan poco usable, que incluso yo que soy un friki tecnológico he desistido, hastiado de lo engorroso y complicado que es.
  • Malas prácticas de la compañía. Por ejemplo, vendiendo información a terceras empresas según dicen.
  • Y por último, la de basura que tiene. Que si juegos, que si galletitas de la suerte, que si quieres entrar en el grupo de "bolsas que se ponen señoras debajo cuando llueve"... En medio de ese mar de distracciones cuesta encontrar cuando alguien dice algo interesante. He llegado a bloquear personas sólo por lo que llegaban a contaminar con chorraditas.

Total, que estaba yo muy contento con mi twitter y solo consultando el Facebook de vez en cuando por si acaso (porqué desgraciadamente hay gente que prefiere enviar mensajes por ahí en vez de utilizar el veterano correo electrónico *sigh*), cuando van y me echan a la cara Google+, con:

  •  Sistema de círculos. Best simple idea for a social network ever. Tu pones a la gente en un círculo o varios, con un simple arrastrar del ratón como si pusieras iconos en una carpeta, y ale, cada vez que escribes o publicas algo eliges que círculos pueden verlo. Yo por ejemplo tengo un grupo para la familia, otro para los amigos del pueblo, otro con los que juego a Warmachine, otro con gente que conozco pero que realmente no se merecen el calificativo de amigo (no es nada personal, es que coincidir en una clase de doctorado no es motivo suficiente para ganaros mi confianza infinita :P), etc. Puede sonar lioso, pero la gestión de los círculos está tan bien diseñada que se hace de forma intuitiva y sin suponer un esfuerzo extra.
  • Videoconferencia integrada. Las quedadas, llamadas hangouts en inglés. Pues eso, que te puedes poner a hablar de repente con la gente de un círculo que esté conectada (o personas concretas), directamente desde el navegador. Perfecto para charlas improvisadas sin tener que estar media hora tecleando, leyendo y cruzando mensajes.
  • ¡No hay basuraaaaaaaaaaaa! Solo gente hablando, colgando enlaces, comentando, etc. Hoy me he asustado, porqué han anunciado que van a añadir juegos, pero ya han dejado bien claro que és muy fácil ignorarlos. Seguramente habrá alguna opción para desactivarlos y que siga siendo como es ahora.

Con estos puntos cumple lo que yo le pido a una red social. Así que lo tengo claro, he empezado a usarla bastante activamente y cada vez me paso menos por Facebook. De hecho, tengo pensado cerrar mi cuenta dentro de no mucho, ya os avisaré ;)

Filed under: A parir, Internet 2 Comments
6Aug/110

30 dies sense afaitar-me a contrapèl

Doncs aquest és el meu primer experiment. Com deia en la publicació anterior, ho portaré a terme durant al menys 30 dies. Ei, ja podeu parar de riure, això d'afaitar-se no és un tonteria tan gran com sembla :P.

GIllette M3 Power

Aquesta és la que faig servir jo.

Tinc un problema, (entre d'altres) i és que tinc un pèl de barba molt gruixut i abundant, i una pell molt sensible. Confirmat per dermatòlegs. Resultat? Afaitar-me és una odissea. En el moment, jo no hi pateixo massa, però en acabat, se'm posa tot ben vermell i apareixen milions i milions de granets, com si fossin constel·lacions d'una nit infinita. Bé, potser m'he passat una mica ara. Però és molt emprenyador i poc estètic.

Una de les coses que em van recomanar va ser no afaitar-me a contrapèl. Ho vaig provar un cop, i vaig pensar: WTF, si sembla que no m'hagi afaitat! Quina tonteria, ja que m'hi poso prefereixo fer-ho bé. Així que vaig seguir afaitant-me com sempre. Intentava no castigar tant la pell com abans, però a tots ens agrada que ens quedi la pell 100% fina com el culet d'un nadó.

Ara ja fa unes setmanes, suposo que degut al canvi d'aires i d'alimentació,  se m'ha empitjorat el problema un altre cop. Com si fos un adolescent, vaig lluint un meravellós puntejat al coll i en menor part a la cara. I ni sabons ni gels ni cremes ni punyetes, no marxen. Per tant, doncs, anem a provar de canviar l'hàbit d'afaitar. he començat avui mateix, i de moment la pell sembla que n'està més agraïda. No m'ha quedat cara de nen (sense pèl), però aquesta ombrejat gris a la mandíbula tampoc queda del tot malament, no? (ara necessito l'opinió d'alguna noia :P)

I no, no penso posar fotos en primer pla, la meva privacitat i dignitat té uns límits tot i que no ho sembli XD

Filed under: 30 dies No Comments