2009 Shareholders Report

Total Page:16

File Type:pdf, Size:1020Kb

2009 Shareholders Report Volume 9, Issue 1 March 2010 Shareholders’ Report 2009 National Weather Service • Weather Forecast Office • Peachtree City, Georgia Status Quo is Not an Option! Lans P. Rothfusz bulk of the rain fell at a less- Meteorologist in Charge than-ideal time (in the middle of the night, at the end of a Big News Items of 2009 ike any Weather Fore- weekend). Forecasting such a cast Office (WFO) in the small-scale, rare and epic event • Historic Flooding (pages 6 and National Weather Ser- with reasonable lead time is un- 10) L vice (NWS) after a ma- fortunately beyond the state of • WFO Wins DOC Silver Medal jor weather event, the Peach- today’s science. Even if it were (page 3) tree City WFO looks carefully for possible, the public must still ways in which warning services respond appropriately. 24-hour rainfall ending September 21st • Decision Support Program and public response might be showing >16” bulls-eye (yellow) over Evolves (page 10) Douglas County. Warnings were in effect, improved. This was the case As you will see in this yet eight people perished in this area. after the deadly September newsletter, ours is not an office floods in North Georgia— that sits still. We pride reduce the loss of life and In Fiscal Year 2009, especially the fateful morning of ourselves in learning from every September 21 when flooding property over time, but they do Congress appropriated event we work. We will con- take time to develop. claimed the lives of ten people. tinue improving our science and $958,900,000 to the NWS To say this was an epic event is skills. We’re collaborating with While we regret the loss of life not hyperbole. Receiving >16” emergency managers to de- which equates to an and property to any weather of rain in a 24-hour period is be- velop innovative changes in phenomon, we want you to “investment” of $3.21 per yond a 10,000 year event, flood warning procedures. So- know that such losses only meaning there is much less cial scientists and other human U.S. citizen. drive us harder. Read on and than 0.01% chance of such a behavior experts are helping us learn how we accomplished rainfall event occurring in any address public response. some of this in 2009. ☼ This Shareholders’ Report given year. On top of that, the These steps will undoubtedly provides an accounting of what the NWS office in Severe Weather 2009 Peachtree City is doing with Robert Beasley & Laura Griffith mid-November. Eight-one flash tornado on record for our area Meteorologists flood events and 154 warnings touched down on October 15th. its portion of your investment. Verona Murrell were the most for WFO FFC Senior Meteorologist since 2003. Flash flooding For the second consecutive occurred in every month except year, February proved to be a Inside this issue: espite 2009 bringing January, February, April and significant severe weather the most warnings June. Tornadoes were not month, with ten tornadoes Georgia Weather Overview 4 ever to WFO FFC lacking either. Although down occurring on February 18th. (1,748 severe Severe Weather Performance 6 D slightly from the record 38 After a relatively quiet March, thunderstorm and tornado tornadoes of 2008, 34 two major severe weather Hydro & Fire 7 warnings), the year will best be tornadoes affecting 44 counties events in April brought 14 (April remembered for the Aviation, CWSU 8, 10 were confirmed in 2009, well 10) and two (April 19) catastrophic late September above the 14-year annual tornadoes. The April 10th event Forecast Performance 9 flooding. Not only was the average of 14. Thirty tornadoes followed just three days after a lingering three-year drought (88% of annual totals) occurred period of record cold weather, Web Site Status 12 completely erased, the flooding during the first four months. freezing temperatures, and was exacerbated by frequent Outreach 14 After this flurry, no tornadoes even some snow! On the heavy rain events October occurred in the Peachtree City contrary, May and July, often Systems 14 through December, including a CWA until mid-October when late season hurricane Ida in Coop Observer Program 15 only the second October (Continued on page 3) Page 2 Shareholders’ Report 2009 Top 25 North and Central Georgia Weather Events for 2009 Date Counties Cause Damage Deaths Injuries Cost 20-Sep to Flood/Flash Catastrophic flash flooding and flooding resulted in 6 deaths and damage to 1 Douglas 7 0 20.01M 23-Sep Flood hundreds of homes and businesses, many totally destroyed. North & High Wind Winds of 50 to 60 mph caused widespread damage to trees, power lines, and 2 13-Apr 1 3 3.15M West GA (max 50 kt) structures. One person died when a tree struck his vehicle. Hancock, An EF3 tornado touched down in Hancock county and continued into Warren 3 18-Feb Warren & Tornado (EF3) and Glascock counties. A church, 2 site-built homes, and 4 mobile homes were 1 3 0.50M Glascock destroyed, resulting in 1 fatality and 3 injuries. Catastrophic flash flooding and flooding resulted in significant damage to 21-Sep to Flood/Flash 4 Gwinnett homes, businesses and roads. A woman died when her vehicle was washed 1 0 25.02M 23-Sep Flood away in the flood waters. 21-Sep to Flood/Flash Record flash flooding and flooding resulted in damage to homes, businesses 5 Carroll 1 0 22.95M 23-Sep Flood and roads. A child died when a mobile home washed away in the flood waters. Significant flash flooding and flooding caused the Chattooga River to breach 21-Sep to Flood/Flash 6 Chattooga levees, flooding Trion. Dozens of homes and businesses sustained significant 1 0 11.98M 23-Sep Flood damage. A teenager died in an attempt to rescue a person from flood waters. An EF1 tornado touched down near Woodstock. More than 120 homes were 7 19-Apr Cherokee Tornado (EF1) 025.0M damaged, 12 were completely destroyed. Two residents were injured by debris. North & Strong Wind Wind gusts of 35 to 45 mph, associated with a cold front, caused damage to 8 7-Jan 0295.0K Central GA (Max 39 kts) trees and powerlines in 11 counties, resulting in 2 injuries. An EF3 tornado touched down in Hancock county, destroying 1 site-built home 9 10-Apr Hancock Tornado (EF3) and 1 double-wide mobile home, and damaging 4 others. One person suffered 0 1 0.75M serious injuries. Nine homes were struck by lightning. Two strikes resulted in fires. One 10 21-Aug Paulding Lightning 0 1 0.25M individual was injured as a result of a lightning strike. An EF1 tornado touched down west of Eatonton and lifted at the Hancock county 11 18-Feb Putnam Tornado (EF1) 0 1 0.20M line, destroying 3 commericial buildings. One person was injured from debris. Minor flooding was observed on some roads in the county. A male was injured 12 21-Sep Floyd Flood 0115.0K in a storm drain when raging high water attempted to carry him downstream. 13 18-Feb Spalding Lightning A person was struck and injured by lightning. 0 1 0 14 28-Feb Harris Lightning A woman was stuck and injured by lightning. 0 1 0 A woman, at her residence in Lawrenceville, suffered non-life threatening 15 12-Jul Gwinnett Lightning 010 injuries after lightning struck a nearby tree. 16 4-Aug Gwinnett Lightning A teenage girl suffered minor injuries as a result of a nearby lightning strike. 0 1 0 Record flash flooding and flooding caused significant damage to hundreds of 21-Sep to Flood/Flash 17 Cherokee homes, apartments, and businesses. Some culverts and bridges were washed 0 0 53.04M 23-Sep Flood out and several roads were closed, including Interstate-575 near Woodstock. Catastrophic flash flooding and flooding resulted in damages to hundreds of 21-Sep to Flood/Flash 18 Cobb homes, apartments, and businesses. A number of culverts and bridges were 0 0 29.95M 23-Sep Flood washed out and several roads were closed. 19-Sep to Flood/Flash Record flash flooding and flooding caused damage to hundreds of homes, 19 DeKalb 0 0 10.04M 23-Sep Flood apartments, businesses and roads. 19-Sep to Flood/Flash Extensive flash flooding and flooding resulted in significant damage to dozens of 20 Walker 009.0M 23-Sep Flood homes. At least 20 roads were closed. 21 18-Feb Fayette Hail Baseball-sized hail caused extensive damage to homes and cars. 0 0 8.0M 22 18-Feb Clayton Hail Baseball-sized hail caused extensive damage to homes and cars in Jonesboro. 0 0 6.0M 19-Sep to Flood/Flash Record to catastrophic flash flooding and flooding resulted in damage to 23 Paulding 004.0M 23-Sep Flood hundreds of homes, apartments, businesses, and roads. 24 18-Feb Coweta Hail Softball-sized hail caused extensive damage to homes and vehicles. 0 0 4.0M An EF1 tornado moved into Columbus after touching down in Phenix City, AL. 25 19-Apr Muscogee Tornado (EF1) Columbus State Unversity's campus sustained significant damage. Over 100 003.0M structures suffered minor to moderate damage. Volume 9, Issue 1 Page 3 Severe Weather 2009 (Continued from page 1) saturated ground fell in several from 527 events in 2008. The west and north Atlanta metro 81 flash flood events were the the most convectively active counties (Carroll, Douglas, most since 2003, when 196 months, were unusually quiet Paulding, Cobb, Fulton, DeKalb, such events occurred. The with only 49 severe convective and Gwinnett) between 9 pm number of severe convective 2009 Deaths and Injuries events in May (average is 86) September 20th and 10 am events was 88% of the 14-year Event Deaths Injuries and six severe convective September 21st.
Recommended publications
  • Next Generation Web Scanning Presentation
    Next generation web scanning New Zealand: A case study First presented at KIWICON III 2009 By Andrew Horton aka urbanadventurer NZ Web Recon Goal: To scan all of New Zealand's web-space to see what's there. Requirements: – Targets – Scanning – Analysis Sounds easy, right? urbanadventurer (Andrew Horton) www.morningstarsecurity.com Targets urbanadventurer (Andrew Horton) www.morningstarsecurity.com Targets What does 'NZ web-space' mean? It could mean: •Geographically within NZ regardless of the TLD •The .nz TLD hosted anywhere •All of the above For this scan it means, IPs geographically within NZ urbanadventurer (Andrew Horton) www.morningstarsecurity.com Finding Targets We need creative methods to find targets urbanadventurer (Andrew Horton) www.morningstarsecurity.com DNS Zone Transfer urbanadventurer (Andrew Horton) www.morningstarsecurity.com Find IP addresses on IRC and by resolving lots of NZ websites 58.*.*.* 60.*.*.* 65.*.*.* 91.*.*.* 110.*.*.* 111.*.*.* 113.*.*.* 114.*.*.* 115.*.*.* 116.*.*.* 117.*.*.* 118.*.*.* 119.*.*.* 120.*.*.* 121.*.*.* 122.*.*.* 123.*.*.* 124.*.*.* 125.*.*.* 130.*.*.* 131.*.*.* 132.*.*.* 138.*.*.* 139.*.*.* 143.*.*.* 144.*.*.* 146.*.*.* 150.*.*.* 153.*.*.* 156.*.*.* 161.*.*.* 162.*.*.* 163.*.*.* 165.*.*.* 166.*.*.* 167.*.*.* 192.*.*.* 198.*.*.* 202.*.*.* 203.*.*.* 210.*.*.* 218.*.*.* 219.*.*.* 222.*.*.* 729,580,500 IPs. More than we want to try. urbanadventurer (Andrew Horton) www.morningstarsecurity.com IP address blocks in the IANA IPv4 Address Space Registry Prefix Designation Date Whois Status [1] -----
    [Show full text]
  • Flask Documentation Release 0.7Dev July 14, 2014
    Flask Documentation Release 0.7dev July 14, 2014 Contents I User’s Guide1 1 Foreword3 1.1 What does “micro” mean?...........................3 1.2 A Framework and an Example........................4 1.3 Web Development is Dangerous.......................4 1.4 The Status of Python 3.............................4 2 Installation7 2.1 virtualenv....................................7 2.2 System Wide Installation...........................8 2.3 Living on the Edge...............................9 2.4 easy_install on Windows............................9 3 Quickstart 11 3.1 A Minimal Application............................ 11 3.2 Debug Mode.................................. 12 3.3 Routing..................................... 13 3.4 Static Files.................................... 17 3.5 Rendering Templates.............................. 17 3.6 Accessing Request Data............................ 19 3.7 Redirects and Errors.............................. 22 3.8 Sessions..................................... 22 3.9 Message Flashing................................ 23 3.10 Logging..................................... 24 3.11 Hooking in WSGI Middlewares....................... 24 4 Tutorial 25 4.1 Introducing Flaskr............................... 25 4.2 Step 0: Creating The Folders......................... 26 4.3 Step 1: Database Schema........................... 27 4.4 Step 2: Application Setup Code........................ 27 i 4.5 Step 3: Creating The Database........................ 29 4.6 Step 4: Request Database Connections.................... 30 4.7 Step
    [Show full text]
  • Azure Increase Request Timeout
    Azure Increase Request Timeout Is Val snobby or uninaugurated after regimented Ulric inactivate so yet? Wakefield yo-ho indefeasibly as un-American Shadow bomb her Cherokee interwreathed unsystematically. Jeffrey metricize her peafowl unharmfully, avaricious and dozing. This can increase azure request timeout error and start work only Use this field to test small chunks of CSS code. If all else fails, there are many other settings that can be changed. The other consideration is this is per server so in multiple servers, it provides another means of segmenting load and configuring the resources differently for direct API requests and browser requests for HTML and CSS content. With the fast growing adoption of Kubernetes, and tutorials every week. Any configurable properties can have visited kinsta has django and request timeout for getting the signing region for sending various breaches where it can scale. Are you sure you want to allow comments on this post? Azure slot that webjobs are executed on the real website as well as the staging slot. Activity function to do the actual processing. If your browser shows an error message instead of the website you wanted to open, or arrange a chat, the operation was completely transparent and it has no idea such a transformation happened. This article is too good. Turn your data into revenue, missing, but nothing else. Http trigger azure website with his wife, application times out that clients can increase azure key. The first one was to serialize with a max depth. In the end, the reality slightly altered. As there exist a variety of operating systems, or the API platform.
    [Show full text]
  • Estudio De Web Servers
    UNIVERSIDADE DE VIGO ESCOLA SUPERIOR DE ENXEÑERÍA INFORMÁTICA Proyecto ACSO CURSO 2009/2010 Alumnos: Miguel Portela González Aarón Veiga Olivera Miguel Bermúdez Pena Noelia Pérez Álvarez 1.- INTRODUCCIÓN 2.- ESTADO DEL ARTE 3.- DESCRIPCIÓN TÉCNICA Y CONFIGURACIÓN • CHEROKEE • LIGHTTPD • APACHE • THTTPD 4.- RESULTADOS Y MEDICIONES EXPERIMENTALES 5.- INTERPRETACIÓN DE RESULTADOS 6.- CONCLUSIONES ESTUDIO DE LOS SERVIDORES CHEROKEE APACHE LIGHTTPD THTTPD PROPÓSITO DEL ESTUDIO MEDIR PARÁMETROS DE LOS SERVIDORES COMPROBAR CUÁL DE LOS SERVIDORES ES MEJOR REALIZAR GRÁFICAS DE LOS RESULTADOS OBTENER RESULTADOS Y CONCLUSIONES RESULTADOS ESPERADOS Será un articulo que ayude a una persona que necesite montar un servidor en su empresa para seleccionar la mejor opción. Los motivos y razones estarán fundamentadas en las pruebas y mediciones realizadas No hay estudios similares en la Web Ventajas y desventajas del software y herramientas utilizados DESVENTAJAS VENTAJAS Versiones de los servidores Servidor Versión Cherokee 0.99.19 Lighttpd 1.04.22 Apache 2.02.12 Thttpd 2.25b-6 Plataforma de pruebas CPU Intel Core Duo T2400 1.83GHz HDD Western Digital 250 GB 2.5 5400 rpm ATA Video Ati Radeon X1600 PRO 256MB Memoria RAM 3GB Tarjeta Wireless Intel 3950 ABG S.O. Ubuntu 9.10 Karmic Kernel 2.6.32 Servidor web de alto rendimiento. Es muy rápido, flexible y fácil de configurar. Interfaz gráfica Software libre. Totalmente modular. Multiplataforma (rendimiento nativo para Unix, Linux y Windows). Es un servidor web diseñado para ser rápido, seguro, flexible, y fiel a los estándares. Está optimizado para entornos donde la velocidad es muy importante Es software libre La configuración se realiza mediante la edición de un archivo de texto Características: Virtual hosting CGI, SCGI y FastCGI Soporte para PHP, Ruby, Python y otros Cifrado SSL Compresión (gzip, bzip2, ...) Autenticación (LDAP, htpasswd, otros) … Servidor web flexible, rápido y eficiente, continuamente actualizado y adaptado a los nuevos protocolos.
    [Show full text]
  • Python - a Crash Course
    Python - A Crash Course Antonio Lima Networks and Distributed Systems 2012-2013 School of Computer Science - University of Birmingham 15 March 2013 Last week's Homework Write a Python program that counts the occurrences of words in a wordlist. counter = {} with open(filename, "r") as f: for line in f: if line in counter: counter[line] += 1 else: counter[line] = 1 We are asking permission. It's easier to ask forgiveness. Last week's Homework You ask forgiveness by executing a task and recovering if there is an error. counter = {} with open(filename, "r") as f: for line in f: try: counter[line] += 1 except KeyError: counter[line] = 1 That's much better (one operation less). But there's even a more pythonic solution. Last week's Homework You ask forgiveness by executing a task and recovering if there is an error. import collections counter = collections.defaultdict(int) with open(filename, "r") as f: for line in f: counter[line] += 1 5 lines, very readable, correct. Pythonic. Why using Python for Networking? • Well, why not? • Many successful companies/startups are using it. • Google, Yahoo, Dropbox, Quora, Disqus, ... • A lot of libraries are available. • You can build prototypes quickly. The socket module: not only sockets The module provides access to the BSD socket interface. Very low-level. >>> import socket >>> hostname = 'google.com' >>> addr = socket.gothostbyname(hostname) '173.194.41.102' >>> socket.getservbyname('ssh') 22 >>> socket.getservbyname('http') 80 The socket module: a client-server application # Client import socket import
    [Show full text]
  • Comparison of Web Server Software from Wikipedia, the Free Encyclopedia
    Create account Log in Article Talk Read Edit ViewM ohrisetory Search Comparison of web server software From Wikipedia, the free encyclopedia Main page This article is a comparison of web server software. Contents Featured content Contents [hide] Current events 1 Overview Random article 2 Features Donate to Wikipedia 3 Operating system support Wikimedia Shop 4 See also Interaction 5 References Help 6 External links About Wikipedia Community portal Recent changes Overview [edit] Contact page Tools Server Developed by Software license Last stable version Latest release date What links here AOLserver NaviSoft Mozilla 4.5.2 2012-09-19 Related changes Apache HTTP Server Apache Software Foundation Apache 2.4.10 2014-07-21 Upload file Special pages Apache Tomcat Apache Software Foundation Apache 7.0.53 2014-03-30 Permanent link Boa Paul Phillips GPL 0.94.13 2002-07-30 Page information Caudium The Caudium Group GPL 1.4.18 2012-02-24 Wikidata item Cite this page Cherokee HTTP Server Álvaro López Ortega GPL 1.2.103 2013-04-21 Hiawatha HTTP Server Hugo Leisink GPLv2 9.6 2014-06-01 Print/export Create a book HFS Rejetto GPL 2.2f 2009-02-17 Download as PDF IBM HTTP Server IBM Non-free proprietary 8.5.5 2013-06-14 Printable version Internet Information Services Microsoft Non-free proprietary 8.5 2013-09-09 Languages Jetty Eclipse Foundation Apache 9.1.4 2014-04-01 Čeština Jexus Bing Liu Non-free proprietary 5.5.2 2014-04-27 Galego Nederlands lighttpd Jan Kneschke (Incremental) BSD variant 1.4.35 2014-03-12 Português LiteSpeed Web Server LiteSpeed Technologies Non-free proprietary 4.2.3 2013-05-22 Русский Mongoose Cesanta Software GPLv2 / commercial 5.5 2014-10-28 中文 Edit links Monkey HTTP Server Monkey Software LGPLv2 1.5.1 2014-06-10 NaviServer Various Mozilla 1.1 4.99.6 2014-06-29 NCSA HTTPd Robert McCool Non-free proprietary 1.5.2a 1996 Nginx NGINX, Inc.
    [Show full text]
  • Master Thesis
    MASTER THESIS TITLE: Analysis and evaluation of high performance web servers MASTER DEGREE: Master in Science in Telecommunication Engineering & Management AUTHOR: Albert Hidalgo Barea DIRECTOR: Rubén González Blanco SUPERVISOR: Roc Meseguer Pallarès DATE: July 13 th 2011 Title: Analysis and evaluation of high performance web servers Author: Albert Hidalgo Barea Director: Rubén González Blanco Supervisor: Roc Meseguer Pallarès Date: July 13 th 2011 Overview Web servers are a very important tool when providing users with requested content on the Internet. Usage of the Internet is growing day-by-day, making those software applications essential. In the first part of the thesis, the web server world will be introduced to the reader, by giving a brief explanation of some of the available technologies as well as different dynamic protocols. Also, as there are different web servers available in the market, during this report it will be chosen the best performing ones. So, it will be presented a comparative chart between all of them in order to show the most important features of each one. Defining the scenario and the test cases is mandatory. For this reason, it is described the used hardware and software used to perform those benchmarks. The hardware is maintained equal during the whole test process, in order to let web server’s performance gaps to their internal architecture. Operating system and benchmarking tools are also described and given some examples. Furthermore, test cases are chosen to show some strengths and weakness of each web server, enabling us to compare the relative performance between them. Finally, the last part of the report consists on presenting the obtained results during the benchmark process, as well as presenting some lessons learned during the curse of the whole thesis, summing-up with some conclusions.
    [Show full text]
  • Security Testing Tutorial
    Security Testing About the Tutorial Security Testing is performed to reveal security flaws in the system in order to protect data and maintain functionality. This tutorial explains the core concepts of Security Testing and related topics with simple and useful examples. Audience This tutorial has been prepared for beginners to help them understand the basics of security testing. Prerequisites Before proceeding with this tutorial, you should have a basic understanding of software testing and its related concepts. Copyright & Disclaimer ¬ Copyright 2017 by Tutorials Point (I) Pvt. Ltd. All the content and graphics published in this e-book are the property of Tutorials Point (I) Pvt. Ltd. The user of this e-book is prohibited to reuse, retain, copy, distribute or republish any contents or a part of contents of this e-book in any manner without written consent of the publisher. We strive to update the contents of our website and tutorials as timely and as precisely as possible, however, the contents may contain inaccuracies or errors. Tutorials Point (I) Pvt. Ltd. provides no guarantee regarding the accuracy, timeliness or completeness of our website or its contents including this tutorial. If you discover any errors on our website or in this tutorial, please notify us at [email protected] i Security Testing Table of Contents About the Tutorial ....................................................................................................................................... i Audience ....................................................................................................................................................
    [Show full text]
  • An Introduction to Python for Absolute Beginners
    An introduction to Python for absolute beginners Bob Dowling University Computing Service [email protected] http://www.ucs.cam.ac.uk/docs/course-notes/unix-courses/PythonAB 1 Welcome to the Computing Service's course “Introduction to Python”. This course is designed for people with absolutely no experience of programming. If you have any experience in programming other languages you are going to find this course extremely boring and you would be better off attending our course "Python for Programmers" where we teach you how to convert what you know from other programming languages to Python. This course is based around Python version 3. Python has recently undergone a change from Python 2 to Python 3 and there are some incompatibilities between the two versions. The older versions of this course were based around Python 2 but this course is built on Python 3. Python is named after Monty Python and its famous flying circus, not the snake. It is a trademark of the Python Software Foundation. 1 Course outline ― 1 Who uses Python & what for What sort of language it is How to launch Python Python scripts Text Names for values Reading in user data Numbers Conversions Comparisons Truth & Falsehood 2 2 Course outline ― 2 Assignment Names Our first “real” program Loops if… else… Indentation Comments 3 3 Course outline ― 3 Lists Indices Lengths Changing items Extending lists Methods Creating lists Testing lists Removing from lists for… loop Iterables Slices 4 4 Course outline ― 4 Files Reading & writing Writing our own functions
    [Show full text]
  • Computer System Administration. Topic 9. Secure Web Service: HTTP
    Computer System Design and Administration Topic 9. Secure web service: HTTP Apache2 (over SSL) José Ángel Herrero Velasco Department of Computer and Electrical Engineering This work is published under a License: Creative Commons BY-NC-SA 4.0 Computer System Design and Administration Topic 9. Secure web service: HTTP Apache2 (over SSL) WEB service (HTTP): Puzzle Secure information server SSH Active ISC Clients Directory DHCP Open ISC SSL SSL LDAP DB LDAP client DNS OpenLDAP ISC SSL NTP server:/ //server/ export export Secure WEB server NFSv4 CIFS PHP MySQL LDAP User (web data) pool Apache2 (public_html) Network file server/ MS Windows-Linux/UNIX interoperability SSL SSL RAID/LVM /dev/ Core (web data) pool /dev/ sdxx SAMBA NFSv4 (.html, php…) Hosts Virtual /dev/ sdxx CMS: WordPress sdxx José Ángel Herrero Velasco Computer System Design and Administration Topic 9. Secure web service: HTTP Apache2 (over SSL) Target: WEB services • Deployment and development of an INTERNET secure WEB service based on Apache server: – Content management. – Access control. – Virtualhost concept (management). – Secure communicaons: TLS/SSL. • Installaon, configuraon and start-up of a Web Content Manager (CMS): – Wordpress. José Ángel Herrero Velasco Computer System Design and Administration Topic 9. Secure web service: HTTP Apache2 (over SSL) HTTP: The protocol • The HTTP (Hypertext Transfer Protocol) protocol: – Definion: • The Hypertext Transfer Protocol (HTTP) is an applicaon-level protocol for distributed, collaboraBve, hypermedia informaon systems: – Enables exchanging informaon (text, mulmedia...). – Most common method of informaon exchange on WWW - Since 1990. – Syntax and semanBcs. – THe informaon excHanged: • The HyperText Markup Language (HTML): – Hypertext is structured text that uses logical links between nodes with contents TCP/IP Stack (plain text): » Message excHange methods: • HEAD,GET,POST… – Used by soware elements on the WEB architecture: » Clients (browsers), servers and proxies.
    [Show full text]
  • Software Engineer - Lighthouse Team
    Software Engineer - Lighthouse team SUMMARY Opengear designs and manufactures products for sophisticated data center and remote site management. We are looking for Software Engineers (minimum 2 years' experience) to join our development team in Brisbane, Australia. The engineering team develops and maintains the software for Opengear console servers and management appliances. Our devices run embedded linux, with a mix of open-source tools (eg. OpenSSH, OpenVPN, NUT, Cherokee, nginx, etc.) and our own proprietary additions (serial management, CGI web interface, HTTP and REST APIs, monitoring daemons, etc.). We work in a wide and varied code base, covering many fields -- embedded development, kernel development, networking, security, serial interfaces, web interfaces, web development, and so on. This role is centered around work on our management appliance, which ships on an server, or as a virtual machine. It is used for centralising access and monitoring for large estates of Opengear hardware appliances. ESSENTIAL DUTIES AND RESPONSIBILITIES You will be working on the software for our embedded Linux console servers and management appliance. Your duties will include: • Feature development from initial scoping and design to deployment and long term maintenance. • Providing assistance for escalated customer issues (diagnosing and fixing bug reports). • Developer level testing, and assisting the test team with generating test plans. • General infrastructure maintenance as required (build system, source control system, etc.). QUALIFICATIONS Our engineers are expected to be able to work on any part of the software stack, from the operating system up to the Web front end. You will be working in a variety of languages, including C and C++, Lua, Bash, and Javascript.
    [Show full text]
  • Abstract GEGICK, MICHAEL CHARLES. Analyzing Security
    Abstract GEGICK, MICHAEL CHARLES. Analyzing Security Attacks to Generate Signatures from Vulnerable Architectural Patterns. (Under the direction of Dr. Laurie Williams.) Current techniques for software security vulnerability identification include the use of abstract, graph-based models to represent information about an attack. These models can be in the form of attack trees or attack nets and can be accompanied with a supporting text- based profile. Matching the abstract models to specific system architectures for effective vulnerability identification can be a challenging process. This thesis suggests that abstract regular expressions can be used to represent events of known attacks for the identification of security vulnerabilities in future applications. The process of matching the events in the regular expression to a sequence of components in a system design may facilitate the means of identifying vulnerabilities. Performing the approach in the design phase of a software process encourages security to be integrated early into a software application. Students in an undergraduate security course demonstrated a strong ability to accurately match regular expressions to a system design. The identification of vulnerabilities is limited to known attacks of other systems and does not offer descriptions of what new attacks are possible to a future application. Extending the approach to incorporate new attacks is an avenue of future work. Analyzing Security Attacks to Generate Signatures from Vulnerable Architectural Patterns by Michael Charles
    [Show full text]