Great article on SP2 spam filtering

I missed this in all the hubbub here at el rancho, but Alexander Nikolayev posted a terrific treatment of the Exchange 2003 SP2 anti-spam process at the Exchange team blog. He covers how the new SPF/Sender ID filtering process works in conjunction with the existing filtering features. Exchange 2003 SP2 is the only spam filter that Microsoft’s using for their 90,000+ worldwide mailboxes; I think that’s a pretty strong endorsement of its capabilities.

Leave a comment

Filed under General Stuff, Musings

Microsoft buys FrontBridge

Just got the press release: Microsoft is buying FrontBridge, a hosted message hygiene service provider. This is primarily interesting because of FrontBridge’s strength in compliance solutions; they have a broad range of services built around compliance for email and IM. Their hosted anti-spam services got good props from eWeek, but I think the combination of their data centers (which promise a 99.999% uptime SLA) and their compliance services opens the door for MS to diversify beyond Windows OneCare into a broader scope of direct service provision. I can’t wait to see what part they play in the promised Exchange 12 updates for better compliance and message hygiene.

1 Comment

Filed under General Stuff, Musings

IIS 6 metabase auditing

Unless you read the “Book of SP1” very closely, you might have missed out on the fact that Windows 2003 SP1 enables auditing of metabase object access. The IIS documentation for the feature is of little help, since it’s missing some steps. This can be very handy for Exchange administrators, given how much heavy lifting the IIS core components do. IIS MVP Ken Schaefer has written a simple explanation of how to configure metabase auditing here.

Leave a comment

Filed under General Stuff, Musings

OPREP-3 FLASH NUDET

Discovery HD is showing the documentary “Trinity and Beyond” on Saturday. Now I won’t have to buy it.

2 Comments

Filed under HDTV and Home Theater, Musings

Google Maps pedometer

This is very cool: a pedometer app that uses Google Maps. Double-click to set your starting point, then double-click to add waypoints. The app automatically tallies your total distance. Of course, you could also use this to plan bike or motorcycle rides, runs, or pretty much any other distance-based activity. Neat!

1 Comment

Filed under General Tech Stuff

IBM buys e-forms vendor PureEdge

Here’s an interesting development: IBM made a Notes-related acquisition, buying PureEdge. PureEdge makes a set of XML-based forms tools– not too dissimilar from another familiar XML tool, InfoPath. Could it be that IBM is feeling the pain of having a relatively poor XML story in Notes and Domino? Are they trying to play catch-up? Maybe.

Microsoft is widely reported to be preparing a server-based version of InfoPath, which would give them a pretty complete story for form management on the client, the server, and the back-end (via WSS, SPS, and BizTalk). Looks like form-based application development will become another front in the IBM-MS platform battle. I’ll be interested to see how (or if) IBM integrates the new solutions into its products; clearly it’s too late for Domino 7.x, so I’d expect these to be part of a future Workplace technology release in some form.

Leave a comment

Filed under General Stuff, Musings

RAID-10 vs RAID-0+1

Ever get tired of trying to explain (or, worse, remember) the difference? Check these handy diagrams: RAID-10 and RAID-0+1.

Update: edited to fix a bad link for the first diagram (thanks, Devin!)

Leave a comment

Filed under General Stuff, Musings

A note on reviews

I was thinking the other day about my habit of posting book reviews. To the casual observer, it might seem that I like everything I read. This isn’t strictly true. I generally review books here only if they were particularly good (Barry Eisler), particularly bad (Eric Nylund), or interesting for some other reason. There are sooo many other places to read book reviews that I don’t want to waste time reviewing the mediocre (William Lashner’s The Shadow Falls) books that I often end up with. Of course, I’m fairly selective about what I’ll read in the first place, so perhaps that has something to do with it.

Comments Off on A note on reviews

Filed under Reviews

Symantec Disaster Recovery Strategies seminar… in Cancun

Got an email today from Symantec touting their new “Symantec Disaster Recovery Strategies” conference. It’s in Cancun, in October. The email says:

Learn from the experts who best know VERITAS technology, while enjoying beautiful Cancun! It’s the perfect combination of work and play.

Training sessions run from 8:00 to noon; the rest of the day is free to “meet in small discussion groups, meet one on one with the instructor, or absorb what you have learned while relaxing by the pool.” Now this is the kind of conference I could get into! I mean, TechEd and Exchange Connections are draining because there’s so much, y’know, work stuff going on. It’s hard! Thank goodness Symantec is going to help out by dialing back the pace a bit.

I thought of making fun of their list of covered topics by adding “Hangover Recovery Planning”, “High Golf Availability Design”, and “Maximizing Your Return on Bikini Watching”, but that would just be unfair– people might think I’m bitter at not being asked to speak 🙂

[ personal to Devin: no, you can’t go. ]

1 Comment

Filed under General Stuff

Running Exchange 5.5 on VMWare on Linux

Now I’ve heard everything: this article describes (with a straight face, I’m sure) how to set up a Linux box running VMware to use Postfix as the SMTP front-end and Exchange 5.5 as the mailbox store. Why you’d want to do this is beyond me. For an encore, I hear the author’s going to write an article on how to run Lotus Notes 4.0 on a PlayStation Portable.

2 Comments

Filed under General Stuff, Musings

Fascinating paper on IE malware attacks and analysis

David Ross of Microsoft has posted a long, and extremely interesting, paper on analyzing browser-based malware. I recommend reading it even if you only have a passing interest in the subject; there’s a lot of good stuff therein.

Comments Off on Fascinating paper on IE malware attacks and analysis

Filed under General Stuff

Brilliant essay on ID “theft”

John Denker has written a superb essay on why ID “theft” shouldn’t be a problem, and how we already have all the tools to prevent it from being one. Excerpt:

it shouldn’t matter if somebody knows who I am. Suppose somebody can describe me — so what? Suppose somebody knows my date of birth, social security number, and great-great-grandmother’s maiden name — so what?
It’s only a problem if somebody uses that identifying information to spoof the authorization for some transaction.
And that is precisely where the problem lies. Any system that lets identifying information serve as authorization is so nonsensical that it is hardly worth discussing. I don’t know whether to laugh or cry.

He goes on to draw the distinction between entity authenticaiton and transaction authentication, and goes on to propose a couple of schemes for breaking these into two separate mechanisms instead of the conflated mess we now have. Well worth a read for anyone interested in security.

Comments Off on Brilliant essay on ID “theft”

Filed under General Stuff, Musings

I’m lovin’ it

Ironically, my last two UPDATE columns have been on mobility topics– and now I’m somewhere with no mobile access!
So here I am in Farmerville, Louisiana. What’s there? Not much (rimshot). Seriously, I’m here with my family visiting the beautiful Lake D’Arbonne State Park for our annual family reunion-style get-together. Whoever the State of Louisiana hired to build this place did a terrific job; the scenery is beautiful, the cabins are clean, spacious, and comfortable, and the wildlife is abundant. One thing’s missing, though: connectivity. Ideally, I wouldn’t have to work this week, but I do, so I’ve been arranging my schedule to work when everyone else is asleep. The problem is getting information to and from the people I work with.
Last year, we stayed in the same place, and I noticed that my Verizon cellphone worked fine. I figured that my aircard would give me data service. Problem #1: Alltel is actually the local network provider, as I found when I noticed the “Extended Roaming” indicator on my Treo. No aircard, and no data service on the Treo. The local public library has a few Internet terminals, but they’re a) unstable b) locked down and c) on a network that won’t allow me to plug in my laptop. Last year, I was able to cadge a few minutes from the nice lady who owns the local Radio Shack franchise, but that clearly wasn’t a scalable solution. I didn’t think she’d welcome seeing me twice a day every day, no matter how many batteries I bought.
The solution came from an unexpected quarter. I asked the lifeguards at the park pool, the folks at the public library, and the staff at the Radio Shack whether there were any public Internet points or cafes nearby. No one had a clue. While racking my brain to think of local businesses from which I could beg bandwidth, I remembered the McDonald’s at the corner of La-2 and Bernice Highway– a mere five miles from the park. A quick call to Devin netted me the information I sought: the local McD’s did in fact have Wayport WiFi. Last night I rolled in, opened the laptop, and downloaded the 400+ messages that accumulated since I got here on Saturday. Today I made a grocery store run and stopped off for a Quarter Pounder and some email; I’ll be heading back later tonight for another delivery.
I guess that means that I have to officially retract all the crap I gave McDonald’s about their food. It’s still not my favorite, but I’m willing to put up with a lot for the ability to keep my customers happy by delivering my work on time. It says a lot about their franchise consistency that even a small town like Farmerville rates WiFi in the store.

Comments Off on I’m lovin’ it

Filed under General Stuff, Musings

Mutiny over the bounty

Ed Brill links to this CRN article that talks about a “bounty” being offered to partners who convert customers from Notes or Oracle. Two brief thoughts (I’d write more but have too many other more pressing things to do). Disclaimer: I don’t have any specific knowledge of this program, or any other one for that matter.
First, if this is like other MS programs, the “bounty” is actually funny money and a non-story. Let’s say the partner moves a 1,000-seat organization and (according to whatever criteria MS has) the bounty is $20/seat. That means that the partner gets up to $20,000 from Microsoft to either spend on MS consulting / design / deployment services (via MCS) or to use for application and data transition. IOW, Microsoft is paying the partner to do work that the customer would otherwise have to pay for themselves. This is hardly what Ed makes it out to be, with his sinister implication that MS is “plucking” “pieces of meat”. Sheesh. It’s the logical equivalent of the car dealer giving you a tank of free gas when you buy the car.
Second note: I’ll bet a nickel that IBM has similar programs for selected competitors. Why? If you want sales people to do something, you have to give them incentives, and the #1 incentive in that world is cold hard cash.

Comments Off on Mutiny over the bounty

Filed under Smackdown!

Mayo Communications: good PR firm or sleazy opportunists?

I got a “press release” from a company called Mayo Communications. Here’s an excerpt so that you can decide whether they’re a good firm trying to rep their client, or a despicable bunch of ambulance chasers who are using a tragedy to drum up PR. I’ve redacted the client’s name to avoid giving the publicity they so avidly sought.

“Be More Alert And Report Suspicious Acts Says
Nation’s Top Counterterrorism Expert XXX
***
“Suspicious people covertly photographing metro railway and trains have been observed and reported in major cities across the nation – from Los Angeles to New York,,” said XXX, CEO, YYYY.
Los Angeles, CA (July 7, 2005) — “The typical terrorist attack is planned months to years in advance,” said XXX, CEO & Founder XXXXX, ZZZZ, reacting to four explosions that rocked the London subway and tore open a packed double-decker bus during the morning rush hour Thursday. The deadly explosive terrorists’ attacks injured more than 700 people left more than four dozen people dead.

So, these folks used the occasion of a terrorist bombing to hype their client (the “nation’s top counterterrorim expert”). Here’s what I wrote back to them:

It is difficult for me to express my distaste for your use of the London bombings as a vehicle to pimp the “expertise” of your client, the alleged “Nation’s Top Counterterrorism Expert”. Your mail makes your firm out to be sleazy opportunists of the worst sort. (As a side note, you really should run your press releases through a proofreading pass; it contains a number of grammatical and typographical errors).
I would rather eat an old shoe than use any of my publication venues to give your client free publicity– but you can bet that I will tell my readers and listeners that, within hours of the London bombings, I was contacted by a PR firm seeking commercial advantage for their client on the bodies of London’s dead.

It’s popular for people to claim that corporate bloggers like Microsoft’s Robert Scoble threaten the conventional PR industry. I can only hope that there’s some truth to that claim.
Update: I got an (unsigned) response from Mayo. It seems pretty clear that one of us doesn’t get it, and I don’t think it’s me:

Everyone has an opinion, unfortunately not everyone agrees with you! but I will remove you from our list since you biggest challenge is deleting emails.
FYI. Time Magazine along with other more important trades are running the story in Monday’s issue. hope you sugar coated your shoes, too.

Nothing like compounding an initial error by being arrogant and antagonizing the people to whom you’re evangelizing your customer. Is this representative of what other PR firms are doing for their customers? I sure hope not.

8 Comments

Filed under Smackdown!