davepeck.org http://davepeck.org atomkraft and atomkraft accessories Mon, 14 May 2012 16:54:46 PDT en hourly 1 Serving Python Web Apps http://davepeck.org/2012/05/14/serving-python-web-apps/ Mon, 14 May 2012 12:46:54 PDT Dave Peck http://davepeck.org/2012/05/14/serving-python-web-apps/ Newcomers to the world of Python are faced with a bewildering array of options for developing and serving their web apps. Python’s official documentation does little to cut through the clutter.

Enter Graham Dumpleton. I’ve never met him, but he appears to be the Python community’s unsung web hosting ninja. I highly recommend reading his recent Hosting Python Web Apps slide deck — it cuts through all the clutter. (You can find video of the talk on Youtube, too.)

The bottom line:

  • There are approximately a million different Python web frameworks. All of them speak WSGI. Choose one. For today, at least, use WSGI rather than FASTCGI/uWSGI/what not.

  • The most common architecture for serving python web apps is Apache + mod_wsgi running in Daemon Mode. Apache should be used to serve static content.

  • The second most common architecutre is nginx + gunicorn + supervisor. Nginx should serve static content.

I’ll go further and say that, while it’s fun to explore the vast world of web frameworks, it’s probably not necessary. Start with Django 1.4 and if it really doesn’t work for you, look further afield. Also: Apache is a rock-solid option — gunicorn feels like the flavor du jour to me. Properly configured, Apache runs very nicely even on memory-starved VPS instances.

]]>
Kibitzing Samurai http://davepeck.org/2012/04/30/samurais-and-ideas/ Mon, 30 Apr 2012 13:17:37 PDT Dave Peck http://davepeck.org/2012/04/30/samurais-and-ideas/ In the past few months, I’ve had the pleasure of working with several friends on projects they’re thinking about. I’m merely a glorified kibitzer, but the opportunity to think through a variety of apps and business models has proven immensely educational.

From past experience, I know this process can get a little torqued. Feedback is taken personally that shouldn’t be. When it comes to this, here’s what I say:

I respect you immensely, otherwise I wouldn’t work with you. But I have no respect for ideas. Not yours, not mine, not anybody’s. Think of me as a samurai that cuts down ideas no matter who holds them dear. The ideas that manage to survive? Those ideas I have respect for.

This notion informs all the product work that I do. It causes an immense amount of pain. But I believe it leads to better products. After all, ideas are worth little except to the extent that they inform and guide our execution. The wrong ideas guide us nowhere.

]]>
AWS: Acoustica (♫) <span class="arrow">→</span> http://www.amazon.com/gp/product/B004FX8IDE/ref=as_li_ss_tl?ie=UTF8&tag=davepeckorg-20&linkCode=as2&camp=1789&creative=390957&creativeASIN=B004FX8IDE Fri, 27 Apr 2012 11:46:12 PDT Dave Peck http://davepeck.org/2012/04/27/alarm-will-sound-acoustica/ Last night’s Alarm Will Sound concert at Town Hall Seattle was epic. They performed several tracks from Acoustica, their album of Aphex Twin covers. It’s amazing what a 20-piece classical music ensemble can pull off when they are artistically fearless.

∞ - Permalink

]]>
The SpaceX cost record <span class="arrow">→</span> http://www.spacex.com/usa.php Wed, 18 Apr 2012 13:45:05 PDT Dave Peck http://davepeck.org/2012/04/18/the-spacex-cost-record/ Here’s to the crazy ones.

∞ - Permalink

]]>
The latest from Cloakland <span class="arrow">→</span> http://blog.getcloak.com/2012/04/02/the-latest-from-cloakland/ Mon, 02 Apr 2012 15:04:19 PDT Dave Peck http://davepeck.org/2012/04/02/the-latest-from-cloakland/ Updates and goings on in the world of Cloak, my primary project-of-the-moment.

∞ - Permalink

]]>
24/192 Music Downloads <span class="arrow">→</span> http://people.xiph.org/~xiphmont/demo/neil-young.html Mon, 05 Mar 2012 16:42:16 PST Dave Peck http://davepeck.org/2012/03/05/24-192-music-downloads/ This, a thousand times.

There is no reason to distribute 24-bit, 192kHz music to listeners. No sound system, and no ear, could ever benefit. There are reasons, in ultra-high-end recording sessions, to use a 24/192 workflow.

∞ - Permalink

]]>
TODO Review? http://davepeck.org/2012/03/04/todo-review/ Sun, 04 Mar 2012 15:53:25 PST Dave Peck http://davepeck.org/2012/03/04/todo-review/ Does anyone know of a review that compares Things, OmniFocus, Flow, Sprintly, Asana, Trello, Pivotal Tracker, Basecamp, Clear, Producteev, GitHub Issues, Firetask, Remember the Milk, Toodledo, Tadalist, 2Do, reQall, Put Things Off, Nubi Do, Orchestra, Do.com, and Google Tasks?

Because I sure could use one. ;–)

]]>
Why does nobody use SSL client certificates? <span class="arrow">→</span> http://pilif.github.com/2008/05/why-is-nobody-using-ssl-client-certificates/ Fri, 02 Mar 2012 13:21:20 PST Dave Peck http://davepeck.org/2012/03/02/why-is-nobody-using-ssl-client-certificates/ We we started thinking about Cloak, we realized that users don’t “do the right security things” because, at least today, security interfaces (when they exist) are confusing and obscure. By bringing beautiful design to the tough technical problem of network security, we figured we could make true security available to a much broader audience.

SSL client certificates are another great example of low-hanging security design fruit.

∞ - Permalink

]]>
Destroy All Software Screencasts <span class="arrow">→</span> https://www.destroyallsoftware.com/screencasts Thu, 23 Feb 2012 11:19:22 PST Dave Peck http://davepeck.org/2012/02/23/destroy-all-software-screencasts/ When I build software, I mostly think about the problem I want to solve and the experience I want my users to have. This is to say: I tend to pay less attention to the nuts and bolts of writing great code.

Enter Gary Bernhardt’s excellent Destroy All Software Screencasts. For $9/month, I get a wealth of deep thinking about the art of software development, delivered in weekly bite-sized chunks.

A good example is DAS’s four-part series on testing untested software. Gary takes a rails app he’s never seen before and focuses on writing tests for a single controller method. In some sense, tests are dual to the code they’re testing. However, when testing in isolation, tests can often reveal structure and dependencies that aren’t readily apparent in the code itself. Gary uses the tests he writes to motivate a refactoring of the original controller; the series ends with both elegant and well-tested code.

∞ - Permalink

]]>
See you at PyCon! <span class="arrow">→</span> http://blog.getcloak.com/2012/02/21/see-you-at-pycon/ Tue, 21 Feb 2012 15:30:03 PST Dave Peck http://davepeck.org/2012/02/21/see-you-at-pycon/ Cloak was selected as “Judge’s Pick” from a large field of great Python-using startups. We’ll be presenting at PyCon’s Startup Row on March 9th. We’re excited to be there — if you’re around, stop by and say hi!

∞ - Permalink

]]>
Mountain Lion http://davepeck.org/2012/02/16/mountain-lion/ Thu, 16 Feb 2012 13:41:33 PST Dave Peck http://davepeck.org/2012/02/16/mountain-lion/ Today’s surprise announcement of OS X 10.8 is welcome news to the Apple developer community. It’s a clear signal that Apple continues to see the Mac as a core asset. Better: the new annual release cycle shows that Apple has resolved long-standing engineering bottlenecks.

There’s a lot of great press today; it’s worth reading both Daring Fireball’s behind-the-scenes take and Macworld’s extensive coverage.

Mountain Lion is an unsurprising but welcome progression from Lion. It brings Apple one step closer to having a truly unified ecosystem across all its devices. We get Messages and Reminders today; will it be surprising when iTunes is broken into Music, Video, and Store apps tomorrow?

There are some important considerations for indie devs. For starters, we’re going to have to revisit our platform support strategies. At the moment, perhaps 30% of my users are still on Snow Leopard. When Mountain Lion ships this summer, my gut feeling is that Snow Leopard users will stay put, while Lion users will probably quickly upgrade. It wouldn’t surprise me to see a 65% Mountain Lion/5% Lion/30% Snow Leopard distribution, although time will tell. For the foreseeable future, I plan to support the latest OS X along with the previous two releases.

Mountain Lion gives developers several reasons to revisit their relationship with the App Store. In addition to being a welcome new security feature, Gatekeeper also signals Apple’s commitment to supporting apps not acquired through the App Store. This is great news for my latest app, Cloak, which fundamentally cannot meet the new app sandbox requirements. On the other hand, Mountain Lion introduces several new APIs, like iCloud Storage, that are only available to App Store apps. I expect this trend to continue. Today these APIs are a carrot; tomorrow they could become a stick. Developers who want to keep their apps on the cutting edge will almost certainly have to buy into the App Store ecosystem. Developers contemplating entirely new apps would do well to make sure they can live in that ecosystem.

✝ Gatekeeper is actually present in OS X 10.7.3, but there is no GUI exposure. In addition, the latest XCode for Lion supports acquiring Developer ID Certificates, a new kind of certificate for apps that aren’t targeting the App Store. To turn on Gatekeeper in Lion, use sudo spctl --enable; the spctl man page has more details. One last piece of the puzzle: Gatekeeper only applies to quarantined files. The easiest way I know to quarantine a binary is to mail it to yourself with Mail.app.

]]>
OK Go 'Needing/Getting' Video <span class="arrow">→</span> http://okgo.net/2012/02/06/needinggetting-official-video/ Thu, 09 Feb 2012 17:27:01 PST Dave Peck http://davepeck.org/2012/02/09/ok-go-needing-getting/ They outdo themselves yet again. I assume their next collaboration will be with Burt Rutan aboard SpaceShipOne?

∞ - Permalink

]]>
Girl Walk // All Day <span class="arrow">→</span> http://girlwalkallday.com/ Thu, 09 Feb 2012 16:53:23 PST Dave Peck http://davepeck.org/2012/02/09/girl-walk-all-day/ The notorious Jesse Chan-Norris sent this my way. It shows in Seattle this weekend. Mind still blown.

∞ - Permalink

]]>
Fujiya &amp; Miyagi: Transparent Things (♫) <span class="arrow">→</span> http://www.amazon.com/gp/product/B000YMWE12/ref=as_li_ss_tl?ie=UTF8&tag=davepeckorg-20&linkCode=as2&camp=1789&creative=390957&creativeASIN=B000YMWE12 Fri, 03 Feb 2012 11:55:44 PST Dave Peck http://davepeck.org/2012/02/03/fujiya-miyagi-transparent-things/ When you need excellent Krautrock, Fujiya & Miyagi’s Transparent Things delivers. Never fear: they’re only pretending to be Japanese.

∞ - Permalink

]]>
The seedy side of software http://davepeck.org/2012/01/28/the-seedy-side-of-software/ Sat, 28 Jan 2012 14:00:34 PST Dave Peck http://davepeck.org/2012/01/28/the-seedy-side-of-software/ I’m getting older. Booth babes, apparently, are not.

For the most part, MacWorld Expo was family friendly; there were only a few booths where flesh was more present than product. The most egregious of these was run by ZeoBit, the makers of MacKeeper.

MacKeeper has always struck me as seedy. It’s billed as a bundle of essential privacy and security tools; I’m skeptical of its merits. Much of the bundle seems to duplicate standard OS X features: why do you need Internet Security when Safari already has anti-phishing, or Backup when Lion already has Time Machine? ZeoBit would have you believe that, sold separately, their apps are worth over a thousand dollars. Thankfully, you can have it all at the low, low price of $38.95.

ZeoBit engages in scummy marketing tactics, many of which were pioneered by malware authors. They purchase dubious ad space on low-rent web property — the kind of property a naïve surfer might be unlucky enough to visit. They work hard to break pop-up blockers. They try to make their ads look like content or native security warnings. At expos, they apparently use a different kind of pop-up to draw attention.

I had the pleasure of meeting several above-board security and privacy companies at MacWorld. Guys like SecureMac are out there fighting the good fight. With Cloak, we’ve tried to raise the bar on several fronts. We’ve tried to make it easy and elegant to stay safe. Moreover, we’ve tried to be as open and transparent about what we do as possible. But MacKeeper? I don’t think I trust them. Not one bit.

✝ I feel dirty mentioning this product by name; I won’t honor it with a link. If there were a hypertext equivalent of “unasking the question,” I’d unlink the link in a hurry.

]]>
Hard drive shortages impact GPU sales? <span class="arrow">→</span> http://daringfireball.net/linked/2012/01/25/nvidia Wed, 25 Jan 2012 18:04:09 PST Dave Peck http://davepeck.org/2012/01/25/hard-drive-shortages-impact-gpu-sales/ John Gruber is skeptical:

Sure, that’s the explanation — not that demand for Windows PCs is drying up. I’m surprised Nvidia couldn’t make up the difference with Tegra 2 chipsets that powering all those best sellers on the “non-iPad tablets” list.

Skepticism is understandable, but I actually suspect that Thailand’s flooding is the explanation. The PC hardware ecosystem is tightly coupled; is it so hard to believe that massive shortages in supply for any key component could lead to decreased demand across the ecosystem? It will probably take several more quarters before anyone can say for sure.

∞ - Permalink

]]>
Internet Regulation and the Economics of Piracy <span class="arrow">→</span> http://www.cato-at-liberty.org/internet-regulation-the-economics-of-piracy/ Sun, 22 Jan 2012 18:37:18 PST Dave Peck http://davepeck.org/2012/01/22/internet-regulation-and-the-economics-of-piracy/ Ever since Tim O'Reilly said that “piracy is not a problem,” I’ve been looking for evidence to support (or refute) his claim. In his latest article, Julian Sanchez (a former reporter for Ars Technica) savages the belief that piracy impacts jobs or the bottom line:

the data we do have doesn’t remotely seem to justify the […] rhetoric that now appears to be obligatory on the Hill.

Sanchez makes several important points. To focus the discussion, Sanchez first notes that even if piracy were a huge economic problem, SOPA and PIPA would do nothing to fix it. He then moves on to the meat of the matter, which is threefold.

First, the MPAA and RIAA have claimed that piracy costs America 750,000 jobs and between $200 and $250 billion per year. This is simply wrong. As Sanchez examined in detail several years ago, these numbers appear to have originated in an ancient Forbes article about physical piracy and have since then cropped up in a number of discussions about internet piracy where they do not apply. The MPAA recently downsized their figures to $58 billion in annual damage; Sanchez investigated those claims and found them wanting, too.

Second, Sanchez targets an assumption that underlies most estimates of damage: namely, that piracy always leads to lost revenue. This is almost certainly false — many pirates will never pay for their ill-gotten gains — but for the sake of argument, Sanchez assumes that it’s true. Yet, revenue in the music and movie industries has actually outpaced the economy as a whole during the recession. In a world without piracy, would these industries truly have done $58 billion better still?

Finally, Sanchez reminds us that the constitution enshrines copyright as a means to promote the useful arts, not to increase corporate revenues. A better way to measure piracy’s impact is to look at whether it has reduced artistic output. At first blush, it seems the answer is no: accounting for the recession, there are more new movies and albums released today than ever before. (That said, more independent studies should be done on this point.)

Sanchez makes many other important and subtle points. I highly recommend reading all of his recent articles on the issue.

∞ - Permalink

]]>
Directory Settings plugin for Sublime Text 2 <span class="arrow">→</span> https://github.com/davepeck/DirectorySettings Thu, 19 Jan 2012 15:41:21 PST Dave Peck http://davepeck.org/2012/01/19/directory-settings-plugin-for-sublime-text-2/ I’ve been toying with Sublime Text lately; DirectorySettings is my first plugin. It lets you have per-directory preferences. It keeps me sane while porting apps: old code gets the Solarized Dark color scheme; new code gets my default theme. The plugin should be in Package Control shortly.

∞ - Permalink

]]>
Bissen: Tranceatlantic (♫) <span class="arrow">→</span> http://itunes.apple.com/us/podcast/bissen-tranceatlantic-podcast/id298996039 Tue, 17 Jan 2012 17:33:38 PST Dave Peck http://davepeck.org/2012/01/17/bissen-tranceatlantic/ DJ Bissen produces unrelenting four-on-the-floor techno. Tranceatlantic is a fantastic podcast of his and others' unrelenting four-on-the-floor techno. When the moons align in proper harmony, I find this to be most excellent coder music. (The moons, alas, are not always harmonious.)

∞ - Permalink

]]>
Amanda Peyton On PIPA <span class="arrow">→</span> http://amandapeyton.com/blog/2012/01/my-call-to-senator-schumers-office-on-pipa-its-so-much-worse-than-i-thought/ Fri, 13 Jan 2012 15:41:17 PST Dave Peck http://davepeck.org/2012/01/13/amanda-peyton-on-pipa/ And let’s not forget SOPA’s Senatorial brother, PIPA. Says Amanda Peyton:

It was my impression that PIPA was mostly written by well-funded lobbyists and that there aren’t that many Joe Six-Packs who truly support it. But surely they must be out there!

Amanda’s entire post is distressing and worth reading, but I’d like to address this one point.

They’re not “Joe Six-Packs,” but I do have a number of friends in the music industry. They feed their families with the music they write. I think it’s safe to say that they are all in favor of SOPA and PIPA.

My music friends believe (as I do) that there is a problem with piracy that needs to be solved. Where we appear to differ, however, is in believing that even an imperfect bill is preferable to no bill. Here I simply cannot agree. The SOPA and PIPA aren’t imperfect; they’re dangerous. Further, it’s unclear that any legislation will truly “fix” piracy; certainly the DMCA didn’t. Try as I might to convince them otherwise, I think my friends are fairly stuck in thinking that “something needs to be done.” From the congressional perspective, if you couple the mentality of “something needs to be done” with “lobbyists are lining my pockets,” it’s easy to see why these bills are likely to pass.

∞ - Permalink

]]>