Search This Blog

Tuesday, September 04, 2007

Office Open XML trips up; Microsoft is brilliant with NAC, expert says

Network World

Microsoft News Alert




Network World's Microsoft News Alert, 09/04/07

* TOP PICK OF THE WEEK:

OOXML fails ISO vote
Microsoft has failed in its attempt to have its Office Open XML document format fast-tracked to become a standard by the International Organization for Standardization. A proposal must win two votes in order to gain ISO approval. It must garner the support of two-thirds of voting national standards bodies that participated in work on the proposal and then it must gain the yes vote from three-quarters of all voting members. The controversial OOXML failed on both counts. See also: The blogosphere speaks out on OOXML; Brazil votes down OOXML

Plus:

Network World Security Buyers Guide

Find the right security products for your enterprise - fast. From anti-spam to wireless LAN security, our Buyers Guides have detailed information on hundreds of products in more than 20 categories. With the side-by-side comparison tool you can evaluate product features to make the best decision for your enterprise.

Click here to go to the Security Buyers Guide now.

OOXML battle won’t be settled with Sept. 2 vote

Microsoft is honest and brilliant with NAC, expert says

FSF to Microsoft: Follow the GPLv3 or else!

Microsoft hammers Symantec on price

* FROM OUR BLOGGERS:

Chris Dalby – The Essential Microsoft Toolkit
Tafiti Search Engine
New Microsoft Subnet blogger, Chris Dalby, will be reviewing Microsoft technology. He’s just tackled Tafiti, Microsoft’s new search engine tool. Dalby isn’t a pushover, but he’s loving Tafiti as it searches in an “almost 3D way,” he says. “Dare I say it, I wouldn't mind seeing this used with the Google search engine.”

John Obeto – Notes from a Microsoft fan
Microsoft and Cisco
Are they friends or competitors? Obeto says competitors, but they are absolutely competing the right way.

Author expert Micheal Noel’s blog
Securing SharePoint Sites with ISA Server 2006
Noel writes that SharePoint servers can be vulnerable to attack. "A surprisingly good reverse proxy solution for SharePoint happens to be Microsoft’s Internet Security and Acceleration (ISA) Server 2006," he says.

Author expert Colin Spence's blog
Choosing between Windows SharePoint Services 3.0 and SharePoint Server 2007
Should you be using Windows SharePoint Services 3.0 (WSS 3.0) or SharePoint Server 2007? Spence offers a checklist for choosing between them. 

Collaboration expert Sue Hanley's blog
What were they thinking? Unraveling the mysteries of SharePoint Search: Created By and Last Modified By
Hanley offers an update on her "ongoing mission" to figure out the user interface for MOSS 2007 search. She asks if the designers really intended to make it impossible to find a document if all you know is the name of the last person who modified it?  

* HOT DISCUSSIONS AMONG CISCO SUBNET READERS:

Microsoft Vista SP1 beta on the way

Linux, splinix – Microsoft still owns the server market

LucidTouch screen, very touchy feely

Microsoft attacks Cisco with new VoIP server

* FREEBIES, GIVEAWAYS AND OTHER NOTABLES:

Enter to win one of 15 copies of Why Software Sucks... And What You Can Do About It
Read a free chapter of Why Software Sucks
Check out Microsoft Subnet’s library for more free chapters and special discounts on best-selling books.
Visit the Microsoft Subnet page for daily news, opinions, hot topics.

TODAY'S MOST-READ STORIES:

1. IBM stores data on an atom
2. Cisco plans to blend two NAC schemes
3. Cisco playing network defense
4. Microsoft blames human error for glitch
5. Airline puts Linux PC in every seat
6. MPLS proposal spawns IETF, ITU turf war
7. Citrix stock remains on Nasdaq pending review
8. Notes from OPNETWORK 2007
9. Hacks hit embassy, government e-mail worldwide
10. Psst... Wanna buy a data center?

MOST-READ REVIEW:

IBM Lotus Sametime tops corporate IM platform review


Contact the author:

Senior Editor John Fontana covers Microsoft for Network World.

Julie Bort edits Microsoft Subnet

Microsoft Subnet: The independent voice of Microsoft customers



BONUS FEATURE

IT PRODUCT RESEARCH AT YOUR FINGERTIPS

Get detailed information on thousands of products, conduct side-by-side comparisons and read product test and review results with Network World’s IT Buyer’s Guides. Find the best solution faster than ever with over 100 distinct categories across the security, storage, management, wireless, infrastructure and convergence markets. Click here for details.


PRINT SUBSCRIPTIONS AVAILABLE
You've got the technology snapshot of your choice delivered to your inbox each day. Extend your knowledge with a print subscription to the Network World newsweekly, Apply here today.

International subscribers, click here.


SUBSCRIPTION SERVICES

To subscribe or unsubscribe to any Network World newsletter, change your e-mail address or contact us, click here.

This message was sent to: security.world@gmail.com. Please use this address when modifying your subscription.


Advertising information: Write to Associate Publisher Online Susan Cardoza

Network World, Inc., 118 Turnpike Road, Southborough, MA 01772

Copyright Network World, Inc., 2007

IBM Lotus Sametime tops corporate IM platform review

Network World

Product Test and Buyer's Guide




Product Test and Buyer's Guide, 09/04/07

IBM Lotus Sametime tops corporate IM platform review

By Barry Nance

Messaging has come a long way from the early days of rudimentary chat programs, the DOS and Windows "NET SEND" command and the Novell NetWare "SEND" command.

Network World VoIP and Convergence Buyer's Guide

Find the right products for your enterprise - fast. Our extensive database of detailed product information will quickly help you pinpoint the hardware or software you need to build out a converged voice and data network. With the side-by-side comparison tool you can evaluate product features and make the best decision for your enterprise.

Click here to go to the Buyer's Guide now.

The ideal corporate instant-messaging environment lets users communicate anything they choose, from simple typed messages to documents to video. It tells employees which colleagues are available for an impromptu meeting and which don't wish to be disturbed. The ideal IM environment offers impenetrable security that thwarts intrusion attempts, as well as IM-borne malware. It's nimble and responsive; intuitive to use and administer; and integrates seamlessly with other IM products and protocols, such as AOL Instant Messenger (AIM).

For the full story, please click here.

TODAY'S MOST-READ STORIES:

1. IBM stores data on an atom
2. Cisco plans to blend two NAC schemes
3. Cisco playing network defense
4. Microsoft blames human error for glitch
5. Airline puts Linux PC in every seat
6. MPLS proposal spawns IETF, ITU turf war
7. Citrix stock remains on Nasdaq pending review
8. Notes from OPNETWORK 2007
9. Hacks hit embassy, government e-mail worldwide
10. Psst... Wanna buy a data center?

MOST-READ REVIEW:

IBM Lotus Sametime tops corporate IM platform review


Contact the author:
Barry Nance is also a member of the Network World Lab Alliance, a cooperative of the premier reviewers in the network industry each bringing to bear years of practical experience on every review. For more Lab Alliance information, including what it takes to become a member, go to http://www.networkworld.com/alliance.

BONUS FEATURE

IT PRODUCT RESEARCH AT YOUR FINGERTIPS

Get detailed information on thousands of products, conduct side-by-side comparisons and read product test and review results with Network World’s IT Buyer’s Guides. Find the best solution faster than ever with over 100 distinct categories across the security, storage, management, wireless, infrastructure and convergence markets. Click here for details.


PRINT SUBSCRIPTIONS AVAILABLE
You've got the technology snapshot of your choice delivered to your inbox each day. Extend your knowledge with a print subscription to the Network World newsweekly, Apply here today.

International subscribers, click here.


SUBSCRIPTION SERVICES

To subscribe or unsubscribe to any Network World newsletter, change your e-mail address or contact us, click here.

This message was sent to: security.world@gmail.com. Please use this address when modifying your subscription.


Advertising information: Write to Associate Publisher Online Susan Cardoza

Network World, Inc., 118 Turnpike Road, Southborough, MA 01772

Copyright Network World, Inc., 2007

Why TCO is more important than you think; Outsourcing can save companies big bucks

Network World

Network/Systems Management News Alert




Network World's Network/Systems Management News Alert, 09/04/07

Why TCO is more important than you think, 08/30/07: When calculating total cost of ownership, the price you pay vendors is just the tip of the iceberg.

Outsourcing can save companies big bucks, report says, 08/31/07: Outsourcing noncore infrastructure management and application services can save companies between 12% and 17% on average, a Forrester Research report shows.

Pricey application performance problems, 09/03/07
Any network manager worth his or her mettle knows that when application performance degrades he or she is going to hear about it -- especially if a majority of companies report performance problems cost them more than $1 million per year.

Network World Storage Buyer's Guide

If you're in the market for anything from a tape library to an on-line backup service to a complete, drop-it-in-place SAN Solution, check out this Buyer's Guide with close to 200 products divided among specific, storage market segments.
Click here to research products now!

Contest challenges SysAdmins to sing, 08/30/07: SysAdmin of the Year contest spins out singing and song-writing contest for systems administrators as part of annual SysAdmin appreciation day.

Vendor beware: this CTO knows — and will exploit — your weaknesses, 08/30/07: IT buyers often have a hard time finding a bargain — but not Dave Leonard. Find out how this savvy CTO analyzes the motivations of vendors and gets them to slash prices.

Sysadmins spend too much time firefighting, 08/30/07: Forget the idea of keeping up with the latest technologies, IT managers at small and midsized businesses spend more time firefighting than they do planning new systems.

TODAY'S MOST-READ STORIES:

1. Microsoft blames human error for glitch
2. Airline puts Linux PC in every seat
3. MPLS proposal spawns IETF, ITU turf war
4. Psst... Wanna buy a data center?
5. Hacks hit embassy, government e-mail worldwide
6. Secrets of vendors' pricing plans
7. Bank of India site hacked
8. ISPs to rural U.S.: Live with dial-up
9. Notes from OPNETWORK 2007
10. How close is World War 3.0?

MOST E-MAILED ARTICLE:

Airline puts Linux PC in every seat


Contact the author:

Senior Editor Denise Dubie covers network and systems management for Network World.



BONUS FEATURE

IT PRODUCT RESEARCH AT YOUR FINGERTIPS

Get detailed information on thousands of products, conduct side-by-side comparisons and read product test and review results with Network World’s IT Buyer’s Guides. Find the best solution faster than ever with over 100 distinct categories across the security, storage, management, wireless, infrastructure and convergence markets. Click here for details.


PRINT SUBSCRIPTIONS AVAILABLE
You've got the technology snapshot of your choice delivered to your inbox each day. Extend your knowledge with a print subscription to the Network World newsweekly, Apply here today.

International subscribers, click here.


SUBSCRIPTION SERVICES

To subscribe or unsubscribe to any Network World newsletter, change your e-mail address or contact us, click here.

This message was sent to: security.world@gmail.com. Please use this address when modifying your subscription.


Advertising information: Write to Associate Publisher Online Susan Cardoza

Network World, Inc., 118 Turnpike Road, Southborough, MA 01772

Copyright Network World, Inc., 2007

Cisco plans to blend two NAC schemes; Waxing philosophical about failure modes

Network World

Security News Alert




Network World's Security News Alert, 09/04/07

Cisco plans to blend two NAC schemes, 08/31/07: Cisco is planning oneNAC, a hybrid of its NAC schemes that will address customer concerns about the complexity, maintenance and speed of the company’s current options.

Waxing philosophical about failure modes, 08/31/07: This week I discuss what I didn’t write, the realities of complex systems, the nature of full disclosure, and what the good guys and the bad guys know about failure modes. It’s heady and sexy in a geeky kind of way …

Cisco playing network defense, 09/03/07: Cisco is fleshing out its Self-Defending Network strategy for securing converged networks.

Comprehensive Network Access Control

The new wave of sophisticated crimeware not only targets specific companies, but it also targets desktops and laptops as backdoor entryways into business operations and resources. Network access control enables proper configuration and security of user endpoints before they are allowed access on the corporate network.
Click here to download this whitepaper

Expert finds 'stupid' vulnerabilities in Oracle 11g, 09/03/07: The latest version of Oracle Corp.'s flagship database offers better security than earlier versions, but development errors have left vulnerabilities that attackers can use to steal data, an expert warned Monday.

Podcast: Sleepless in the 'Twisted Lair', 08/31/07: Jason and Keith talk about Vista finally getting its first service pack, whether a 17-year-old deserves a new car for hacking the iPhone, and explore the reasons why Keith isn't getting a lot of sleep these days.

TODAY'S MOST-READ STORIES:

1. Microsoft blames human error for glitch
2. Airline puts Linux PC in every seat
3. MPLS proposal spawns IETF, ITU turf war
4. Psst... Wanna buy a data center?
5. Hacks hit embassy, government e-mail worldwide
6. Secrets of vendors' pricing plans
7. Bank of India site hacked
8. ISPs to rural U.S.: Live with dial-up
9. Notes from OPNETWORK 2007
10. How close is World War 3.0?

MOST E-MAILED ARTICLE:

Airline puts Linux PC in every seat


Contact the author:

Senior Editor Ellen Messmer covers security for Network World. E-mail Ellen.



BONUS FEATURE

IT PRODUCT RESEARCH AT YOUR FINGERTIPS

Get detailed information on thousands of products, conduct side-by-side comparisons and read product test and review results with Network World’s IT Buyer’s Guides. Find the best solution faster than ever with over 100 distinct categories across the security, storage, management, wireless, infrastructure and convergence markets. Click here for details.


PRINT SUBSCRIPTIONS AVAILABLE
You've got the technology snapshot of your choice delivered to your inbox each day. Extend your knowledge with a print subscription to the Network World newsweekly, Apply here today.

International subscribers, click here.


SUBSCRIPTION SERVICES

To subscribe or unsubscribe to any Network World newsletter, change your e-mail address or contact us, click here.

This message was sent to: security.world@gmail.com. Please use this address when modifying your subscription.


Advertising information: Write to Associate Publisher Online Susan Cardoza

Network World, Inc., 118 Turnpike Road, Southborough, MA 01772

Copyright Network World, Inc., 2007

Ethical decision-making: Using formal and informal guidelines

Network World

Security Strategies




Network World's Security Strategies Newsletter, 09/04/07

Ethical decision-making: Using formal and informal guidelines

By M. E. Kabay

In my last two columns, I began discussing the July 30 column by Vauhini Vara of the _Wall Street Journal_ entitled, “Ten Things Your IT Department Won’t Tell You.” The author provides detailed information on how to violate acceptable-use policies for corporate computer equipment.

In this column and the next, I want to continue applying Kallman and Grillo’s ethical decision-making methodology. We applied part 1 of the methodology last week. Moving on to part 2 - "Look for explicit and implicit guidelines relevant to the situation" - I’ll continue analyzing the case of Bob, an employee who signed an appropriate-use agreement with his employer but who chooses to follow Vara’s suggestions for cheating his employer of useful work - and then concealing his violations of policy.

Explicit guidelines include:

Comprehensive Network Access Control

The new wave of sophisticated crimeware not only targets specific companies, but it also targets desktops and laptops as backdoor entryways into business operations and resources. Network access control enables proper configuration and security of user endpoints before they are allowed access on the corporate network.
Click here to download this whitepaper

* Laws
* Contracts
* Agreements
* Policies
* Rules
* Professional standards
* Codes of ethics

The most obvious explicit guideline in our example is the acceptable-use policy. Bob is unquestionably violating the policy as written. He is almost certainly also violating the terms of his employment contract, which should stipulate that he agrees to follow policies and guidelines promulgated for the protection of corporate assets. Depending on whether Bob belongs to various professional societies and holds professional certifications, his duplicitous behavior may also violate professional standards and codes of ethics.

What about Vara? Are there any explicit professional standards she could follow?

Journalists can subscribe to the Code of Ethics (CoE) of the Society of Professional Journalists (SPJ). According to the Preamble, “Members of the Society share a dedication to ethical behavior.” However, I have been unable to find any specific injunction in the SPJ’s CoE that would bear on the issue of publishing instructions for employees about how to cheat employers and then lie about it. Perhaps it never occurred to anyone at the SPJ that any of their members would do that, any more than I suppose a member would write an article about how to commit a crime and get away with it.

What about the WSJ itself? Does it publish explicit guidelines for its writers? I couldn’t find the guidelines on the WSJ Web site, but James A. White, a news editor for the publication, very kindly responded by e-mail to my request. The Code of Conduct (CoC) for the Dow Jones organizations is available online and includes these explicit words in its “Employment” section:

“For its part, the Company expects employees to perform excellent work in a cost-effective manner, to strive for quality and productivity, to follow directions and instructions, to properly care for facilities and equipment, to anticipate problems and suggest improvements, to treat other employees and clients and customers with honesty and courtesy, and to be energetic in the performance of tasks and fulfillment of goals.”

Presumably if Vara were to apply her own advice, she’d be violating that instruction.

However (and unfortunately), I don’t see anything in the CoC that explicitly applies to publishing instructions on how to break contracts or even laws. I suppose that it’s possible that the WSJ could sanction an article on getting away with stock fraud or mortgage fraud, but perhaps that’s stretching the analogy beyond belief. Or is it?

Returning to our ethical decision-making process, _implicit_ guidelines include:

* Expectations
* Customs
* Habits
* Religious obligations
* Personal integrity

Bob’s in trouble on all these counts, unless he works in an office populated by members of a criminal subculture or a weird cult.

As for Vara, she’s not doing too well either on the informal guidelines front. For a roundup of some professional opinions about her article, see Naomi Grossman’s article in the Aug. 14, 2007, issue of bMighty.com. Next time, I’ll look at the last three contributions to ethical decision-making: principles, rights and duties, and intuitive cues.

Editor's note: Last Tuesday's newsletter [Hacker tips published in Wall Street Journal] was mistakenly attributed to Mark Gibbs, but was written by M.E. Kabay. Our apologies for the error.


  What do you think?
Post a comment on this newsletter

TODAY'S MOST-READ STORIES:

1. Microsoft blames human error for glitch
2. Airline puts Linux PC in every seat
3. MPLS proposal spawns IETF, ITU turf war
4. Psst... Wanna buy a data center?
5. Hacks hit embassy, government e-mail worldwide
6. Secrets of vendors' pricing plans
7. Bank of India site hacked
8. ISPs to rural U.S.: Live with dial-up
9. Notes from OPNETWORK 2007
10. How close is World War 3.0?

MOST E-MAILED ARTICLE:

Airline puts Linux PC in every seat


Contact the author:

M. E. Kabay, Ph.D., CISSP-ISSMP, is Associate Professor of Information Assurance and CTO of the School of Graduate Studies at Norwich University in Northfield, Vt. Mich can be reached by e-mail and his Web site.



ARCHIVE

Archive of the Security Strategies Newsletter.


BONUS FEATURE

IT PRODUCT RESEARCH AT YOUR FINGERTIPS

Get detailed information on thousands of products, conduct side-by-side comparisons and read product test and review results with Network World’s IT Buyer’s Guides. Find the best solution faster than ever with over 100 distinct categories across the security, storage, management, wireless, infrastructure and convergence markets. Click here for details.


PRINT SUBSCRIPTIONS AVAILABLE
You've got the technology snapshot of your choice delivered to your inbox each day. Extend your knowledge with a print subscription to the Network World newsweekly, Apply here today.

International subscribers, click here.


SUBSCRIPTION SERVICES

To subscribe or unsubscribe to any Network World newsletter, change your e-mail address or contact us, click here.

This message was sent to: security.world@gmail.com. Please use this address when modifying your subscription.


Advertising information: Write to Associate Publisher Online Susan Cardoza

Network World, Inc., 118 Turnpike Road, Southborough, MA 01772

Copyright Network World, Inc., 2007

Cisco: oneNAC is better than two

Network World

Security: Network Access Control




Network World's Security: Network Access Control Newsletter, 09/04/07

Cisco: oneNAC is better than two

By Tim Greene

Cisco seems to be getting ready to further integrate its NAC gear under a program it calls oneNAC.

While Cisco’s not acknowledging that name, oneNAC promises to be a new alignment of Cisco’s NAC appliance with its network based NAC Framework architecture.

Cisco has said that the two NAC alternatives were established in part to give customers a variety of choices. The company’s original NAC architecture called for embedding NAC enforcement in network devices, but that was going to take some time for customers to make sure their Cisco network gear supported it.

Network World Security Buyer's Guide

Find the right security products for your enterprise - fast. From anti-spam to wireless LAN security, our Buyer's Guides have detailed information on hundreds of products in more than 20 categories. With the side-by-side comparison tool you can evaluate product features to make the best decision for your enterprise.

Click here to go to the Security Buyer's Guide now.

The Framework architecture required software and in some cases hardware upgrades for individual customers, and some of these upgrades were only available on a roadmap.

The appliance can be installed in networks with less disruption and expense for customers that can’t wait or can’t afford to adopt the Framework. And Cisco has said that ultimately there will be individual customer cases requiring a blend of NAC technologies.

According to a source familiar with what Cisco is saying to customers about its NAC plans, the NAC management server that is part of the NAC Appliance option will be able to determine policies under the NAC Framework as well.

If Cisco succeeds with oneNAC it will help customers that want to start with a NAC appliance to fulfill a limited, targeted NAC need and then expand the deployment. Most NAC customers do start with NAC appliances, whether from Cisco or others, because they are simpler to deploy and are less disruptive of existing networks, says Rob Whiteley, an analyst with Forrester Research.

If Cisco can show customers that the NAC Appliances they buy initially will also work within the more scalable NAC Framework option, it may persuade them to by into Cisco’s NAC gear.


  What do you think?
Post a comment on this newsletter

TODAY'S MOST-READ STORIES:

1. Microsoft blames human error for glitch
2. Airline puts Linux PC in every seat
3. MPLS proposal spawns IETF, ITU turf war
4. Psst... Wanna buy a data center?
5. Hacks hit embassy, government e-mail worldwide
6. Secrets of vendors' pricing plans
7. Bank of India site hacked
8. ISPs to rural U.S.: Live with dial-up
9. Notes from OPNETWORK 2007
10. How close is World War 3.0?

MOST E-MAILED ARTICLE:

Airline puts Linux PC in every seat


Contact the author:

Tim Greene is a senior editor at Network World, covering network access control, virtual private networking gear, remote access, WAN acceleration and aspects of VoIP technology. You can reach him at tgreene@nww.com.



ARCHIVE

Archive of the Security: Network Access Control Newsletter.


BONUS FEATURE

IT PRODUCT RESEARCH AT YOUR FINGERTIPS

Get detailed information on thousands of products, conduct side-by-side comparisons and read product test and review results with Network World’s IT Buyer’s Guides. Find the best solution faster than ever with over 100 distinct categories across the security, storage, management, wireless, infrastructure and convergence markets. Click here for details.


PRINT SUBSCRIPTIONS AVAILABLE
You've got the technology snapshot of your choice delivered to your inbox each day. Extend your knowledge with a print subscription to the Network World newsweekly, Apply here today.

International subscribers, click here.


SUBSCRIPTION SERVICES

To subscribe or unsubscribe to any Network World newsletter, change your e-mail address or contact us, click here.

This message was sent to: security.world@gmail.com. Please use this address when modifying your subscription.


Advertising information: Write to Associate Publisher Online Susan Cardoza

Network World, Inc., 118 Turnpike Road, Southborough, MA 01772

Copyright Network World, Inc., 2007

Two pictures of mobile communications

Network World

Unified Communications




Network World's Unified Communications Newsletter, 09/04/07

Two pictures of mobile communications

By Michael Osterman

In the context of basic communications, such as e-mail and calendaring; as well for unified messaging; there are really two views about the efficacy of mobile communications.

The “small” picture for mobile communications is really about making people more productive when they’re away from their desk. As a U.K.-based analyst recently noted, mobile communications is not about unchaining people from their desk, but rather making them more productive when they’re traveling or simply in another part of a building. Mobile communications tools are extremely useful for providing information so that decisions can be made more quickly and so that downtime, such as waiting in an airport, can be much more productive.

While I believe this is the “small” picture for mobile communications, this does not mean that it’s insignificant – on the contrary, mobile e-mail, etc. is a critical tool and we expect its use to increase dramatically over the next few years as we will discuss in a soon-to-be-published report on mobile messaging.

Network World Security Buyer's Guide

Find the right security products for your enterprise - fast. From anti-spam to wireless LAN security, our Buyer's Guides have detailed information on hundreds of products in more than 20 categories. With the side-by-side comparison tool you can evaluate product features to make the best decision for your enterprise.

Click here to go to the Security Buyer's Guide now.

However, I believe there is also a “big” picture for mobile messaging, as well, which focuses on driving down business costs simply by not giving people a permanent place to work. Forty-two percent of IBM’s 350,000 employees, for example, do not regularly come into an office, but instead work from home, from the road, etc., saving the company $100 million annually in real estate costs. This translates to a savings of $680 per mobile employee annually. While supporting these types of employees can be more expensive, since they need more tools with which to communicate, the net savings can still be dramatic.

At its core, mobile communications (as well as Enterprise 2.0) is not about unchaining people from their desk, but instead selling the desk and getting rid of their office and telling them not to come back without an appointment. Doing so can provide enormous productivity gains and cost savings, but it requires a shift in corporate culture – people need to be evaluated based on what they do, not how and when they do it. Task management and more objective project evaluation criteria become more important than how well someone schmoozes around the water cooler.


  What do you think?
Post a comment on this newsletter

TODAY'S MOST-READ STORIES:

1. Microsoft blames human error for glitch
2. Airline puts Linux PC in every seat
3. MPLS proposal spawns IETF, ITU turf war
4. Psst... Wanna buy a data center?
5. Hacks hit embassy, government e-mail worldwide
6. Secrets of vendors' pricing plans
7. Bank of India site hacked
8. ISPs to rural U.S.: Live with dial-up
9. Notes from OPNETWORK 2007
10. How close is World War 3.0?

MOST E-MAILED ARTICLE:

Airline puts Linux PC in every seat


Contact the author:

For webinars or research on messaging, or to join the Osterman Research market research survey panel, go here. Osterman Research helps organizations understand the markets for messaging and directory related offerings. To e-mail Michael, click here.



ARCHIVE

Archive of the Unified Communications Newsletter.


BONUS FEATURE

IT PRODUCT RESEARCH AT YOUR FINGERTIPS

Get detailed information on thousands of products, conduct side-by-side comparisons and read product test and review results with Network World’s IT Buyer’s Guides. Find the best solution faster than ever with over 100 distinct categories across the security, storage, management, wireless, infrastructure and convergence markets. Click here for details.


PRINT SUBSCRIPTIONS AVAILABLE
You've got the technology snapshot of your choice delivered to your inbox each day. Extend your knowledge with a print subscription to the Network World newsweekly, Apply here today.

International subscribers, click here.


SUBSCRIPTION SERVICES

To subscribe or unsubscribe to any Network World newsletter, change your e-mail address or contact us, click here.

This message was sent to: security.world@gmail.com. Please use this address when modifying your subscription.


Advertising information: Write to Associate Publisher Online Susan Cardoza

Network World, Inc., 118 Turnpike Road, Southborough, MA 01772

Copyright Network World, Inc., 2007

Expert finds 'stupid' vulnerabilities in Oracle 11g

Network World

Security: Threat Alert




Network World's Security: Threat Alert Newsletter, 09/03/07

Expert finds 'stupid' vulnerabilities in Oracle 11g

By Jason Meserve

Today's security alerts:

Expert finds 'stupid' vulnerabilities in Oracle 11g
The latest version of Oracle Corp.'s flagship database offers better security than earlier versions, but development errors have left vulnerabilities that attackers can use to steal data, an expert warned Monday. "Oracle made big progress with 11g, but some of the vulnerabilities I've found so far in 11g are stupid programming errors," said Alexander Kornbrust, managing director of Red Database Security GmbH, during an interview at the Hack In The Box (HITB) Security Conference 2007 in Kuala Lumpur, Malaysia.
IDG News Service, 09/03/07

**********

Network World Security Buyer's Guide

Find the right security products for your enterprise - fast. From anti-spam to wireless LAN security, our Buyer's Guides have detailed information on hundreds of products in more than 20 categories. With the side-by-side comparison tool you can evaluate product features to make the best decision for your enterprise.

Click here to go to the Security Buyer's Guide now.

Four new updates from Ubuntu:

Linux Kernel 2.6 for Ubuntu 7.04 (multiple flaws)

Linux Kernel 2.6 for Ubuntu 6.10 (multiple flaws)

Linux Kernel 2.6 for Ubuntu 6.06 (multiple flaws)

tcp-wrappers (flawed access control)

**********

Four new patches from Debian:

ClamAV (multiple patches)

id3lib (symlink attack, denial of service)

VIM (multiple flaws)

Linux kernel 2.6 (multiple flaws)

**********

Today's malware news:

New risk: Bogus MSN Messenger video invites
Last week, it was a Webcam flaw in Yahoo Messenger that could leave you vulnerable to attack if you clicked a link to a malicious video conversation invitation. Now, researchers have found a similar hole in Microsoft's MSN Messenger. PC World, 08/29/07.

**********

From the interesting reading department:

Malicious Web: Not just porn sites
The New Zealand Honeynet Project, which produced Capture-HPC (mentioned here last week), also produced an excellent white paper about using Capture-HPC to identify malicious Web servers. On the group's Web site, you'll find that paper, the captured data, and the tools for anyone to inspect and replicate. Computerworld, 08/31/07.

Free gift offers dupe users into giving personal dataThe personal details of thousands of mostly U.S.-based PC users have been discovered stashed on a server located in France, another indication of use of the Internet to collect personal data on a vast scale. IDG News Service, 09/03/07.

Personal info on 150,000 job seekers at USAJobs stolen
The identity thieves who ransacked Monster.com's database also made off with the personal information of 146,000 people who use USAJobs, the federal government's official job search site, federal officials said today. Computerworld, 08/31/07.

Microsoft sics lawyers on popular AutoPatcher utility
On the same day that Microsoft set a date for the delivery of new Vista and XP service packs, it shut down a popular utility built and maintained by Windows enthusiasts for easily installing updates offline. The AutoPatcher utility is described by project manager Antonis Kaladis as an offline Windows Update. It provides an interface to a large collection of updates, common applications and registry tweaks. The collection could be downloaded once, then used to update many computers, saving time and bandwidth. Network World, 08/30/07.

Hacks hit embassy, government e-mail accounts worldwide
Usernames and passwords for more than 100 e-mail accounts at embassies and governments worldwide have been posted online. Using the information, anyone can access the accounts that have been compromised. IDG News Service, 08/30/07.

Bank of India site hacked, distributing malware, security vendor says
Bank of India Web site said to be hacked and a source of malware, including rootkits and Trojans, according to Sunbelt Software. Network World, 08/30/07.

Note: F-Secure reports the offending iFrame has been removed and the site is safe again.


  What do you think?
Post a comment on this newsletter

TODAY'S MOST-READ STORIES:

1. Microsoft blames human error for glitch
2. Airline puts Linux PC in every seat
3. MPLS proposal spawns IETF, ITU turf war
4. Psst... Wanna buy a data center?
5. Hacks hit embassy, government e-mail worldwide
6. Secrets of vendors' pricing plans
7. Bank of India site hacked
8. ISPs to rural U.S.: Live with dial-up
9. Notes from OPNETWORK 2007
10. How close is World War 3.0?

MOST E-MAILED ARTICLE:

Airline puts Linux PC in every seat


Contact the author:

Jason Meserve is Network World's Multimedia Editor and writes about streaming media, search engines and IP Multicast. Check out his Multimedia Exchange Weblog.

Check out Jason Meserve and Keith Shaw's weekly podcast "Twisted Pair"



ARCHIVE

Archive of the Security: Threat Alert Newsletter.


BONUS FEATURE

IT PRODUCT RESEARCH AT YOUR FINGERTIPS

Get detailed information on thousands of products, conduct side-by-side comparisons and read product test and review results with Network World’s IT Buyer’s Guides. Find the best solution faster than ever with over 100 distinct categories across the security, storage, management, wireless, infrastructure and convergence markets. Click here for details.


PRINT SUBSCRIPTIONS AVAILABLE
You've got the technology snapshot of your choice delivered to your inbox each day. Extend your knowledge with a print subscription to the Network World newsweekly, Apply here today.

International subscribers, click here.


SUBSCRIPTION SERVICES

To subscribe or unsubscribe to any Network World newsletter, change your e-mail address or contact us, click here.

This message was sent to: security.world@gmail.com. Please use this address when modifying your subscription.


Advertising information: Write to Associate Publisher Online Susan Cardoza

Network World, Inc., 118 Turnpike Road, Southborough, MA 01772

Copyright Network World, Inc., 2007

RFID boosts supply chain performance

Network World

Network Optimization




Network World's Network Optimization Newsletter, 09/04/07

RFID boosts supply chain performance

By Ann Bednarz

For a change of pace I’d like to deviate from discussing WAN optimization controllers and application acceleration devices and focus on a different kind of optimization technology geared for supply networks: radio frequency identification.

RFID is essentially wireless tracking technology. It has been hyped for the last several years as a way to streamline different supply chain processes in settings as varied as distribution centers, retail stores, hospitals and pharmacies. While the technology is decades old, RFID gained renewed notoriety when outfits such as Wal-Mart and the Department of Defense endorsed it and began requiring business partners to outfit cases and pallets with RFID tags to provide greater supply chain transparency.

Over the last few years, RFID equipment vendors have been bullish on the technology’s adoption, but that optimism was offset by skepticism among target buyers who worried RFID wasn’t mature enough or cost-effective enough to deploy in a supply chain network.

Executive Guide: Stay ahead of the data growth curve

Get real-world advice on how to best deal with the explosion of data across nearly every enterprise today. This informative executive guide offers IT professionals detailed information on new technologies such as ILM and FANs, specific pitfalls to avoid when deploying ILM, as well as solid case studies.

Click here to learn more.

A recent survey by the Computing Technology Industry Association (CompTIA) found IT resellers and vendors are ready to add RFID solutions to their portfolios, but their customers have been slow to embrace the technology. According to CompTIA, 84% of resellers, solution providers, systems integrators, and consultants will or may offer RFID products and solutions in the next three years -- even though 65.6% said their customers have yet to implement RFID solutions.

“The results of our survey are reflective of the RFID market, where rosy forecasts about rapid and widespread adoption have given way to the reality of dealing with a technology whose broader deployment has been challenged by equipment and tagging costs, murky and unclear return-on-investment for supply chain applications, and a workforce skills shortage,” said David Sommer, vice president of e-business and software solutions at CompTIA.

Yet despite the slower-than-expected adoption rate, stories are emerging that could be encouraging for industries looking to speed up their supply chain applications with wireless tracking technology.

For instance Throttleman, a fashion company in Portugal, recently shared figures about its success deploying RFID products from TAGSYS in its supply chain. Throttleman worked with systems integrator Creativesystems to design its RFID-based system. (Creativesystems in turn partnered with TAGSYS for the RFID technology, Sybase for middleware, and Paxar for labels.)

The technology helps speed the process of getting Throttleman’s designs into retail stores -- by several days.

The system works this way: Clothes fitted with RFID tags are shipped from the manufacturer to the distribution center, where a TAGSYS UHF tunnel scans and reads the content of each box in a few seconds. The tunnel automatically compares the list of items scanned to the packing slip, and discrepancies generate an alert to check content. In this way, shipping errors can be spotted and corrected much more quickly.

The end result is that Throttleman’s items spend five fewer days in the distribution center -- which means they get to store shelves that much quicker. By re-stocking retail shelves faster and more accurately, Throttleman (which processes 1.5 million garments per year) can expect more sales.

The supply chain network is the lifeblood of manufacturers and retailers. Gains in efficiency can translate quickly into bottom-line gains. In particular, timing is critical in the fashion industry, where styles change so quickly.

After reading so many accounts of stalled deployments and elusive ROI, it’s great to hear about an RFID deployment that’s working for a company and yielding measurable gains in supply chain performance.


  What do you think?
Post a comment on this newsletter

TODAY'S MOST-READ STORIES:

1. Microsoft blames human error for glitch
2. Airline puts Linux PC in every seat
3. MPLS proposal spawns IETF, ITU turf war
4. Psst... Wanna buy a data center?
5. Hacks hit embassy, government e-mail worldwide
6. Secrets of vendors' pricing plans
7. Bank of India site hacked
8. ISPs to rural U.S.: Live with dial-up
9. Notes from OPNETWORK 2007
10. How close is World War 3.0?

MOST E-MAILED ARTICLE:

Airline puts Linux PC in every seat


Contact the author:

Ann Bednarz is an associate news editor at Network World responsible for editing daily news content. She previously covered enterprise applications, e-commerce and telework trends for Network World. E-mail Ann.



ARCHIVE

Archive of the Network Optimization Newsletter.


BONUS FEATURE

IT PRODUCT RESEARCH AT YOUR FINGERTIPS

Get detailed information on thousands of products, conduct side-by-side comparisons and read product test and review results with Network World’s IT Buyer’s Guides. Find the best solution faster than ever with over 100 distinct categories across the security, storage, management, wireless, infrastructure and convergence markets. Click here for details.


PRINT SUBSCRIPTIONS AVAILABLE
You've got the technology snapshot of your choice delivered to your inbox each day. Extend your knowledge with a print subscription to the Network World newsweekly, Apply here today.

International subscribers, click here.


SUBSCRIPTION SERVICES

To subscribe or unsubscribe to any Network World newsletter, change your e-mail address or contact us, click here.

This message was sent to: security.world@gmail.com. Please use this address when modifying your subscription.


Advertising information: Write to Associate Publisher Online Susan Cardoza

Network World, Inc., 118 Turnpike Road, Southborough, MA 01772

Copyright Network World, Inc., 2007

ISAserver.org - On Web Listeners and Web Publishing Rules

ISAserver.org - RealTime Article Update

Hi Security World,

Title: On Web Listeners and Web Publishing Rules
Author: Thomas Shinder
Link: http://www.ISAserver.org/tutorials/Web-Listeners-Web-Publishing-Rules.html
Summary: How to publish the autodiscovery feature that allows the Outlook 2007 client to automatically configure itself to use the ISA Firewall as its reverse Web Proxy.

Visit the Subscription Management (http://newsletter.isoftmarketing.com/) section to unsubscribe.
ISAserver.org is in no way affiliated with Microsoft Corp.
For sponsorship information, contact us at advertising@isaserver.org

Copyright © ISAserver.org 2007. All rights reserved.