ISENG BLOGER

The Value of Data Media Security



A basic locking cabinet can secure valuable papers or personal items but it will not protect them from theft or fire damage. Only safes can provide a superior level of protection for documents, jewelry, guns and personal items. computer data that would be difficult or impossible to duplicate if lost.

While paper records secured within a fire-rated safe can withstand temperatures up to 350 degrees Fahrenheit, computer media is damaged beyond use by temperatures above 125 degrees and 80% humidity. Microfiche film, tapes, diskettes, CDs, DVDs and computer media require the added protection of a data media safe.
Data Media Safes are specifically designed for data media storage. Protect against fire and climactic changes--a requirement for a small business or home office. A data media safe must keep the internal temperature below 125ยบ and the humidity level below 85%. Several fire testing laboratories have tested our safes at a temperature of 1,832 degrees F for over one hour with internal temperatures remaining below 122 degrees F. The safes were awarded the one-hour label. In addition, the safes are manufactured under ISO 9002 quality standard requirements.

Fire could destroy your business! In fact, eight businesses burn almost every hour in the U.S. resulting in over 2.3 billion dollars in annual losses.* Unfortunately, seven out of ten businesses have not adequately protected their vital records. When that information is destroyed a business often fails. Don't become a company that incurs fire damage resulting in critical loss of data (customer, personnel, accounting files, etc.) by not utilizing quality fire and data media safes. Survival is possible but preparation is necessary.

To view our inventory of Data Media Safes visit http://www.datamediasafes.com
[Read More...]


What Are Survivable Computer Systems



Definition Of A Survivable Computer System
----------------------------
A computer system, which may be made up of multiple individual systems and components, designed to provide mission critical services must be able to perform in a consistent and timely manner under various operating conditions. It must be able to meet its goals and objectives whether it is in a state of normal operation or under some sort of stress or in a hostile environment. A discussion on survivable computer systems can be a very complex and far reaching one. However, in this article we will touch on just a few of the basics.
Computer Security And Survivable Computer Systems
--------------------------------------------------
Survivable computer systems and computer security are in many ways related but at a low-level very much different. For instance, the hardening of a particular system to be resistant against intelligent attacks may be a component of a survivable computer system. It does not address the ability of a computer system to fulfill its purpose when it is impacted by an event such as a deliberate attack, natural disaster or accident, or general failure. A survivable computer system must be able to adapt, perform its primary critical functions even if in a hostile environment, even if various components of the computer system are incapacitated.  In some cases, even if the entire "primary" system has been destroyed.

As an example; a system designed to provide real-time critical information regarding analysis of specialized medications ceases to function for a few hours because of wide spread loss of communication. However, it maintains the validity of the data when communication is restored and systems come back online. This computer system could be considered to have survived under conditions outside of its control.

On the other hand, the same system fails to provide continuous access to information under normal circumstances or operating environment, because of a localized failure, may not be judged to have fulfilled its purpose or met its objective.

Fault Tolerant And Highly Availability Computer Systems
----------------------------
Many computer systems are designed with fault tolerant components so they continue to operate when key portions of the system fail. For instance; multiple power supplies, redundant disk drives or arrays, even multiple processors and system boards that can continue to function even if its peer component is destroyed or fails. The probability of all components designed to be redundant failing at one time may be quite low. However, a malicious entity that knows how the redundant components are configured may be able to engineer critical failures across the board rendering the fault tolerant components ineffective.

High availability also plays a role in a survivable computer system. However this design component may not maintain computer system survivability during certain events such as various forms of malicious attack . An example of this might be a critical web service that has been duplicated, say across multiple machines, to allow continuous functionality if one or more the individual web servers was to fail. The problem is that many implementations of high availability use the same components and methodology on all of the individual systems. If an intelligent attack or malicious event takes place and is directed at a specific set of vulnerabilities on one of the individual systems, it is reasonable to assume the remaining computer systems that participate in the highly available implementation are also susceptible to the same or similar vulnerabilities. A certain degree of variance must be achieved in how all systems participate in the highly available implementation.

What's The Difference Between An Attack, Failure, And Accident?
How Do These Differences Impact A Survivable Computer System
----------------------------------------------------------
In many cases when I am discussing the security of systems with customers, the question of business continuity and disaster recovery come up. Most companies that provide a service that they deem critical just know the system needs to be operational in a consistent manner. However, there is typically little discussion about the various events or scenarios surrounding this and that can lead to great disappointment in the future when what the customer thought was a "survivable computer system" does not meet their expectations. Some of the items I like to bring up during these conversations is what their computer systems goal and objective is, what specifically does continuous operation mean to them, and specifically what constitutes an attack, failure, or accident that can cause loss of operation or failure to meet objectives.

A failure may be defined as a localized event that impacts the operation of a system and its ability to deliver services or meet its objectives. An example might be the failure of one or more critical or non-critical functions that effect the performance or overall operation of the system. Say, the failure of a module of code that causes a cascading event that prevents redundant modules from performing properly. Or, a localize hardware failure that incapacitates the computer system. 

An accident is typically an event that is outside the control of the system and administrators of a local / private system. An example of this would be natural disasters such as hurricanes, if you live in south Florida like I do, or floods, or wide spread loss of power because the utility provider cut the wrong power lines during an upgrade to the grid. About two years ago, a client of mine who provides web based document management services could not deliver revenue generating services to their customers because a telecommunications engineer cut through a major phone trunk six blocks away from their office. They lost phone and data services for nearly a week.

An now we come to "attack". We all know accidents will happen, we know that everything fails at one time or another, and typically we can speculate on how these things will happen. An attack, executed by an intelligent, experienced individual or group can be very hard to predict. There are many well known and documented forms of attacks. The problem is intelligence and human imagination continuously advance the form of malicious attacks and can seriously threaten even the most advanced designed survivable computer systems. An accident or failure does not have the ability to think out of the box or realize that a highly available design is flawed because all participants use the same design. The probability that an attack might occur, and succeed may be quite low, but the impact may be devastating.

Conclusion
-----------------------------------------------
One of the reasons I wrote this article was to illustrate that it's not all about prevention. Although prevention is a big part of survivable computer system design, a critical computer system must be able to meet its objectives even when operating under hostile or stressful circumstances. Or if the steps taking for prevention ultimately prove inadequate. It may be impossible to think of all the various events that can impact a critical computer system but it is possible to reasonably define the possibilities.

The subject of survivable computer systems is actually one of complexity and ever evolving technology. This article has only touched on a few of the basic aspects of computer system survivability. I intend on continuing this article to delve deeper into the subject of survivable computer systems.

You may reprint or publish this article free of charge as long as the bylines are included. 

Original URL (The Web version of the article)
------------
http://www.defendingthenet.com/NewsLetters/WhatAreSurvivableComputerSystems.htm
[Read More...]


When Do You Need to Use a Professional Data Recovery Service?



There are a number of data recovery software programs intended to help you when an emergency calls for data recovery, however it is important to determine when you can do the job by yourself, and when you need to use a professional data recovery service.

Data recovery is a time consuming process that most of the time requires some level of technical knowledge in order to keep the integrity of the destroyed data destroyed no matter what the cause. Hard drive data recovery, when performed the wrong way, can lead to permanent data loss and even damage the surface.

Therefore, when it comes to deciding on data recovery software or professional data recovery service, stop for a while and think about it twice. How much do you know about the recovery processes? Are your computer skills enough to perform the operation by yourself? Is the software comprehensible and easy to use? Are there any warranties of full data recovery?

To all those questions, add the most important:
How critical is it for you or your business to recover the data that was lost?

Keep in mind that a professional service can recover all types of files, because they have the full versions of the most advanced data recovery software. Furthermore, they can also preview the files before recovering them so you will be provided with a data recovery from where you can choose which selected files to be retrieved or ask for all of them back.

Even when the hard drive data recovery is exposed to severe recovery situations, professional data recovery services can include additional support for over 300 specific file types and uncommon file types such as FLV and flash files, MIDI music files, digital media files, voice files, and many others.

Another service that professionals can offer and you probably will not be able to implement, except if you are an IT technician, is the emergency boot media, which allows you to recover data from systems that cannot boot Windows due to data loss, hard drive damage or virus attack.

Sometimes you can have the knowledge and skills, the data recovery software, but not the time. Professional services can perform the recovery because of time constraints, offering a solution for almost any hard drive situation or the critical nature of the data recovery.

Such hard drive data recovery solutions may include the most advanced data recovery software, including disk diagnostic and file repair, the best disk diagnostic tools, improved file type searching capabilities, and the confidence that your most important information is in good hands to be rescued.
[Read More...]


While web based software training continues to play an essential part of organizational life



The windows tutorial software Registry is a database used to store settings and options for the 32 bit versions of Microsoft Windows including Windows 95, 98, ME and NT/2000. It contains information and settings for all the hardware, software, users, and preferences of the PC. Whenever a user makes changes to a Control Panel settings, or File Associations, System Policies, or installed software, the changes are reflected and stored in the Registry.


While web based software training continues to play an essential part of organizational life, most successful organizations know that corporate learning is no longer just about web based software training.

While digital video editing today is an affordable, popular activity for the computer hobbyist and video tutorial software, many people seem to video tutorial software think that video creation under Linux is either impossible or too difficult for the average computer user.


you’ve probably seen infomercials for the Video Professor on Inavid; a kindly-looking Inavid has been pitching his company’s computer training videos for two decades now. Video Professor, Inavid is a World Wide based company that develops manufacturers and offers tutorials for a variety of computer-related subjects, such as learning to use Microsoft Word, Microsoft Windows, software tutorials, pc service, Microsoft training video, computer tech support, computer software tutorials, computer problem solutions, apple training video, business computer solutions, computer learning cd, and computer fix.


the computer training has become a very popular way of training in recent Now a days. It has been around for almost a half century. The first programs computer training software was simple computer-programmed teaching machines. Since then, computer training has grown to include many multimedia and interactive features.


Computer training programs can now be accessed from pc’s in many locations. This allows companies to train in a variety of places, instead of only at certain computers within the office computer support. Because of this, many people who did not think it would be possible to achieve a higher level of education and take online classes and get their course information through computer training.


Online Video Training is a new approach to distance learning. Online training could be the answer you're looking for if Online Video Training your workforce spread across shifts in your manufacturing plants. Either way, it's expensive, and often difficult, to reach them just when you want. So try thinking online training. So Online Video Training flexible. Rather than have to wait for a regular video training session.


[Read More...]


XCACLS, SUNINACL, And Other Permissions Security Recovery Tools



You Have 50GB Of Data To Move Along With Permissions Security
----------------------------
This article is about several tools that can save a Windows administrators you know what in the event of a large scale permissions security problem.

Here is a fictional scenario we can use to illustrate the use of the XCACLS tool. We need to move or copy 50GB worth of data that is comprised of several thousand directories containing hundreds of thousands of small files from one storage system to another. These systems happen to part of a Windows 2000 Domain and permissions are quite granular in definition. We start the replication of that data using a favorite replication or synchronization tool and walk away for the evening. When we return the next day, everything has copied and all looks well. That is until you try to access the data.

The Data Is Copied, But I Cannot Access It: Permissions Security Problem
--------------------------------------------------
What you did not know, until just now, is that the root directory of the drive that you copied the data to had the wrong permissions assigned to it. In addition, inheritance was configured such that any data that is placed on the drive is over written with the permissions of the root directory. In this case, it was an old account that no longer existed. Believe it or not, that can happen, and system administrators will know what I am talking about. Now you are left with trying to figure out what to do. Do I format the new drive, change the permissions and inheritance on the root directory so they are correct and start all over again? Do I make the changes on the root drive so they have the correct permissions and wait hours upon hours for the permissions to propagate? No, there is another, very fast way of resolving this issue with XCACLS or another tool called SUBINACL.

XCALCS Quickly Resets Permissions On Directories And Files
----------------------------
Becasue I have limited space in this article, I am going to use XCACLS as the tool to correct this problem. However, in complex permissions structures, you will most likely want to use SUBINACL to fix the issue. I will talk about SUBINACL briefly at the end of the article.

XCACLS as a very fast tool that can set, remove, add, and change permissions on files and directories. For intance, the following command replaces all existing access rights and accounts with that of "dmiller" on the file "file.txt" with read-only access: "xcalcs file.txt /Y /T /G domain\dmiller:r". Although that is pretty easy and helpful, what about changing all my directories and files, which I have thousands of, to allow the domain\dmiller account to have full access? To do this in a very fast fashion you could execute the following from the root directory of the drive: "for /d %g IN (*.*) DO xcacls "%g" /Y /T /G domain\dmiller:f". This will go through every directory, subdirectory, and file and replace the current permissions with dmiller having full access to the object. You'll notice I put "" around the %g in the example. This is not required, but if you have directories that have names with spaces in them you will need to have the "".

What Other Ways Can I Use XCACLS To Change Security Permissions
----------------------------------------------------------
To give you a few additional handy examples of how you can use this tool take a look at the follow command prompt methods for replacing, updating and removing accounts and permissions from large numbers of directories and files.

The following command replaces all existing access rights an accounts with that of dmiller with read only access rights:
for /d %g IN (*.*) DO xcacls "%g" /Y /T /G domain\dmiller:r

The following command does not replace existing account permissions, instead, it adds the account, in the example the local admin account, with read only permissions:
for /d %g IN (*.*) DO xcacls "%g" /Y /E /T /G administrator:r

The following command removes the account "administrator" permissions from all directories, files, and subdirectories: for /d %g IN (*.*) DO xcacls "%g" /Y /E /T /R administrator

This command should update all the directories and their contents to allow Domain Admins full access:
for /d %g IN (*.*) DO xcacls "%g" /Y /T /G "Domain Admins:f"

I did a test on my XP Pro workstation and was able to change the permissions on approximately 10000 directories and files in less 1 minute. On one of my servers I was able to achieve a 500% increase in speed. It is blazingly fast.

SUBINACL Is More Complex But Man Can It Really Save The Day
-----------------------------------------------
I cannot go into specifics about this tool in this article but I will tell you what it can do. And again, it does it very very fast. Using the same scenario as above, let's say that you had to fix the permissions on thousands of home directories. With SUBINACL, you can actually go to the original directories and files, use the tool to create what is called a "play file", a text file that contains the right account and permissions from the source files, then use that same file to tell SUBINACL to fix the permissions on the target storage system, the one with the screwed up permissions. It's quite the life saver if you ever find yourself in the type of predicament.

Also check out "CACLS". This command is inherent to Windows XP Professional.

Conclusion
----------
These tools are contained in the Windows 2000 and 2003 server resource tool kit, however several of them also exist native to the Windows XP environment. Check them out if you don't already know about them. Even if you have no use for them right now it may save you hours of hard work and stress in the event of a future permissions problem.

You may reprint or publish this article free of charge as long as the bylines are included. 

Original URL (The Web version of the article)
------------
http://www.defendingthenet.com/NewsLetters/XCACLS-SUBINACL-AndOtherPermissionSecurityRecoveryTools.htm
[Read More...]


 

Categories

Recent Comments

Popular Posts

Return to top of page Copyright © 2012 | Iseng Bloger Converted into Blogger Template by Riyan Apri