<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>JADDOG &#187; Technology</title>
	<atom:link href="http://www.jaddog.org/category/technology/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.jaddog.org</link>
	<description>Just Another Day Depending On Grace</description>
	<lastBuildDate>Wed, 01 Feb 2012 19:18:45 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
		<item>
		<title>MacVTap Bridge on F16</title>
		<link>http://www.jaddog.org/2012/02/01/macvtap-bridge-on-f16/</link>
		<comments>http://www.jaddog.org/2012/02/01/macvtap-bridge-on-f16/#comments</comments>
		<pubDate>Wed, 01 Feb 2012 19:18:45 +0000</pubDate>
		<dc:creator>radez</dc:creator>
				<category><![CDATA[Planet Fedora]]></category>
		<category><![CDATA[Technology]]></category>

		<guid isPermaLink="false">http://www.jaddog.org/?p=563</guid>
		<description><![CDATA[I setup a couple VMs over the past day or two on my desktop machine I recently built. Had to use this MacVTap thing and I really like it. To do this I used virt-manager in Fedora 16. Initially virt manager didn&#8217;t give me an option to bridge the network interfaces, it was greyed out. I wanted to [...]]]></description>
			<content:encoded><![CDATA[<p>I setup a couple VMs over the past day or two on my desktop machine I recently built. Had to use this MacVTap thing and I really like it.</p>
<p>To do this I used virt-manager in Fedora 16. Initially virt manager didn&#8217;t give me an option to bridge the network interfaces, it was greyed out. I wanted to be able to ssh into these VMs inside my home network without having to go through the virt host. Turns out there&#8217;s an option to customize settings in the details panel just before you start the installation. Select it and bring up the VM&#8217;s detail panel to take advantage of MacVTap.<a href="http://www.jaddog.org/wp-content/uploads/2012/02/Screenshot-at-2012-02-01-141040.png"><img class="alignnone  wp-image-564" title="Screenshot at 2012-02-01 14:10:40" src="http://www.jaddog.org/wp-content/uploads/2012/02/Screenshot-at-2012-02-01-141040.png" alt="" width="281" height="268" /></a></p>
<p>When the details panel comes up you can monkey with the networking of course. I selected the macvtap that my bare metal uses and set it to bridge mode.<a href="http://www.jaddog.org/wp-content/uploads/2012/02/Screenshot-at-2012-02-01-141207.png"><img class="alignnone  wp-image-565" title="Screenshot at 2012-02-01 14:12:07" src="http://www.jaddog.org/wp-content/uploads/2012/02/Screenshot-at-2012-02-01-141207.png" alt="" width="487" height="430" /></a></p>
<p>Using this method both VM&#8217;s got a dhcp address from my home router and are able to talk to each other now.</p>
<p>Word of warning, don&#8217;t use VEPA mode. It&#8217;s something special that most router&#8217;s don&#8217;t haveyet that, from what I can gather, let&#8217;s the swtich do the bridging instead of the virt host.</p>
<p>Learned about this stuff here: <a href="http://virt.kernelnewbies.org/MacVTap">http://virt.kernelnewbies.org/MacVTap</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.jaddog.org/2012/02/01/macvtap-bridge-on-f16/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Dvorak + Kinesis</title>
		<link>http://www.jaddog.org/2011/09/09/dvorak-kinesis/</link>
		<comments>http://www.jaddog.org/2011/09/09/dvorak-kinesis/#comments</comments>
		<pubDate>Fri, 09 Sep 2011 17:57:21 +0000</pubDate>
		<dc:creator>radez</dc:creator>
				<category><![CDATA[I'm a Geek]]></category>
		<category><![CDATA[Planet Fedora]]></category>
		<category><![CDATA[Technology]]></category>

		<guid isPermaLink="false">http://www.jaddog.org/?p=524</guid>
		<description><![CDATA[I passed a milestone in my Dvorak endeavor yesterday. I had some one looking over my shoulder at what I was doing while I was typing in Dvorak&#8230; on a contoured keyboard. Work bought me a Kinesis Advantage keyboard in May. (Manufacturer&#8217;s Page) These are hard enough to get used to in a qwerty layout. It has a native Dvorak [...]]]></description>
			<content:encoded><![CDATA[<p>I passed a milestone in my Dvorak endeavor yesterday. I had some one looking over my shoulder at what I was doing while I was typing in Dvorak&#8230; on a contoured keyboard.</p>
<p>Work bought me a <a title="Amazon.com" href="http://www.amazon.com/Kinesis-Advantage-USB-Keyboard-black/dp/B000LVJ9W8/ref=sr_1_1?ie=UTF8&amp;qid=1315583811&amp;sr=8-1">Kinesis Advantage keyboard</a> in May. (<a title="Kinesis Ergo" href="http://www.kinesis-ergo.com/">Manufacturer&#8217;s Page</a>) These are hard enough to get used to in a qwerty layout. It has a native Dvorak mode on it so I made the Kinesis my Dvorak keyboard and the keyboard I was using my qwerty. I had been using both since May. Unplugged the qwerty keyboard the first of September.</p>
<p>This pic is from before I unplugged the qwerty keyboard:<br />
<a href="http://www.jaddog.org/wp-content/uploads/2011/09/IMG_1858.jpg"><img class="alignnone size-large wp-image-525" title="Dvorak + Kinesis" src="http://www.jaddog.org/wp-content/uploads/2011/09/IMG_1858-1024x764.jpg" alt="" width="614" height="458" /></a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.jaddog.org/2011/09/09/dvorak-kinesis/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Gnome 3 two months later</title>
		<link>http://www.jaddog.org/2011/06/27/gnome-3-two-months-later/</link>
		<comments>http://www.jaddog.org/2011/06/27/gnome-3-two-months-later/#comments</comments>
		<pubDate>Mon, 27 Jun 2011 14:24:50 +0000</pubDate>
		<dc:creator>radez</dc:creator>
				<category><![CDATA[Code]]></category>
		<category><![CDATA[Planet Fedora]]></category>
		<category><![CDATA[Technology]]></category>

		<guid isPermaLink="false">http://www.jaddog.org/?p=471</guid>
		<description><![CDATA[I&#8217;ve been using Fedora 15 and Gnome 3 for a little over  2 months now. I&#8217;ve learned a few things that have made my daily workflow a little easier, thought I&#8217;d share. 1. the alt key switches the Suspend menu item to &#8220;Power Off&#8221; I infrequently need it, but the alternative was to logout and [...]]]></description>
			<content:encoded><![CDATA[<p>I&#8217;ve been using Fedora 15 and Gnome 3 for a little over  2 months now. I&#8217;ve learned a few things that have made my daily workflow a little easier, thought I&#8217;d share.</p>
<p>1. the alt key switches the Suspend menu item to &#8220;Power Off&#8221;<br />
I infrequently need it, but the alternative was to logout and power off from the login screen or to add a gnome-shell-extension.</p>
<p>2. gnome-tweak-tool<br />
There&#8217;s a couple settings in there that I was glad to be able to tweak</p>
<p>3. Drag to top of the screen to maximize.<br />
I keep a couple things maximized, It&#8217;s nice to just drag the window to the top of the screen and have it maximize.</p>
<p>4. gsettings<br />
I haven&#8217;t had too much need for this yet, but understanding it is relevant to writing extensions.</p>
<p>5. gnome-shell-extensions-dock<br />
yum install gnome-shell-extensions-dock<br />
gsettings set org.gnome.shell.extensions.dock position left<br />
alt-f2<br />
r<br />
enter</p>
<p>6. wrote a gnome-shell-extension</p>
<p>Part of my team at work is in Pune, India and our company also pass lots of times around in utc. The Fedora 14 Clock applet that listed what time it was in other timezones was helpful. So I set out last week to put something together in gnome 3 that would serve the same purpose.</p>
<p>In the process I also found some code to add apps to the top panel and decided to post the little bit of code I put together here: https://github.com/radez/gnome-shell-extensions</p>
<p>Here&#8217;s what my &#8220;clocks&#8221; extension looks like. It&#8217;s not much but it suits my needs. I need to plug into gsettings as some point so that Pune and UTC arn&#8217;t hard coded.</p>
<p><a href="http://www.jaddog.org/wp-content/uploads/2011/06/Screenshot-1.png"><img class="alignnone size-full wp-image-474" title="gnome-shell-extensions-clocks" src="http://www.jaddog.org/wp-content/uploads/2011/06/Screenshot-1.png" alt="" width="408" height="398" /></a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.jaddog.org/2011/06/27/gnome-3-two-months-later/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Django, Apache and Semaphores</title>
		<link>http://www.jaddog.org/2011/05/24/django-apache-and-semaphores/</link>
		<comments>http://www.jaddog.org/2011/05/24/django-apache-and-semaphores/#comments</comments>
		<pubDate>Tue, 24 May 2011 14:05:27 +0000</pubDate>
		<dc:creator>radez</dc:creator>
				<category><![CDATA[Code]]></category>
		<category><![CDATA[Technology]]></category>

		<guid isPermaLink="false">http://www.jaddog.org/?p=463</guid>
		<description><![CDATA[At work I use Loki to manage my buildbot infrastructure. It&#8217;s deployed on apache via mod_wsgi. Recenlty I&#8217;ve been having trouble with Apache crashing with one of two single error lines in the logs: [notice] seg fault or similar nasty error detected in the parent process or [emerg] (28)No space left on device: Couldn&#8217;t create [...]]]></description>
			<content:encoded><![CDATA[<p>At work I use <a title="Loki" href="https://fedorahosted.org/loki">Loki</a> to manage my <a title="Buildbot" href="http://trac.buildbot.net/">buildbot</a> infrastructure. It&#8217;s deployed on apache via mod_wsgi. Recenlty I&#8217;ve been having trouble with Apache crashing with one of two single error lines in the logs:</p>
<blockquote><p>[notice] seg fault or similar nasty error detected in the parent process<br />
or<br />
[emerg] (28)No space left on device: Couldn&#8217;t create accept lock</p></blockquote>
<p>I came across <a title="Apache: No space left on device: Couldn't create accept lock " href="http://rackerhacker.com/2007/08/24/apache-no-space-left-on-device-couldnt-create-accept-lock/">this post</a> and found it very helpful. Start with seeing if there are left over semaphores when you stop apache:</p>
<blockquote><p># ipcs -s | grep apache</p></blockquote>
<p>If that&#8217;s the case then first clear them:</p>
<blockquote><p># /usr/bin/ipcs -s | grep apache | awk &#8216; { print $2 } &#8216; | xargs ipcrm sem</p></blockquote>
<p>Then tell the kernel to allow more semaphores by adding the followings lines to /etc/sysctl.conf</p>
<blockquote><p>kernel.msgmni = 1024<br />
kernel.sem = 250 256000 32 1024</p></blockquote>
<p>then run</p>
<blockquote><p># sysctl -p</p></blockquote>
<p>Once I start everything back up this seems to have fixed my issues.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.jaddog.org/2011/05/24/django-apache-and-semaphores/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Gnome 3 on Fedora 15</title>
		<link>http://www.jaddog.org/2011/04/09/gnome-3-on-fedora-15/</link>
		<comments>http://www.jaddog.org/2011/04/09/gnome-3-on-fedora-15/#comments</comments>
		<pubDate>Sun, 10 Apr 2011 01:50:36 +0000</pubDate>
		<dc:creator>radez</dc:creator>
				<category><![CDATA[Planet Fedora]]></category>
		<category><![CDATA[Technology]]></category>

		<guid isPermaLink="false">http://www.jaddog.org/?p=453</guid>
		<description><![CDATA[Went ahead an updated to Fedora 15 this evening. Though Gnome 3 will take some time to get used to, I think I&#8217;ll like it over time.]]></description>
			<content:encoded><![CDATA[<p>Went ahead an updated to Fedora 15 this evening.<br />
Though Gnome 3 will take some time to get used to, I think I&#8217;ll like it over time.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.jaddog.org/2011/04/09/gnome-3-on-fedora-15/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Lego Antikythera Mechanism</title>
		<link>http://www.jaddog.org/2010/12/13/lego-antikythera-mechanism/</link>
		<comments>http://www.jaddog.org/2010/12/13/lego-antikythera-mechanism/#comments</comments>
		<pubDate>Mon, 13 Dec 2010 16:17:13 +0000</pubDate>
		<dc:creator>radez</dc:creator>
				<category><![CDATA[I'm a Geek]]></category>
		<category><![CDATA[Technology]]></category>

		<guid isPermaLink="false">http://www.jaddog.org/?p=421</guid>
		<description><![CDATA[]]></description>
			<content:encoded><![CDATA[<p><object classid="clsid:d27cdb6e-ae6d-11cf-96b8-444553540000" width="640" height="385" codebase="http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab#version=6,0,40,0"><param name="allowFullScreen" value="true" /><param name="allowscriptaccess" value="always" /><param name="src" value="http://www.youtube.com/v/RLPVCJjTNgk?fs=1&amp;hl=en_US" /><param name="allowfullscreen" value="true" /><embed type="application/x-shockwave-flash" width="640" height="385" src="http://www.youtube.com/v/RLPVCJjTNgk?fs=1&amp;hl=en_US" allowscriptaccess="always" allowfullscreen="true"></embed></object></p>
]]></content:encoded>
			<wfw:commentRss>http://www.jaddog.org/2010/12/13/lego-antikythera-mechanism/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>MOTOROKR S9-HD + Fedora 13 in A2DP</title>
		<link>http://www.jaddog.org/2010/06/03/motorokr-s9-hd-fedora-13-in-a2dp/</link>
		<comments>http://www.jaddog.org/2010/06/03/motorokr-s9-hd-fedora-13-in-a2dp/#comments</comments>
		<pubDate>Thu, 03 Jun 2010 19:15:38 +0000</pubDate>
		<dc:creator>radez</dc:creator>
				<category><![CDATA[Planet Fedora]]></category>
		<category><![CDATA[Technology]]></category>

		<guid isPermaLink="false">http://www.jaddog.org/?p=342</guid>
		<description><![CDATA[***UPDATE***: See the comments, turns out there is capability in F13 to do this that I was unaware of, thx marcanoonline.com! Got a pair of MotoRokr S9-HD headphones today, pretty cool. Pairing with my iPhone was cake. Pairing with Fedora 13 had an extra couple steps. Getting the headphones paired was not the problem, huge [...]]]></description>
			<content:encoded><![CDATA[<p><strong>***UPDATE***:</strong> See the comments, turns out there is capability in F13 to do this that I was unaware of, thx <cite>marcanoonline.com!</cite></p>
<p>Got a pair of MotoRokr S9-HD headphones today, pretty cool. Pairing with my iPhone was cake. Pairing with Fedora 13 had an extra couple steps. Getting the headphones paired was not the problem, huge props to Fedora 13 for making that super easy. The issue was getting the headphone to operate in an A2DP configuration.</p>
<p>There is not a place that I could find to select what kind of profile to  use with with output device and the device was assigned a mono  configuration upon initial pairing. I found one lone post related: ﻿﻿﻿<a title="http://forums.fedoraforum.org/showthread.php?t=223323" href="http://forums.fedoraforum.org/showthread.php?t=223323">http://forums.fedoraforum.org/showthread.php?t=223323</a></p>
<p><em>$ sudo yum install pavucontrol</em></p>
<p><em><a href="http://www.jaddog.org/wp-content/uploads/2010/06/menu.png"><img class="alignnone size-full wp-image-349" title="menu" src="http://www.jaddog.org/wp-content/uploads/2010/06/menu.png" alt="" width="446" height="424" /></a><br />
</em></p>
<p>pavucontrol shows the headphones configured for uses as a handsfree phone device (which it can do):</p>
<p><a href="http://www.jaddog.org/wp-content/uploads/2010/06/mono1.png"><br />
</a><a href="http://www.jaddog.org/wp-content/uploads/2010/06/mono1.png"><img class="alignnone size-full wp-image-344" title="Motorola S9-HD in Mono Configuration" src="http://www.jaddog.org/wp-content/uploads/2010/06/mono1.png" alt="" width="552" height="428" /></a></p>
<p>Fedora already had A2DP support installed, just had to select it:</p>
<p><a href="http://www.jaddog.org/wp-content/uploads/2010/06/a2dp.png"><img class="alignnone size-full wp-image-345" title="a2dp" src="http://www.jaddog.org/wp-content/uploads/2010/06/a2dp.png" alt="" width="552" height="428" /></a></p>
<p>Now I have stereo output on my shiny new headphones.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.jaddog.org/2010/06/03/motorokr-s9-hd-fedora-13-in-a2dp/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>Nushus 0.12.2</title>
		<link>http://www.jaddog.org/2010/04/26/nushus-0-12-2/</link>
		<comments>http://www.jaddog.org/2010/04/26/nushus-0-12-2/#comments</comments>
		<pubDate>Mon, 26 Apr 2010 17:23:59 +0000</pubDate>
		<dc:creator>radez</dc:creator>
				<category><![CDATA[Code]]></category>
		<category><![CDATA[Planet Fedora]]></category>
		<category><![CDATA[Technology]]></category>

		<guid isPermaLink="false">http://www.jaddog.org/?p=294</guid>
		<description><![CDATA[Just uploaded a tarball of Nushus 0.12.2 to the Nushus fedora hosted site. Docs and tickets are still being transferred out to the fedora hosted trac site. Nushus (pronounced new shoes) is a package and file repo release management tool. It has a web interface and cli client to aid in isolating in and promoting [...]]]></description>
			<content:encoded><![CDATA[<p>Just uploaded a tarball of Nushus 0.12.2 to the <a title="Nushus" href="https://fedorahosted.org/nushus/" target="_blank">Nushus fedora hosted site</a>.</p>
<p>Docs and tickets are still being transferred out to the fedora hosted trac site.</p>
<p>Nushus (pronounced new shoes) is a package and file repo release management tool. It has a web interface and cli client to aid in isolating in and promoting packages through a release engineering process.</p>
<p>Right now you can import two types of files:</p>
<ol>
<li>rpms with auto generation of yum metadata, acls management and promotion to other nushus instances on a per-repo basis</li>
<li>simple files with acls managment and promotion to other nushus instances on a per-repo basis</li>
</ol>
<p>An instance of Nushus can be established in multiple environments. (ex: QA, Stage, Prod) The instances are then configured to talk to one another so that they can transfer files from environment to environment.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.jaddog.org/2010/04/26/nushus-0-12-2/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>How to Proxy Pass REMOTE_USER: write your own apache module</title>
		<link>http://www.jaddog.org/2010/03/22/how-to-proxy-pass-remote_user/</link>
		<comments>http://www.jaddog.org/2010/03/22/how-to-proxy-pass-remote_user/#comments</comments>
		<pubDate>Mon, 22 Mar 2010 14:42:58 +0000</pubDate>
		<dc:creator>radez</dc:creator>
				<category><![CDATA[Code]]></category>
		<category><![CDATA[Technology]]></category>

		<guid isPermaLink="false">http://www.jaddog.org/?p=274</guid>
		<description><![CDATA[The problem: I was using mod_auth_kerb to authenticate and ProxyPass to pass off the request to another server. I&#8217;m trying to support Kerberos Authentication but split the infrastructure into a proxy/app tiering using ProxyPass because I needed the ProxyPassReverseCookieDomain directive. Problem is I need to pass the user that had been authenticated along with the [...]]]></description>
			<content:encoded><![CDATA[<p>The problem:</p>
<p>I was using mod_auth_kerb to authenticate and ProxyPass to pass off the request to another server. I&#8217;m trying to support Kerberos Authentication but split the infrastructure into a proxy/app tiering using ProxyPass because I needed the <a id="ProxyPassReverseCookieDomain" name="ProxyPassReverseCookieDomain">ProxyPassReverseCookieDomain directive.</a> Problem is I need to pass the user that had been authenticated along with the ProxyPass (ie. the value of REMOTE_USER) and found no configs to let me do that with mod_auth_kerb and ProxyPass.</p>
<p>What I tried:<br />
I found a bunch of pages that referenced using a lookahead (LA-U:REMOTE_USER) to get the value of REMOTE_USER. Take that value and set an environment variable. Then use the env var to set a header, say, X-Forwarded-User. This didn&#8217;t seem quite right since this was being implemented at the rewrite stage (pre authentication, hence the lookahead&#8217;s subrequest) and spawned the overhead of another subrequest to get the initial value. I tried all kinds of permutations of some rewrite configs that looked something like this:</p>
<blockquote><p>RewriteCond %{<strong>LA</strong>-<strong>U</strong>:<strong>REMOTE_USER</strong>} (.+)<br />
RewriteRule .* &#8211; [E=RU:%1]<br />
RequestHeader set X_REMOTE_USER %{RU}e</p>
<p><em>http://n2.nabble.com/SSO-with-SSPI-and-SSL-LA-U-REMOTE-USER-always-null-td4086748.html et al.<br />
</em></p></blockquote>
<p>In spite of the &#8220;not quite right&#8221; of the subrequest to env var to header I always got a value of (null) back from the lookahead. So this never even worked in combination with mod_auth_kerb (I&#8217;ve been told it does with basic auth or with mod_auth_kerb + RewriteRule [P]). Further it seemed inefficient to do all this subrequest to env to header stuff. I figured the most efficient thing to do (relative to processing the requests) would be to write a simple apache module that was in the module chain after auth but before proxy. Turns out that it didn&#8217;t take too long to do either.</p>
<p>The Solution:</p>
<p>I started with a <a title="Threebit.net: Apache Module Tutorial One" href="http://threebit.net/tutorials/apache2_modules/tut1/tutorial1.html" target="_blank">tutorial at threebit.net</a> where I just wanted to compile an apache module and insert it into the module chain. This worked like a champ (Thanks Kevin!) and I was logging to my error_log via stderr in no time at all. After reading though some apache code I figured out that r-&gt;user was the variable that mod_auth_kerb was populating the authenticated user to and that the ap_hook_handler method was inserting this module into the chain after proxypass. This location in the module chain was a problem because when I turn on proxypass the request was being proxied before the module was being executed. After a bit more docs and code reading I found ap_hook_fixups, which is in a stage between the auth and proxy modules. So that diff would look something like this:</p>
<blockquote><p>&lt; ap_hook_handler(mod_tut1_method_handler, NULL, NULL, APR_HOOK_LAST);<br />
&gt; ap_hook_fixups(mod_tut1_method_handler, NULL, NULL, APR_HOOK_LAST);</p></blockquote>
<p>Finally, the method_hander&#8217;s code was changed from the stderr functionality to these two lines to use the r-&gt;user variable:</p>
<blockquote><p>apr_table_set(r-&gt;headers_in, &#8220;X-Forwarded-User&#8221;, r-&gt;user);<br />
apr_table_unset(r-&gt;headers_in, &#8220;Authorization&#8221;);</p></blockquote>
<p>This sets the X-Forwarded-User header with the user the proxy has authenticated and strips out the Authorization header to be sure that your not passing any basic auth information (passwords in clear text!) from server to server.</p>
<p>I don&#8217;t have a complete set of code anywhere for you to download at this point, though, hopefully there&#8217;s enough here that all you&#8217;d have to do is swap a few pieces of code out, compile it (I had to update the automake stuff on the tutorial cuz it&#8217;s kinda old) and install it according to the tutorial&#8217;s directions.</p>
<p>Words of Warning:<br />
1. Secure your app!<br />
If you open your app up to accept X-Forwarded-User and trust that header as a source of an already authenticated user you must make sure that the only host that can pass that header to your app is your proxy! It would not be hard to install this custom module elsewhere (or use the lookahead stuff), slap basic auth on it and pass the header to your app completely ignoring your authoritative authentication infrastructure.</p>
<p>2. This will be applied to every request on your proxy.<br />
There is nothing in this module that will only apply this to a specific vhost or anything. Every request that your proxy processes will get your custom header.</p>
<p>Future?<br />
A nice addition to this would to let you configure the header name in your vhost config (ProxyUserHeader &#8220;X-Custom-Header-Name&#8221;) or even to submit a patch to mod_proxy so it&#8217;s not a separate module but built into mod_proxy (ProxyPassUserHeader &#8220;X-Custom-Header-Name&#8221;). Seems intriguing to do a bit more with it.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.jaddog.org/2010/03/22/how-to-proxy-pass-remote_user/feed/</wfw:commentRss>
		<slash:comments>6</slash:comments>
		</item>
		<item>
		<title>pdb</title>
		<link>http://www.jaddog.org/2010/03/10/pdb/</link>
		<comments>http://www.jaddog.org/2010/03/10/pdb/#comments</comments>
		<pubDate>Wed, 10 Mar 2010 13:26:57 +0000</pubDate>
		<dc:creator>radez</dc:creator>
				<category><![CDATA[Code]]></category>
		<category><![CDATA[Technology]]></category>

		<guid isPermaLink="false">http://www.jaddog.org/?p=264</guid>
		<description><![CDATA[I&#8217;m working on a feature for a project that I&#8217;m getting ready to open source. (more to come on it being open sourced when it happens) I&#8217;ve never taken the time to try and use pdb to debug a python program. I fell into a situation that seemed plausible to try it. Found this post [...]]]></description>
			<content:encoded><![CDATA[<p>I&#8217;m working on a feature for a project that I&#8217;m getting ready to open source. (more to come on it being open sourced when it happens) I&#8217;ve never taken the time to try and use pdb to debug a python program. I fell into a situation that seemed plausible to try it.</p>
<p><a title="python debugging wiith pdb" href="http://theironlion.net/archive/howto-python-debugging-pdb/">Found this post</a> and was quite delighted to be able to dive right into debugging my app. Also of worth to note, the post references <a title="debugger commands" href="http://www.python.org/doc/current/lib/debugger-commands.html ">this link</a> which once you have the basics of using pdb expands a little on what else you can do.</p>
<p>&lt;3 pdb</p>
]]></content:encoded>
			<wfw:commentRss>http://www.jaddog.org/2010/03/10/pdb/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

