Thursday, February 9, 2017

Rails 5 web console and Docker dev env.

If you use Rails 5 along docker for your development environment you may have seen something like this within your logs :

Cannot render console from 172.17.0.x! Allowed networks:, ::1,

To allow your current docker network to access the web console you should add some discovery logic within your config/environments/development.rb file.
require 'socket'
require 'ipaddr'

config.web_console.whitelisted_ips = Socket.ip_address_list.reduce([]) do |res, addrinfo|
  addrinfo.ipv4? ? res << : res

Wednesday, February 18, 2015

DIY Infrared Head Tracking

I just built my own Head tracking device, it works like a charm, even with high luminosity on the white wall behind me !

Here is the path i followed :
  • Will use 3 point tracking since it gives good performances and low latency.
  • Will use infrared lights spots ( to be able to track in daylight )
  • Will use my webcam with IR filters to track spots.
  • Will use FaceTrackNoIR as it provides most usefull protocols.

Bills of materials

  • 3 x OSRAM - LD271 - IR 5MM 950N
  • 1 x 5.6 ohm 1/4W Resistor ( Green Blue Gold)
  • 1 x USB cable
  • 1 x USB > AC Converter ( Optional )

Electric Array

The electric array will look like this :
    +----|>|----|>|----|>|---/\/\/----+  R = 5.6 ohms

Weld in series the LED and the Resistor.
Then weld circuit to USB cable.

3 points home made head clip

You need a chassis to mount led, It should be an 'L' shape. See picture below.

I used a thin metal bar that I forged to my own taste.

IR Receiver

Next IR receiver: I used a Webcam with 5 pieces of negative photograpric film as IR filter. ( More film allow better filtering )


I've mounted the whole on my headset , that's all, a full functionnal head tracking device < 10 €

Next I'll build my DIY Virtual Reality headset …

Monday, August 4, 2014

Rmagick and Archlinux imagemagick HDRI enabled package.

Earlier versions of Rmagick will not compile with newer version of imagemagick with --enable-hdri compilaton flag.

The first recommandation would be to upgrade your library to the newest version (=< 2.13.3), but for some reasons sometime it is not possible yet.

If you are Archlinux user you'll probably end with an error message like :

Can't install RMagick 2.13.2.
RMagick does not work when ImageMagick is configured for High Dynamic Range Images.
Don't use the --enable-hdri option when configuring ImageMagick.

If you google a bit, you'll find the imagemagick-no-hdri AUR package.
Unfortunately is does not seem up to date.

I've tweak the PKGBUILD in order to bring a newer version of imagemagick-no-hdri

Installation :

Remove the base package :

sudo pacman -Rdd imagemagick

Download and build my no-hdri version :



Install the package :

sudo packman -U imagemagick-no-hdri-

Edit : I've made an Aurball, the new package is now available on AUR 

Thursday, June 19, 2014

OpenERP xmlrpc API for Ruby : Bintje

Few month ago, I released Bintje, a minimal interface to OpenERP's xmlrpc API:

It is available on github, as a ruby gem, and can be included in the ruby class of your choice ( as a Rails model for example ).

It still an early version, but is usable in production.

Why Bintje ?

So why it is named Bintje ? Because it is part of a bigger piece of architecture called "Barakafrites" which in french means this :
Yes, they sell "french fries".
Bintje is potato variety used for french fries (And have it's own dedicated character).

Now you clearly understand why this project is called Bintje ... ( Just kidding ... )

Using Bintje

First it needs OpenERP / OpenObject backend address, an example setup : Then create a Ruby Class, it could be Rails model if you want : This class inherits the CRUD basic methods, and have an example of custom method declaration.
You first need to include the module, once done your class will inherit module's class methods ( see documentation ), and gain the `open_object_model` class variable which is inferred from your ruby object name, but can be overriden as you can see in this gist above. And now you can query the OpenObject Backend and obtain a BackendResponse Object ( see documentation ) Yes it is so simple ... To get more methods, have a look to the documentation : The behaviour specifications extracted from Rspec tests :

Tuesday, December 3, 2013

Accessing AngularJs Scope from your browser console.

Times to times, one needs to interact with AngularJs at runtime. ( for debugging purpose ... )

My Teamates frequently ask me how do I ... check this directive isolated scope structure for example ...

I think the simple answer is :

Select the directive's element for inspection in your debugger. In console you can select it using chrome's helper : $0 , which is the current selected element.
And then :


Wednesday, October 16, 2013

Advanced Rails 4 Authorization with Pundit.

Here is a good illustration of the underlying power of Voidness...

Pundit is a realy simple Ruby Gem, that does nothing more that you could have done yourself. Here is the power !

When updating to Rails 4 in it's early days, you had no compliant authorization solutions.
Ryan Bates's Cancan was the most used due to it's flexibility and simplicity, but it is not Rails 4 compliant, and brings too much magic for me.
But is there something more flexible and simple than the Void ? ( OK, ... I stop with VoidMadness ... )

For one of my current job, I started to build a software that needs flexible right management. ( And also a People relations graph, but this is for another post ).
The requirement are :
* Fined grained activities( or action ) access control
* Fields read / write access control
* Flexible Role based system that allow role inheritance

In this article I'll address only the first requirement, the second will be explained in the next article, while the last one does not need to be since it is obvious.

Let introduce the base models

It is a basic pattern. I don't need to explain it. User can have many Roles and Role may be filled by many Users.
For each Role, I want to allow some activities. (IE: For accountant : create bill, update payment. For Team Manager : Plan Task for a member of his/her Team )

About Pundit

Pundit set some helpers to :
* Check Policy for a given user on a given object( it is not restricted to ActiveRecord::Base instances ).
* Describe Policy in Ruby Class
* Enforce use of Policy in your controllers
* Bring syntactic sugar in you Rspec tests.

I recommend you to read Pundit's before going further, since I won't explain what is already explained there.

The Activities

If found an interesting post from Derick Bailey about authorization patterns, putting words on some of my thoughts. Reading this is not required to go further, but I recommend to.

The activities is not a finite collection. In fact, from my point of view, activities are defined by the following set :  All methods directly exposed to user except.

In the Ruby On Rails world as in many MVC frameworks, this mean all the methods available on controllers. (Authentication Activities is a Subset of this set, that has particularity to be allowed to all users.)

I do not want to have a collection of activities to maintain. I do not want to reify them through an Postgres table or a flat file.
I want that default behavior is to deny. This behavior should be overridden if you have the appropriate role.

Since I'am building a REST API, I want to scope each activity on his resource.

The Person resource expose through API  it's CRUD methods (We will not use HTTP verbs to authorized. I do not find clever to bind Authorization on the Transfer Protocol ).

I see Person activities as the following set :


The pattern is dead simple and interpolate as #{resource}:#{activity}

With all those postulates, I decided to store activities on Role through the Postgres Array Type. It will be an array of strings.

Meta-programming Right Management

Then I just had to teach Pundit the way I wan't it to authorize activities :

This may need some explanations :
This is the ApplicationPolicy, it will be inherited by each resource, allowing to extend/ override Policies by resources.

I replaced the bulk Pundits question marked CRUD methods with some meta-programming to avoid code duplication, and tedious declarations.

Line 9 : It recovers allowed activities for the current user.

Line 13 : The current activity against which we authorize is inferred from the object's class name ( the word record is used but i plan to change this, since record mean database record for me, but it could be any object ).

Line 17 : The (in)famous Ruby's method missing !
Any unknown method ending with a question mark in the current scope will be interpreted as a check access right for this activity method.
Each time we want to check access right for an activity, it will lookup the allowed activities for the current user roles ...

This is the way the most of work is done, with a few ruby lines of code.
To manage rights, all we need is to add the activity to user role, what could be more simple ?

The person resource

Since all the work is done by the ApplicationPolicy class, the PersonPolicy class is just there to include and override behaviors.

The application Controller

Nothing extravagant here. Just read comments. Note that when the right are insufficient, It just return a 403 HTTP Header, it is enough for a REST API and is the way I understand the RFC 2616.

The Rspec Tests. ( Behaviour Driven ? )

Just to show how it works and as proof , this is a dumb spec/test for the dumb person example.

The test ouput the following :

Easy :)

In a further post i'll detail how to apply read/write mask on object.

Friday, August 16, 2013


Sorry, no geek blog post for a while.
Holidays are dedicated to :

  • Family 
  • Wakebording 
  • KiteSurfing
  • Diving and snorkeling 

 I've found a nice spot, a cable wakepark between France and Spain : TSJ Saint Jean Pla de Corts

The full album is here