Reviewing this, will give feedback when done.
|
|
|
I'm hoping to be back online in a few hours, after having to move to a new server (not one accessible by MagicalTux), I'm spending my time hardening the system.
Nefario.
|
|
|
I did have trouble with the first VPS I'd gotten from them, the install hadn't worked.
But they resolved it quick enough(in a day or so I think).
Apart from that I've not had any trouble.
|
|
|
However because of the increasing likelyhood that Mt.Gox's server was rooted, and a significant chance that bitcoin was stolen from their wallet we have to move server.
Prior to now we were using VPS's provided by Kalyhost, which is run by MagicalTux. As Mt.Gox remains down, and the situation is looking worse that we had previously thought, we cannot take the risk of having our customers bitcoin on servers accessible by Mt.Gox's people.
As far as I know the account data was leaked through an auditor, so servers weren't rooted. Second, I think kalyhost has many physical servers around the globe, so they don't need to be on the same server as MtGox (I guess the MtGox server was dedicated anyway). Got any link to support those claims? These are not claims that we're making, but risks we perceive from the information we've gathered, risks that I'm not willing to take with other peoples money(my users). We know that we are not on the same server as Mt.Gox for sure, and this is not what we think to be the risk. I'm afraid that I can't say anymore. Nefario.
|
|
|
We we're certainly ready to bring GLBSE back up again.
However because of the increasing likelyhood that Mt.Gox's server was rooted, and a significant chance that bitcoin was stolen from their wallet we have to move server.
Prior to now we were using VPS's provided by Kalyhost, which is run by MagicalTux. As Mt.Gox remains down, and the situation is looking worse that we had previously thought, we cannot take the risk of having our customers bitcoin on servers accessible by Mt.Gox's people.
It's going to add hours(6-12 depending) onto bringing GLBSE back up.
What you can look forward to will be to access GLBSE fully over SSL, using a self signed certificate, and the knowledge that our system has been hardended against breakin and exploitation.
We take the security of our users bitcoin seriously.
Nefario.
|
|
|
I personally like Britcoin, it's not very big but you know someone takes things seriously when they refuse to store any passwords at all on-site and put the source code for the exchange on github.
Hmm well this is totally cool, now the hackers know exactly what sorts of attacks will work by analysing the source code for vulnerabilities. I don't recall any wall street banks leaving the schematics for their security systems lying about on the roadside for any gutter trash to read, do I? It's secure because anyone can view it. This is PHP code, not something flying the space shuttle, you can know it's safe by having everyone have a look.
|
|
|
GLBSE.com of course, we don't actually use passwords.
We are not however a bitcoin exchange (we're an asset exchange)
And it's down until I have security beefed up.
Nefario.
|
|
|
how to put it in executable? I create an empty text file & put code in it & give what extension? How to make it executable & run auto?
Hi Dishwara, One of your shareholders here. Extension doesn't matter. I usually use ".sh". To make it executable you need to run: chmod +x Not sure about auto run. Doe autorun you would use cron, google for more information. I think it can handle 1 min intervals
|
|
|
Just a reminder, GLBSE is probably going to be down for a few more hours until I've finished.
Nefario
|
|
|
This isn't really relevent as the task is now over and there are no more Chinese students.
Nefario.
That sounds rather ominous Yeah, sold out Actually I'll be giving the final results of this experiment before the end of the week.
|
|
|
Sorry for the late update. I checked this out yesteryday(sent you a pm), everything seems to be working fine as you had placed a large sell for shares.
If there are anymore issues relating to this please let me know.
Nefario.
|
|
|
Egg on my face
|
|
|
Interestingly I can NOT sell my shares now (38165 are still in my folio and show up there) after I stopped trading.
python bmc.py sell 38165 CM400 1000000 00 Enter passphrase: Problem: You do not have enough unreserved assets to make this order, please can cel another order to allow
I have 0 orders open and selling 1 share less does not help too... Nefario?! I might have spotted a bug...
Selling 10000 shares worked though, if someone wants to buy more shares right now, please just get in contact with me in the meantime.
Damn, I won't be able to do anything about that until Monday.
|
|
|
On another note, I find myself in an unfortunate position: using the current language of the shares I've sold, I'll probably end up paying massive fines at best and in federal prison at worst when SkepsiDyne takes off and makes it big. There is a pretty easy solution to this
I don't understand what the issue is, mind explaining? Selling shares of a company to the general public without the approval of the SEC is illegal (in the US). However this is only an issue if you don't remain anonymous. i.e. you tell them who you are.
|
|
|
|