<?xml version="1.0" encoding="utf-8"?>
<rss version="2.0"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:admin="http://webns.net/mvcb/"
	xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"
	xmlns:content="http://purl.org/rss/1.0/modules/content/">
	<channel>
		<title>
			CoffeeBreak
		</title>
		<link>
			http://www.neverpanic.de/blog/
		</link>
		<atom:link href="http://www.neverpanic.de/blog/rss2/" rel="self" type="application/rss+xml" />
		<description>
			CoffeeBreak, the neverpanic.de blog
		</description>
		<dc:language>
			en
		</dc:language>
		<dc:creator>
			Clemens Lang
		</dc:creator>
		<dc:rights>
			Creative Commons Attribution-NonCommercial-ShareAlike 2.0 Germany License
		</dc:rights>
		<dc:date>
			2011-08-10T23:00:34+00:00
		</dc:date>
		<admin:generatorAgent rdf:resource="http://expressionengine.com/" />
		
		<item>
			<title>
				GeSHify has moved
			</title>
			<link>
				http://www.neverpanic.de/blog/single/geshify-has-moved/
			</link>
			<guid>
				http://www.neverpanic.de/blog/single/geshify-has-moved/#When:16:52:55Z
			</guid>
			<description>
				My syntax highlighting extension for ExpressionEngine has moved to a new home:
http://geshify.com/
			</description>
			<dc:subject>
				Web Development
			</dc:subject>
			<dc:date>
				2009-04-02T16:52:55+00:00
			</dc:date>
		</item>
		
		<item>
			<title>
				GeSHify update
			</title>
			<link>
				http://www.neverpanic.de/blog/single/geshify-update/
			</link>
			<guid>
				http://www.neverpanic.de/blog/single/geshify-update/#When:16:05:47Z
			</guid>
			<description>
				GeSHify, the syntax highlighting extension for ExpressionEngine has been updated.
I updated my ExpressionEngine extension GeSHify. New features are a French translation (thanks to Fabien Amann) and a German translation (which I did myself). Packaged with GeSHify 0.3.6.1 are GeSHi 1.0.7.22 and GeSHi 1.1.2alpha4dev (both checked out from the release branches of GeSHi&#8217;s SourceForge.net Subversion repository).
Since I switched from getting the releases of GeSHi manually to using svn:externals definitions I no longer have to download the GeSHi releases manually — they will be pulled from the SourceForge Subversion servers on every update. Using this technique it is technically possible to automate building new GeSHify packages as soon as a new GeSHi version is released (and I will probably set this up soon).
Proceed to download.
			</description>
			<dc:subject>
				Web Development
			</dc:subject>
			<dc:date>
				2008-08-05T16:05:47+00:00
			</dc:date>
		</item>
		
		<item>
			<title>
				I took it! And so should you
			</title>
			<link>
				http://www.neverpanic.de/blog/single/i-took-it-and-so-should-you/
			</link>
			<guid>
				http://www.neverpanic.de/blog/single/i-took-it-and-so-should-you/#When:15:14:57Z
			</guid>
			<description>
				A List Apart has published the 2008 survey for people who make websites. If you work in the web business, you should go ahead and take the survey as well.
			</description>
			<dc:subject>
				Web Development, Personal
			</dc:subject>
			<dc:date>
				2008-07-29T15:14:57+00:00
			</dc:date>
		</item>
		
		<item>
			<title>
				Thunderbird IMAP push email
			</title>
			<link>
				http://www.neverpanic.de/blog/single/thunderbird-imap-push-email/
			</link>
			<guid>
				http://www.neverpanic.de/blog/single/thunderbird-imap-push-email/#When:10:18:49Z
			</guid>
			<description>
				Using Thunderbird as the e&#45;mail client of your choice and the IMAP protocol to fetch and manage your mail?
RFC 2177 defines IDLE, an extension to the IMAP protocol allowing mail clients to change into an idle mode while keeping the TCP&#45;connection open. This allows the servers to notify the clients of new mails on arrival (the so&#45;called push e&#45;mail).
Not all e&#45;mail providers support IMAP IDLE, though – you should check whether your mail provider supports it by opening a telnet connection to the IMAP server (standard port for IMAP is 143) and sending 001 capability. If the answer contains „IDLE” your server supports IMAP IDLE.
GMail for example answers
* CAPABILITY IMAP4rev1 UNSELECT IDLE NAMESPACE QUOTA XLIST CHILDREN XYZZY
001 OK Thats all she wrote!
There&#39;s one thing to look out for, though – Thunderbird only sends the IDLE command (effectively enabling push e&#45;mail) if you disable the „check for new mail every nth minute”&#45;option. I could not find any documentation on that feature – however using Help » Mozilla Thunderbird Help causes a 404 File Not Found error for me anyway (using the German version of Thunderbird).
Steve Jobs would say: „Exchange for the rest of us” – using GMail, IMAP and Thunderbird.
			</description>
			<dc:subject>
				Web Development, Personal
			</dc:subject>
			<dc:date>
				2008-07-12T10:18:49+00:00
			</dc:date>
		</item>
		
		<item>
			<title>
				Probably the biggest RSS icon I have ever seen
			</title>
			<link>
				http://www.neverpanic.de/blog/single/probably-the-biggest-rss-icon-i-have-ever-seen/
			</link>
			<guid>
				http://www.neverpanic.de/blog/single/probably-the-biggest-rss-icon-i-have-ever-seen/#When:16:07:00Z
			</guid>
			<description>
				There&#8217;s a certain trend in so&#45;called web 2.0 design to have ever bigger icons for RSS feeds (What are RSS feeds?).
Now I recently saw an RSS icon that beats the pants of all other RSS icons I&#8217;ve ever seen before: ImageShack&#8217;s RSS icon (screenshot):

This icon is a whooping 403 per 336 pixels large &#45; that&#8217;s 135,408 square pixels!
			</description>
			<dc:subject>
				Web Development
			</dc:subject>
			<dc:date>
				2008-06-13T16:07:00+00:00
			</dc:date>
		</item>
		
		<item>
			<title>
				A rant on limited password fields
			</title>
			<link>
				http://www.neverpanic.de/blog/single/a-rant-on-limited-password-fields/
			</link>
			<guid>
				http://www.neverpanic.de/blog/single/a-rant-on-limited-password-fields/#When:19:58:00Z
			</guid>
			<description>
				You register for a new service, type in all your details, choose a password &#45; and after 16 characters the password field stops accepting your input.
Whenever I see a password field that&#8217;s limited in it&#8217;s length I loose some trust in the organization providing the form. Why? Because the only valid reason I see to limit the length of a password is unencrypted or reversible encrypted storage. This requires some insight knowledge on how data is stored in databases: when defining a text field you usually have to choose it&#8217;s maximum length &#45; obviously you could just choose whatever maximum length was possible, but that&#8217;s not the point of a well designed database. It would take me too long to explain that here, but there are some reasons why you certainly wouldn&#8217;t want to define fields longer than needed.
Password encryption methods
There are several different approaches to password encryption; the first and probably worst method is no encryption. It&#8217;s advantages are that you will be able to mail the password out to the user in case he forgets it and that it doesn&#8217;t require a lot of storage (estimating the average password length at about 10 chars from personal experience here). However it&#8217;s downsides are huge: in case you have some security flaw in your application all passwords will be leaked.

The second way is to use some encryption algorithm, e.g. AES or DES (those two might be a bit overkill, but there&#8217;s others). Strings encrypted with such an encryption algorithm generally tend to use up a lot more storage than the unencrypted string. You still have the advantage of being able to send the password to the user and if your database is leaked, the passwords will still not be decryptable (as long as the encryption key isn&#8217;t leaked).

However, there&#8217;s a better solution: hashing the password will give you a fixed&#45;length string (which is great if you&#8217;re working with databases) from a variable&#45;length string (=password) and it&#8217;s non&#45;reversible. Theoretically you&#8217;d be able to calculate a so&#45;called “collision”. Because a hash function is mapping an endless amount of strings to a finite amount of hash values there&#8217;s multiple strings with the same hash value. However given a certain minimum length of the password (which can be enforced by padding the string with random data you also store, the so&#45;called “salt”) the effort to calculate such a collision is that large that it&#8217;s virtually impossible to hit one while your site is online (assuming you to re&#45;setup the system once in 100 years here). Maybe you&#8217;d ask how to compare passwords on login if they&#8217;re stored using a non&#45;reversible encryption? Actually you wouldn&#8217;t. You would instead hash the password the user entered with the salt stored for the user and compare it to the stored encrypted password. That way the unencrypted password is never in the server RAM and not in any log files either.
And what if a user forgets his password? Well, instead of mailing him his password, you could just generate a new password, encrypt it, store it into the database and send the new password to the user.
Also the hashing method allows you to enter virtually every character regardless of things like the encoding the database uses internally. Because hashing functions work with binary data and usually return a string using 0&#45;9 and a&#45;f (which are always the same in any encoding relying on ANSI) there won&#8217;t be any problems with the database encoding to deal with either.

So, why is there still services not allowing long passwords and all characters in passwords?
			</description>
			<dc:subject>
				Web Development
			</dc:subject>
			<dc:date>
				2008-05-27T19:58:00+00:00
			</dc:date>
		</item>
		
		<item>
			<title>
				9&#45;slice scaling in HTML
			</title>
			<link>
				http://www.neverpanic.de/blog/single/9-slice-scaling-in-html/
			</link>
			<guid>
				http://www.neverpanic.de/blog/single/9-slice-scaling-in-html/#When:14:59:19Z
			</guid>
			<description>
				9&#45;slice scaling is a technique from Adobe&#8217;s Flash product line and has been adapted into Fireworks. It is used to scale certain parts of a symbol different from others when resizing the symbol (i.e. not scaling the corners at all) to make corners and borders look the same at every size of the symbol. With a little CSS and HTML this can be done in browsers, too.
The Adobe Fireworks help has a good article explaining 9&#45;slice scaling. Now imagine you&#8217;re designing a liquid width layout for a website &#45; wouldn&#8217;t it just be great if it would scale as it was 9&#45;sliced? Here&#8217;s how:

Slicing
First you need one image for each of the outer areas in the 9&#45;slice grid. That&#8217;s top left, top center, top right, left center, right center, bottom left, bottom center and bottom right. We don&#8217;t need an image for the center, since it&#8217;s filled with one solid color in this example and we can use CSS for that. Note that all top and all bottom slices must share the same height. The top center and bottom center slices should be 1 pixel wide, since we&#8217;re not going to scale them, but repeat them (which is the difference of this technique compared to the original 9&#45;slice scaling). Left and right center slices only need to be 1 pixel high for the reasons just mentioned.
After all, the slicing looks like this (forgive me the typo):


HTML code
Here&#8217;s the HTML you&#8217;ll need. Read the comments in the code for explanation.
&amp;lt;div class=&amp;quot;content&amp;quot;&amp;gt;	&amp;lt;!&#45;&#45; this is the overall container &#45;&#45;&amp;gt;	&amp;lt;div class=&amp;quot;content&#45;top&amp;quot;&amp;gt;		&amp;lt;!&#45;&#45; this contains the top left, top right and top center slices &#45;&#45;&amp;gt;		&amp;lt;div class=&amp;quot;content&#45;top&#45;left&amp;quot;&amp;gt;&amp;lt;/div&amp;gt;		&amp;lt;div class=&amp;quot;content&#45;top&#45;right&amp;quot;&amp;gt;&amp;lt;/div&amp;gt;		&amp;lt;!&#45;&#45; notice the top center or top repeat slice needs to be at the end &#45;&#45;&amp;gt;		&amp;lt;div class=&amp;quot;content&#45;top&#45;repeat&amp;quot;&amp;gt;&amp;lt;/div&amp;gt;	&amp;lt;/div&amp;gt;	&amp;lt;div class=&amp;quot;content&#45;repeat&amp;quot;&amp;gt;		&amp;lt;!&#45;&#45; this is just a container for the vertically scaling part &#45; you could leave it out, but it seems cleaner to me &#45;&#45;&amp;gt;		&amp;lt;div class=&amp;quot;content&#45;repeat&#45;left&amp;quot;&amp;gt;			&amp;lt;div class=&amp;quot;content&#45;repeat&#45;right&amp;quot;&amp;gt;				&amp;lt;!&#45;&#45; in this case the left center and right center must be nested and must contain the actual content div, so they automatically scale with it &#45;&#45;&amp;gt;				&amp;lt;div class=&amp;quot;content&#45;repeat&#45;center&amp;quot;&amp;gt;					&amp;lt;!&#45;&#45; /** this is where you&#39;d place the content **/ &#45;&#45;&amp;gt;					&amp;lt;div class=&amp;quot;content&#45;repeat&#45;clearfix&amp;quot;&amp;gt;&amp;lt;!&#45;&#45; this will prevent problems with floated stuff within the content &#45;&#45;&amp;gt;&amp;lt;/div&amp;gt;				&amp;lt;/div&amp;gt;			&amp;lt;/div&amp;gt;		&amp;lt;/div&amp;gt;	&amp;lt;/div&amp;gt;	&amp;lt;div class=&amp;quot;content&#45;bottom&amp;quot;&amp;gt;		&amp;lt;!&#45;&#45; this contains the bottom left, bottom right and bottom center slices &#45;&#45;&amp;gt;		&amp;lt;div class=&amp;quot;content&#45;bottom&#45;left&amp;quot;&amp;gt;&amp;lt;/div&amp;gt;		&amp;lt;div class=&amp;quot;content&#45;bottom&#45;right&amp;quot;&amp;gt;&amp;lt;/div&amp;gt;		&amp;lt;!&#45;&#45; as above the bottom center div must be after the bottom left and right divs &#45;&#45;&amp;gt;		&amp;lt;div class=&amp;quot;content&#45;bottom&#45;repeat&amp;quot;&amp;gt;&amp;lt;/div&amp;gt;	&amp;lt;/div&amp;gt;&amp;lt;/div&amp;gt;&amp;nbsp;
			</description>
			<dc:subject>
				Web Development
			</dc:subject>
			<dc:date>
				2008-05-15T14:59:19+00:00
			</dc:date>
		</item>
		
		<item>
			<title>
				Up or Out: employees in IT companies quitting
			</title>
			<link>
				http://www.neverpanic.de/blog/single/up-or-out-employees-in-it-companies-quitting/
			</link>
			<guid>
				http://www.neverpanic.de/blog/single/up-or-out-employees-in-it-companies-quitting/#When:19:14:00Z
			</guid>
			<description>
				I just read an article in Alex&#8217; Soapbox on IT professionals and their motives to quit a job at a certain company. Having just finished a 6&#45;month&#45;internship at a local new media agency this article came right on time. I don&#8217;t want to judge neither the article nor the company I&#8217;ve been working at, but the theory mentioned in “Up or Out: Solving the IT turnover crisis” is absolutely worth reading if you haven&#8217;t already.
Personally I think Alex Papadimoulis&#8217; findings are a bit too black&#45;and&#45;white (as he admits near the end of the article: “Obviously, this article has painted some incredibly broad strokes, the largest being the stark dichotomy between skilled and unskilled developers, and the lack of distinction between organizations.”), but they are true nonetheless.
			</description>
			<dc:subject>
				Web Development
			</dc:subject>
			<dc:date>
				2008-04-30T19:14:00+00:00
			</dc:date>
		</item>
		
		<item>
			<title>
				The smaller the error the bigger the bug
			</title>
			<link>
				http://www.neverpanic.de/blog/single/the-smaller-the-error-the-bigger-the-bug/
			</link>
			<guid>
				http://www.neverpanic.de/blog/single/the-smaller-the-error-the-bigger-the-bug/#When:10:05:52Z
			</guid>
			<description>
				Bug tracking in software development can be a pain &#45; especially when there doesn&#8217;t seem to be any logic behind the bug.
So we had that navigation tree at work consisting out of two category levels, for simplicity let&#8217;s call them Level&#45;1&#45;Category and Level&#45;2&#45;Category. Level&#45;1&#45;Categories could contain other Level&#45;1&#45;Categories and Level&#45;2&#45;Categories, while Level&#45;2&#45;Categories could only contain Level&#45;2&#45;Categories. The navigation was built, caching was implemented, everything seemed fine from a logic viewpoint, however it behaved weird where it would sometimes display the Level&#45;2&#45;Categories in a particular Level&#45;1&#45;Category and sometimes not or in different order.
When we finally found the bug (after hours of debugging) the scales fell off our eyes:
&amp;lt;?php $cacheID = md5&#40;$level1Cat&#45;&amp;gt;id.$level2Cat&#45;&amp;gt;id&#41;; ?&amp;gt;
Now imagine what happened when you had a $level1Cat with ID 1 and a $level2Cat with ID 12, that would write it&#8217;s cache to md5(&#8216;112&#8217;); &#45; and trying to open a $level1Cat with ID 11 and a $level2Cat with ID 2 it would read the cache md5(&#8216;112&#8217;);. Unfortunately these classes did have the same interface, so no errors were thrown.
Changing the code to &amp;lt;?php $cacheID = md5&#40;$level1Cat&#45;&amp;gt;id.&#39;&#45;&#39;.$level2Cat&#45;&amp;gt;id&#41;; ?&amp;gt; resolved the bug and finally fired the closing time&#45;event for us.
			</description>
			<dc:subject>
				Web Development
			</dc:subject>
			<dc:date>
				2008-04-26T10:05:52+00:00
			</dc:date>
		</item>
		
		<item>
			<title>
				I have a dream&#8230;
			</title>
			<link>
				http://www.neverpanic.de/blog/single/i-have-a-dream/
			</link>
			<guid>
				http://www.neverpanic.de/blog/single/i-have-a-dream/#When:21:16:00Z
			</guid>
			<description>
				Ads &#45; That&#8217;s how you make money on the Internet. And since everybody wants money ads are spilled all over the Internet. What if&#8230;
Semantics is the reason why HTML exists: there are elements to tag headlines, tables, lists and countless other types of text to give the text a structure. I know ad providers wouldn&#8217;t even consider this, since it would make their ads easily blockable by ad&#45;blockers like Adblock Plus for Firefox, but seeing German sites are required by law to mark advertisements and make them stick out of the text flow why isn&#8217;t there an &amp;lt;ad&amp;gt; element (or at least one on the to&#45;do&#45;list for HTML5) to make that tag machine&#45;readable?
The only way to make ad providers use such an element would probably to require it by law &#45; and given the expertise the German government has recently shown in laws concerning information technology and the Internet years will be passing by without an &amp;lt;ad&amp;gt; element *sigh*
			</description>
			<dc:subject>
				Web Development
			</dc:subject>
			<dc:date>
				2008-03-31T21:16:00+00:00
			</dc:date>
		</item>
		
	</channel>
</rss>
