Read up on the latest ideas and technologies from companies that sell hardware, software and services. Market Trends: Multienterprise/B2B Infrastructure Market | Worldwide | 2008
Enterprise Wireless WLAN Security
Radicati Market Quadrant 2008 on Corporate Web Security
How to Beef Up Your Sales Pipeline
Did you GET the memo? Getting you from Web 1.0 to Web 2.0 Security
Cutting printer costs
Understanding Email Marketing: A Guide for SMBs
Why Security SaaS Makes Sense Today
Zones provide focussed content from Computerworld and leading technology partners.Newsletter Subscription
VanDyke Software recently published results of the fifth annual edition of its survey of network and system administrators the company hired Amplitude Research to conduct and analyze.
Most of the survey questions concerned security, as it should be, considering the importance of that topic. The general results (also covered by Network World's Denise Dubie) are generally realistic -- managers felt issues that they might have an ability to affect were more important than some of the issues (like user training) that managers often feel are impossible or at least outside their ability to control. But behind the headlines there were some results I found surprising and not just a little disappointing.
Most usefully, because VanDyke has been commissioning this survey for five years, one can get a sense of the changing management pain points. Issues that managers who answered the survey this year felt to be most important were securing remote access (up in importance over the last five years), keeping virus definitions up to date (down quite a bit over the same period) and monitoring intrusions (which has stayed about the same).
The biggest decline in importance over the five years the survey has been run is patching systems. I expect this is not because the need to patch has decreased in any way but because patching systems are now quite mature and thus are not a significant worry. I also expect that the drop in importance of keeping virus definitions up to date has happened for the same reason.
For all the focus on real problems mentioned by the survey, a few important ones seem not to be getting proper attention.
More than a quarter of network managers admit that they are still configuring their network devices using insecure telnet, and more than a third are using insecure HTTP rather than using secure SSH or HTTPS.
While this is down quite a bit from five years ago it is still far too high. I only hope that there are no cases where the network manager has to access the network devices while at a conference or hotel. It's easy to hand control of your network devices to a random observer in such cases. A tale from long ago illustrates the potential for mischief when passwords get leaked, as they can be with telnet and HTTP.
The router passwords for a good-sized ISP got compromised. One day someone logged into each router in succession, starting with the ones furthest out. This person proceeded to turn off each outward-facing interface and change the password on the router. It did not take long for the network to have the forwarding ability of a pile of bricks.
The other clear and present danger is the lack of the use of secure file-transfer methods when exchanging confidential information with third parties (such as customers and vendors) and when doing the same with remote offices. Less than half of the respondents said they always used secure methods in both cases -- another quarter said they mostly did.
This makes me sad -- with all the coverage of security issues there are still organizations that give their secrets away. One can only wonder where their auditors are.
Disclaimer: I know where Harvard's auditors are (which is one reason I wonder about some other auditors), but they have not, nor has the university, reviewed this survey report so the above review is mine.
Computerworld Member Login
Prioritizing Services with IT Service Management (ITSM)
Computerworld Live Webinar
Wednesday 20th, August 2008
11:00am EST (Sydney, Australia)
To be repeated on:
Thursday 4th, September 2008
11:00am EST (Sydney Australia)
Sign up and receive a free copy of The Forrester WaveTM Service Desk Management Tools, Q2 2008 at the conclusion of the Webinar.
Attend and discover:
- How to deliver value to your business through ITSM
- Best practice ITSM implementation
- Why emphasis is changing from optimizing IT management processes to better servicing customers and demonstrating real dollar value
- If service-oriented ITSM is best for your business
- +
Computerworld Live Podcast #97: The Future of Enterprise Networking 25/07/2008 09:45:36
This week CW Live chats with Mark Thompson, global sales and marketing manager for HP ProCurve, on the future of the enterprise networking. Mark discusses the trends we can expect to see in the near future and how the right infrastructure can ensure your enterprise network is secure. - +
Computerworld Live Podcast #96: Security at the Edge 11/06/2008 09:22:22
CW Live speaks with Amol Mitra, HP ProCurve Director of Marketing for Asia Pacific and Japan. Today's topic: how enterprises are starting to shift away from simply controlling security via server logins, firewalls and moving to more adaptive security frameworks. - +
Data Management Edition #10: Multi-Petascale Systems 02/05/2008 09:12:33
This week we look at sustainability and the development of multicore technologies to build multi-petascale systems. - +
IT Security Edition #11: How to poison the Storm botnet 01/05/2008 08:51:55
This week CW Live presents a case study on how to poison the notorious Storm botnet . Plus we take a look at Cisco's plans for Ironport. - +
IT Security Edition #10: Cyber-battles fought and won 24/04/2008 11:09:47
Vendors bow to end user pressure to improve product security, and we take a look at the latest concepts shaping the cyber-battlefield of the future.
Tumbleweed appoints O2 Networks to its Australian Channel Partner Program 2008-08-29 12:31:00+10
HP ProCurve Brings Big Business Gigabit Switching Features to Small Businesses 2008-08-29 12:00:00+10
Nortel and LG Electronics are First in World to Demonstrate Mobile LTE Handover 2008-08-29 11:30:00+10
GlobalConnect Provides Treatment for Healthcare Provider’s Contact Support Requirements 2008-08-29 09:59:00+10
Sybase and Logica Partner To Mobilise The Supply Chain 2008-08-29 09:47:00+10
Realizing the Value of Unified Communications
Discover how the integration of disparate technologies in your company can lead to greater user productivity, improved management, lower costs, higher efficiency, and easier risk mitigation.












