<?xml version="1.0" encoding="utf-8" ?>

<rss version="2.0" 
   xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"
   xmlns:admin="http://webns.net/mvcb/"
   xmlns:dc="http://purl.org/dc/elements/1.1/"
   xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
   xmlns:wfw="http://wellformedweb.org/CommentAPI/"
   xmlns:content="http://purl.org/rss/1.0/modules/content/"
      xmlns:itunes="http://www.itunes.com/dtds/podcast-1.0.dtd"
>
<channel>
     

<itunes:subtitle>Hanno's blog</itunes:subtitle>
<itunes:author>Hanno's blog</itunes:author>
<itunes:summary></itunes:summary>
<itunes:image href="http://hboeck.de/itunes.jpg" />
<itunes:category text="Technology" />                
                
    <title>Hanno's blog - Comments</title>
    <link>http://blog.hboeck.de/</link>
    <description>Hanno's blog - </description>
    <dc:language>en</dc:language>
    <generator>Serendipity 1.7-rc3 - http://www.s9y.org/</generator>
    <pubDate>Thu, 01 Jan 1970 00:00:00 GMT</pubDate>

    <image>
        <url>http://blog.hboeck.de/templates/hanno/img/s9y_banner_small.png</url>
        <title>RSS: Hanno's blog - Comments - Hanno's blog - </title>
        <link>http://blog.hboeck.de/</link>
        <width>100</width>
        <height>21</height>
    </image>

<item>
    <title>Hanno: Bus from Ulan-Ude to Ulaanbaatar</title>
    <link>http://blog.hboeck.de/archives/768-Bus-from-Ulan-Ude-to-Ulaanbaatar.html#c29198</link>
            <category></category>
    
    <comments>http://blog.hboeck.de/archives/768-Bus-from-Ulan-Ude-to-Ulaanbaatar.html#comments</comments>
    <wfw:comment>http://blog.hboeck.de/wfwcomment.php?cid=768</wfw:comment>

    

    <author>nospam@example.com (Hanno)</author>
    <content:encoded>
    I don&#039;t know, but you may ask at Ulan-Ude Hostel, we bought our tickets there. 
    </content:encoded>

    <pubDate>Thu, 09 May 2013 17:49:33 +0200</pubDate>
    <guid isPermaLink="false">http://blog.hboeck.de/archives/768-guid.html#c29198</guid>
    
</item>
<item>
    <title>Osvaldo Cairo: Bus from Ulan-Ude to Ulaanbaatar</title>
    <link>http://blog.hboeck.de/archives/768-Bus-from-Ulan-Ude-to-Ulaanbaatar.html#c29196</link>
            <category></category>
    
    <comments>http://blog.hboeck.de/archives/768-Bus-from-Ulan-Ude-to-Ulaanbaatar.html#comments</comments>
    <wfw:comment>http://blog.hboeck.de/wfwcomment.php?cid=768</wfw:comment>

    

    <author>nospam@example.com (Osvaldo Cairo)</author>
    <content:encoded>
    Hi, Do you know if it is possible to buy the bus ticket in advance? We need the tickets to process the Mongolia visa.&lt;br /&gt;
&lt;br /&gt;
All the best,&lt;br /&gt;
Osvaldo 
    </content:encoded>

    <pubDate>Fri, 03 May 2013 20:15:58 +0200</pubDate>
    <guid isPermaLink="false">http://blog.hboeck.de/archives/768-guid.html#c29196</guid>
    
</item>
<item>
    <title>anon: How to configure your HTTPS server</title>
    <link>http://blog.hboeck.de/archives/814-How-to-configure-your-HTTPS-server.html#c28329</link>
            <category></category>
    
    <comments>http://blog.hboeck.de/archives/814-How-to-configure-your-HTTPS-server.html#comments</comments>
    <wfw:comment>http://blog.hboeck.de/wfwcomment.php?cid=814</wfw:comment>

    

    <author>nospam@example.com (anon)</author>
    <content:encoded>
    Works in Konqueror (KDE 4.9 version). The SSL info window shows TLS 1.2 being used, but the Encryption field is blank. 
    </content:encoded>

    <pubDate>Sun, 10 Feb 2013 23:00:02 +0100</pubDate>
    <guid isPermaLink="false">http://blog.hboeck.de/archives/814-guid.html#c28329</guid>
    
</item>
<item>
    <title>Oliver: How to configure your HTTPS server</title>
    <link>http://blog.hboeck.de/archives/814-How-to-configure-your-HTTPS-server.html#c28323</link>
            <category></category>
    
    <comments>http://blog.hboeck.de/archives/814-How-to-configure-your-HTTPS-server.html#comments</comments>
    <wfw:comment>http://blog.hboeck.de/wfwcomment.php?cid=814</wfw:comment>

    

    <author>nospam@example.com (Oliver)</author>
    <content:encoded>
    Safari on iPAD can display your testing-page. 
    </content:encoded>

    <pubDate>Sun, 27 Jan 2013 00:14:01 +0100</pubDate>
    <guid isPermaLink="false">http://blog.hboeck.de/archives/814-guid.html#c28323</guid>
    
</item>
<item>
    <title>Albert: How to configure your HTTPS server</title>
    <link>http://blog.hboeck.de/archives/814-How-to-configure-your-HTTPS-server.html#c28320</link>
            <category></category>
    
    <comments>http://blog.hboeck.de/archives/814-How-to-configure-your-HTTPS-server.html#comments</comments>
    <wfw:comment>http://blog.hboeck.de/wfwcomment.php?cid=814</wfw:comment>

    

    <author>nospam@example.com (Albert)</author>
    <content:encoded>
    I can read the fancyssl page with Opera 12.12 after manually enabling TLS 1.2. 
    </content:encoded>

    <pubDate>Mon, 21 Jan 2013 17:06:17 +0100</pubDate>
    <guid isPermaLink="false">http://blog.hboeck.de/archives/814-guid.html#c28320</guid>
    
</item>
<item>
    <title>Hanno: How to configure your HTTPS server</title>
    <link>http://blog.hboeck.de/archives/814-How-to-configure-your-HTTPS-server.html#c28318</link>
            <category></category>
    
    <comments>http://blog.hboeck.de/archives/814-How-to-configure-your-HTTPS-server.html#comments</comments>
    <wfw:comment>http://blog.hboeck.de/wfwcomment.php?cid=814</wfw:comment>

    

    <author>nospam@example.com (Hanno)</author>
    <content:encoded>
    It&#039;s basically not the webkit part, but openssl. If a browser uses &quot;plain&quot; openssl without doing anything further and if openssl is on version 1.0.1, it should &quot;just work&quot;. Simple textmode browsers like w3m and lynx also do it. 
    </content:encoded>

    <pubDate>Sat, 19 Jan 2013 13:11:47 +0100</pubDate>
    <guid isPermaLink="false">http://blog.hboeck.de/archives/814-guid.html#c28318</guid>
    
</item>
<item>
    <title>krigstask: How to configure your HTTPS server</title>
    <link>http://blog.hboeck.de/archives/814-How-to-configure-your-HTTPS-server.html#c28317</link>
            <category></category>
    
    <comments>http://blog.hboeck.de/archives/814-How-to-configure-your-HTTPS-server.html#comments</comments>
    <wfw:comment>http://blog.hboeck.de/wfwcomment.php?cid=814</wfw:comment>

    

    <author>nospam@example.com (krigstask)</author>
    <content:encoded>
    luakit manages it as well. Probably every mini-browser based on webkit-gtk does. 
    </content:encoded>

    <pubDate>Sat, 19 Jan 2013 12:43:32 +0100</pubDate>
    <guid isPermaLink="false">http://blog.hboeck.de/archives/814-guid.html#c28317</guid>
    
</item>
<item>
    <title>Tomcat: Brief an die Naturstrom AG</title>
    <link>http://blog.hboeck.de/archives/813-Brief-an-die-Naturstrom-AG.html#c28308</link>
            <category></category>
    
    <comments>http://blog.hboeck.de/archives/813-Brief-an-die-Naturstrom-AG.html#comments</comments>
    <wfw:comment>http://blog.hboeck.de/wfwcomment.php?cid=813</wfw:comment>

    

    <author>nospam@example.com (Tomcat)</author>
    <content:encoded>
    Danke für deinen Einsatz!&lt;br /&gt;
&lt;br /&gt;
Bisschen schade, dass die Ökostromanbieter so nach und nach auch immer schlechter werden. ;)&lt;br /&gt;
&lt;br /&gt;
Da ich kein Gas beziehe, werde ich mir EWS mal ansehen. Hatte bisher vor, zu Greenpeace zu wechseln. 
    </content:encoded>

    <pubDate>Sat, 15 Dec 2012 14:40:36 +0100</pubDate>
    <guid isPermaLink="false">http://blog.hboeck.de/archives/813-guid.html#c28308</guid>
    
</item>
<item>
    <title>Hanno: Brief an die Naturstrom AG</title>
    <link>http://blog.hboeck.de/archives/813-Brief-an-die-Naturstrom-AG.html#c28307</link>
            <category></category>
    
    <comments>http://blog.hboeck.de/archives/813-Brief-an-die-Naturstrom-AG.html#comments</comments>
    <wfw:comment>http://blog.hboeck.de/wfwcomment.php?cid=813</wfw:comment>

    

    <author>nospam@example.com (Hanno)</author>
    <content:encoded>
    EWS bietet Gas nur in Baden-Württemberg an.&lt;br /&gt;
Außerdem bieten sie &quot;nur&quot; normales Gas an. Man unterstützt damit natürlich ein sympatisches Unternehmen, aber eigentlich find ich das Gasangebot von Naturstrom ja gut. Man kann dort 100% Biogas bekommen (recht teuer, aber wir nutzen es nur zum kochen, nicht zum heizen) und wie ich oben schon geschrieben hab: Sie bemühen sich ernsthaft, dabei schädliche Tendenzen in der Biogasbranche nicht zu unterstützen.&lt;br /&gt;
Auch sehr interessant find ich das Angebot von Greenpeace Energy: Die setzen auf sogenanntes Windgas, also Gas, welches aus überschüssigem Strom synthetisiert wurde. Das gab es aber noch nicht als ich meinen Gasanbieter zuletzt ausgesucht hab. 
    </content:encoded>

    <pubDate>Tue, 20 Nov 2012 21:18:19 +0100</pubDate>
    <guid isPermaLink="false">http://blog.hboeck.de/archives/813-guid.html#c28307</guid>
    
</item>
<item>
    <title>styx: Brief an die Naturstrom AG</title>
    <link>http://blog.hboeck.de/archives/813-Brief-an-die-Naturstrom-AG.html#c28306</link>
            <category></category>
    
    <comments>http://blog.hboeck.de/archives/813-Brief-an-die-Naturstrom-AG.html#comments</comments>
    <wfw:comment>http://blog.hboeck.de/wfwcomment.php?cid=813</wfw:comment>

    

    <author>nospam@example.com (styx)</author>
    <content:encoded>
    Da ich selbst auch bei den EWS kunde bin, frage ich mich, wieso du das gas nicht auch über die beziehst? Oder kann man sich damit in Berlin nicht beliefern lassen?&lt;br /&gt;
Das hat jetzt natürlich mit der angesprochenen Problematik nichts zu tun, interessiert mich nur :-) 
    </content:encoded>

    <pubDate>Mon, 19 Nov 2012 10:21:24 +0100</pubDate>
    <guid isPermaLink="false">http://blog.hboeck.de/archives/813-guid.html#c28306</guid>
    
</item>
<item>
    <title>Scout: Ancient streamed audio formats</title>
    <link>http://blog.hboeck.de/archives/802-Ancient-streamed-audio-formats.html#c28293</link>
            <category></category>
    
    <comments>http://blog.hboeck.de/archives/802-Ancient-streamed-audio-formats.html#comments</comments>
    <wfw:comment>http://blog.hboeck.de/wfwcomment.php?cid=802</wfw:comment>

    

    <author>nospam@example.com (Scout)</author>
    <content:encoded>
    Heck, I had nearly my all music collection in VQF!&lt;br /&gt;
&lt;br /&gt;
Took ages to convert on a 233 MHz CPU I had back then - and my player wasn&#039;t even able to fast-forward (was burning CPU cycles, if I needed to skip i.e. a minute ahead).&lt;br /&gt;
&lt;br /&gt;
Times change! 
    </content:encoded>

    <pubDate>Thu, 25 Oct 2012 20:48:32 +0200</pubDate>
    <guid isPermaLink="false">http://blog.hboeck.de/archives/802-guid.html#c28293</guid>
    
</item>
<item>
    <title>JCG: Sodom, Gomorra und Schach</title>
    <link>http://blog.hboeck.de/archives/803-Sodom,-Gomorra-und-Schach.html#c28287</link>
            <category></category>
    
    <comments>http://blog.hboeck.de/archives/803-Sodom,-Gomorra-und-Schach.html#comments</comments>
    <wfw:comment>http://blog.hboeck.de/wfwcomment.php?cid=803</wfw:comment>

    

    <author>nospam@example.com (JCG)</author>
    <content:encoded>
    Auch ich empfinde es immer wieder als befremdlich, welche Macht noch immer von der wohl weltweit größten Sekte ausgeht. Vergleichsweise aufgeklärtes Zeitalter hin oder her... 
    </content:encoded>

    <pubDate>Fri, 21 Sep 2012 11:49:33 +0200</pubDate>
    <guid isPermaLink="false">http://blog.hboeck.de/archives/803-guid.html#c28287</guid>
    
</item>
<item>
    <title>Roy: Goodbye 3DBD3B20, welcome BBB51E42</title>
    <link>http://blog.hboeck.de/archives/750-Goodbye-3DBD3B20,-welcome-BBB51E42.html#c28162</link>
            <category></category>
    
    <comments>http://blog.hboeck.de/archives/750-Goodbye-3DBD3B20,-welcome-BBB51E42.html#comments</comments>
    <wfw:comment>http://blog.hboeck.de/wfwcomment.php?cid=750</wfw:comment>

    

    <author>nospam@example.com (Roy)</author>
    <content:encoded>
    I&#039;ve, my self, after some years came to the conclusion that currently the best configuration (before creating the key... or change it to):&lt;br /&gt;
&lt;br /&gt;
inside gpg.conf file:&lt;br /&gt;
&lt;br /&gt;
comment &quot;&quot;&lt;br /&gt;
enable-dsa2&lt;br /&gt;
default-preference-list AES192 AES256 AES SHA384 SHA512 SHA256 ZLIB BZIP2 ZIP&lt;br /&gt;
personal-cipher-preferences AES192&lt;br /&gt;
cipher-algo AES192&lt;br /&gt;
personal-digest-preferences SHA384&lt;br /&gt;
cert-digest-algo SHA384&lt;br /&gt;
digest-algo SHA384&lt;br /&gt;
personal-compress-preferences ZLIB&lt;br /&gt;
compress-algo ZLIB&lt;br /&gt;
&lt;br /&gt;
The maximum key I can create and that is guaranteed  to work is a RSA 4096 bit key... and that &quot;only&quot; gives 128 bits of security according to FNISA, or between 128 and 150(?) bits of security according to ECRYPT II and NIST.&lt;br /&gt;
So I don&#039;t need to use AES256 by default because the RSA key doesn&#039;t provide more protection than 128/150(?) bits... and choose AES192 (just to have some security margin), and SHA-256 is supposed to offer 128 bits of security... so I choose SHA-384 (just to have some security margin).. it should provide 192 bits of security. So It&#039;s just a compromise between some security margin, speed and having in mind the weakest point (RSA key).&lt;br /&gt;
AES256 and SHA-512 was second choice, in case some one doesn&#039;t have AES192 or SHA384... I don&#039;t want to default to AES or worse 3DES... then it comes AES and SHA256... the latest option (because with GnuPG 2.0.19 I can&#039;t built it my self in windows) comes the insecure 3DES and SHA1... I preferred not to have this last two... but someone, somewhere wants to force insecure options (some 3 letter agency?) and the GnuPG inserts (against my will) 3DES and SHA1 either I want it or not. Camellia cypher unfortunately doesn&#039;t work with PGP... and if I use it, PGP users will complaint many times about not being able to open the messages (seems like a bug to me... not supporting is one thing, another is give error).&lt;br /&gt;
When creating the key it self I find it better to create first 1 main key to (C)ertify and (A)uthenticate, and after, create a new sub-key to (S)ign, and another new sub-key to (E)ncrypt. All with 4096 bits RSA key of course.&lt;br /&gt;
Curiously (or not) I&#039;ve not see anyone else doing this, this way... but seems the better compromise between best security (achievable), speed and usability.&lt;br /&gt;
&lt;br /&gt;
Security levels comparisons between technologies made at keylength.com (with the sources). 
    </content:encoded>

    <pubDate>Fri, 27 Jul 2012 10:55:27 +0200</pubDate>
    <guid isPermaLink="false">http://blog.hboeck.de/archives/750-guid.html#c28162</guid>
    
</item>
<item>
    <title>Hanno: And you thought 3D printers are useless</title>
    <link>http://blog.hboeck.de/archives/808-And-you-thought-3D-printers-are-useless.html#c28159</link>
            <category></category>
    
    <comments>http://blog.hboeck.de/archives/808-And-you-thought-3D-printers-are-useless.html#comments</comments>
    <wfw:comment>http://blog.hboeck.de/wfwcomment.php?cid=808</wfw:comment>

    

    <author>nospam@example.com (Hanno)</author>
    <content:encoded>
    I asked myself the same question, but it definitely is. It appears to me that it&#039;s even stronger than the original.&lt;br /&gt;
&lt;br /&gt;
You can adjust the quality of the printing a lot. What you usually see what they print on events is mostly the low end of the possible quality. With slower printing times you get much better results.&lt;br /&gt;
&lt;br /&gt;
What impressed me even more was the accuracy. As I wrote, it fits just perfect - a bit too thick or too thin would&#039;ve not worked. 
    </content:encoded>

    <pubDate>Mon, 23 Jul 2012 11:46:06 +0200</pubDate>
    <guid isPermaLink="false">http://blog.hboeck.de/archives/808-guid.html#c28159</guid>
    
</item>
<item>
    <title>Joachim Breitner: And you thought 3D printers are useless</title>
    <link>http://blog.hboeck.de/archives/808-And-you-thought-3D-printers-are-useless.html#c28158</link>
            <category></category>
    
    <comments>http://blog.hboeck.de/archives/808-And-you-thought-3D-printers-are-useless.html#comments</comments>
    <wfw:comment>http://blog.hboeck.de/wfwcomment.php?cid=808</wfw:comment>

    

    <author>nospam@example.com (Joachim Breitner)</author>
    <content:encoded>
    Is it really strong and stable enough? I’d expect the material to differ quite from what industrial production can handle. 
    </content:encoded>

    <pubDate>Mon, 23 Jul 2012 10:52:54 +0200</pubDate>
    <guid isPermaLink="false">http://blog.hboeck.de/archives/808-guid.html#c28158</guid>
    
</item>

</channel>
</rss>
