<?xml version="1.0" encoding="utf-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title><![CDATA[[SecurityRatty] tag: device]]></title>
    <link>http://securityratty.com/tag/device</link>
    <description></description>
    <pubDate>Fri, 01 Aug 2008 11:12:37 +0000</pubDate>
    <generator>iRatty Engine</generator>
    <docs>http://blogs.law.harvard.edu/tech/rss</docs>
    <item>
      <title><![CDATA[Magic Quadrant for Application Delivery Controllers]]></title>
      <link>http://securityratty.com/article/224089e5d76323e4bbe5b8297445e9f4</link>
      <guid>http://securityratty.com/article/224089e5d76323e4bbe5b8297445e9f4</guid>
      <description><![CDATA[Source: Citrix) Gartner summarizes its view on Application Delivery Controllers, evaluates strengths and weaknesses of solutions, and provides Magic Quadrant reporting for a quick comparison across...]]></description>
      <content:encoded><![CDATA[<b>(Source: Citrix)</b> Gartner summarizes its view on Application Delivery Controllers, evaluates strengths and weaknesses of solutions, and provides Magic Quadrant reporting for a quick comparison across all vendors.  Learn from Gartner how you can benefit from an all-in-one device like Citrix NetScaler that delivers the highest levels of availability, performance and security.
<p><a href="http://feeds.computerworld.com/~a/Computerworld/Security/News?a=71TQZs"><img src="http://feeds.computerworld.com/~a/Computerworld/Security/News?i=71TQZs" border="0"></img></a></p><img src="http://feeds.computerworld.com/~r/Computerworld/Security/News/~4/378143212" height="1" width="1"/>]]></content:encoded>
      <pubDate>Fri, 29 Aug 2008 09:00:00 +0000</pubDate>
      <category domain="http://securityratty.com/tag/application delivery controllers">application delivery controllers</category>
      <category domain="http://securityratty.com/tag/magic quadrant">magic quadrant</category>
      <category domain="http://securityratty.com/tag/citrix">citrix</category>
      <category domain="http://securityratty.com/tag/citrix netscaler">citrix netscaler</category>
      <category domain="http://securityratty.com/tag/gartner">gartner</category>
      <category domain="http://securityratty.com/tag/quick comparison">quick comparison</category>
      <category domain="http://securityratty.com/tag/all-in-one device">all-in-one device</category>
      <category domain="http://securityratty.com/tag/source">source</category>
      <category domain="http://securityratty.com/tag/solutions">solutions</category>
      <source url="http://feeds.computerworld.com/~r/Computerworld/Security/News/~3/378143212/whitepapers.do">Magic Quadrant for Application Delivery Controllers</source>
    </item>
    <item>
      <title><![CDATA[Simple Method Allows iPhone Passcode Lock To Be Bypassed]]></title>
      <link>http://securityratty.com/article/df9c8e492352dce3154e1a0eb42c5ae2</link>
      <guid>http://securityratty.com/article/df9c8e492352dce3154e1a0eb42c5ae2</guid>
      <description><![CDATA[According to ZDNet, the feature which lets users set a four-digit pincode to limit access to the device, can be easily bypassed with a few finger taps on the iPhone to give an intruder access to...]]></description>
      <content:encoded><![CDATA[According to ZDNet, the feature which lets users set a four-digit pincode to limit access to the device, can be easily bypassed with a few finger taps on the iPhone to give an intruder access to sensitive information.
Here are the steps to exploit this vulnerability (requires physical access to a passcode-protected device) to access the [...]]]></content:encoded>
      <pubDate>Thu, 28 Aug 2008 13:12:24 +0000</pubDate>
      <category domain="http://securityratty.com/tag/access">access</category>
      <category domain="http://securityratty.com/tag/limit access">limit access</category>
      <category domain="http://securityratty.com/tag/intruder access">intruder access</category>
      <category domain="http://securityratty.com/tag/requires physical access">requires physical access</category>
      <category domain="http://securityratty.com/tag/iphone">iphone</category>
      <category domain="http://securityratty.com/tag/device">device</category>
      <category domain="http://securityratty.com/tag/four-digit pincode">four-digit pincode</category>
      <category domain="http://securityratty.com/tag/sensitive information">sensitive information</category>
      <category domain="http://securityratty.com/tag/finger taps">finger taps</category>
      <source url="http://cyberinsecure.com/simple-method-allows-iphone-passcode-lock-to-be-bypassed/">Simple Method Allows iPhone Passcode Lock To Be Bypassed</source>
    </item>
    <item>
      <title><![CDATA[Run Through PCI DSS 1.2 Changes]]></title>
      <link>http://securityratty.com/article/ce0e02f57e234e1b64d186272da31186</link>
      <guid>http://securityratty.com/article/ce0e02f57e234e1b64d186272da31186</guid>
      <description><![CDATA[Finally, I found time to read PCI DSS 1.2. change doc. So
Good news: router is now officially a firewall (it has been for a while, but many people are still stuck in &quot;security device&quot; vs &quot;network...]]></description>
      <content:encoded><![CDATA[<p>Finally, I found time to read PCI DSS 1.2. change doc. So:</p>  <ul>   <li>Good news: router is now officially a firewall (it has been for a while, but many people are still stuck in &quot;security device&quot; vs &quot;network device&quot; cloud) - see Req 1 </li>    <li>From the &quot;WTH dept&quot;: anti-virus is a MUST on <strong>ALL</strong> platforms - Req 5. Please ship me some of the stuff they are smoking; I want it! BTW, I am <a href="http://www.govcert.nl/symposium/index.html">going to Amsterdam soon</a> :-) </li>    <li>WAF or code review for web application security is still a stupid &quot;OR&quot; - Req 6.6. OMG, please, <a href="http://www.tssci-security.com/archives/2008/06/27/week-of-war-on-wafs-day-5-final-thoughts/">software security folks</a>, teach them the truth.</li>    <li>Can we kill &quot;plain text passwords&quot; once and for all? Req 8 tries to achieve that noble goal (good thing!) </li>    <li>Visit your offsite data storage - good (if costly) idea - added to Req 9. Requirements to secure electronic AND&#160; paper media&#160; are solid too.</li>    <li>Love it, love it! Req 10 explains that logs needs to be actually available: 'three months of audit trail history must be &#8220;<strong>immediately available for analysis</strong>&#8221; or <strong>quickly accessible'</strong> (bye-bye, silly log dumps...)</li>    <li>Some vulnerability stuff clarified in Req 11, mostly about ASVs and pentesting.</li>    <li>Scope of security policy is expanded to &quot;employee-facing technologies&quot; (what a term!) - Req 12</li>    <li>All over: more references to wireless&#160; (WEP, access points, hidden SSIDs, etc) - indeed, recent data losses are often due to insecure wireless.</li> </ul>  <p>Overall, a minor change that, sadly, doesn't touch a few KEY areas, such as virtualization, for one.</p>  <div class="blogger-post-footer">About me: http://www.chuvakin.org</div><div class="feedflare">
<a href="http://feeds.feedburner.com/~f/AntonChuvakinPersonalBlog?a=oED2TK"><img src="http://feeds.feedburner.com/~f/AntonChuvakinPersonalBlog?i=oED2TK" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/AntonChuvakinPersonalBlog?a=pUb9XK"><img src="http://feeds.feedburner.com/~f/AntonChuvakinPersonalBlog?i=pUb9XK" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/AntonChuvakinPersonalBlog?a=bX5cGK"><img src="http://feeds.feedburner.com/~f/AntonChuvakinPersonalBlog?i=bX5cGK" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/AntonChuvakinPersonalBlog/~4/375460383" height="1" width="1"/>]]></content:encoded>
      <pubDate>Tue, 26 Aug 2008 07:38:00 +0000</pubDate>
      <category domain="http://securityratty.com/tag/req">req</category>
      <category domain="http://securityratty.com/tag/pci dss">pci dss</category>
      <category domain="http://securityratty.com/tag/offsite data storage">offsite data storage</category>
      <category domain="http://securityratty.com/tag/insecure wireless">insecure wireless</category>
      <category domain="http://securityratty.com/tag/audit trail history">audit trail history</category>
      <category domain="http://securityratty.com/tag/silly log dumps">silly log dumps</category>
      <category domain="http://securityratty.com/tag/wireless">wireless</category>
      <category domain="http://securityratty.com/tag/plain text passwords">plain text passwords</category>
      <category domain="http://securityratty.com/tag/vulnerability stuff">vulnerability stuff</category>
      <source url="http://feeds.feedburner.com/~r/AntonChuvakinPersonalBlog/~3/375460383/run-through-pci-dss-12-changes.html">Run Through PCI DSS 1.2 Changes</source>
    </item>
    <item>
      <title><![CDATA[Again, On Laptops and US Borders]]></title>
      <link>http://securityratty.com/article/2bd5c499e76fb2d415311b593b194e2f</link>
      <guid>http://securityratty.com/article/2bd5c499e76fb2d415311b593b194e2f</guid>
      <description><![CDATA[According to the U.S. Department of Homeland Security (DHS), Customs and Border Protection (CBP) officers can confiscate and detain travelers' laptops at the U.S. border without suspicion of...]]></description>
      <content:encoded><![CDATA["According to the <a href="http://www.dhs.gov/index.shtm" rel="nofollow" target="_blank">U.S. Department of Homeland Security</a> (DHS), Customs and Border Protection (CBP) officers can confiscate and detain travelers' laptops at the U.S. border <span style="font-weight: bold;">without suspicion of wrongdoing. </span>Laptops can be taken to an off-site location for an undisclosed period of time, during which officials may examine the computer's contents and share copies of files with other agencies. This policy applies to any other form of digital or analog storage device, including iPods, cell phones, flash drives, hard drives, and tapes." (<a href="http://www.smartertravel.com/blogs/today-in-travel/your-laptop-may-be-detained-at-border.html?id=2644757&amp;source=rss_today-in-travel">source</a>)<br /><br />"The key to the above paragraph, of course, is "without suspicion of wrongdoing." Indeed, in the <a href="http://www.cbp.gov/linkhandler/cgov/travel/admissability/search_authority.ctt/search_authority.pdf" target="_blank">policy</a> (PDF), DHS says (emphasis mine), "In the course of a border search, and <em>absent individualized suspicion</em>, officers can review and analyze the information transported by any individual attempting to enter, reenter, depart, pass through, or reside in the United States."" (<a href="http://www.smartertravel.com/blogs/today-in-travel/your-laptop-may-be-detained-at-border.html?id=2644757&amp;source=rss_today-in-travel">source</a>)<br /><br />Fun question that was brought by someone on a security mailing list: <span style="font-style: italic;">if your employer-owned laptop is "captured" by DHS, TSA or Customs AND it has regulated information on it (CCs, SSNs, PHUI, etc), do you have to report it as "data loss"?</span>  The chances of that info being lost are definitely much, much higher now AND the control over such data is clearly not in your hands anymore... Niiiiice.<div class="blogger-post-footer">About me: http://www.chuvakin.org</div><div class="feedflare">
<a href="http://feeds.feedburner.com/~f/AntonChuvakinPersonalBlog?a=HfDTPK"><img src="http://feeds.feedburner.com/~f/AntonChuvakinPersonalBlog?i=HfDTPK" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/AntonChuvakinPersonalBlog?a=0fuf5K"><img src="http://feeds.feedburner.com/~f/AntonChuvakinPersonalBlog?i=0fuf5K" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/AntonChuvakinPersonalBlog?a=RHgWqK"><img src="http://feeds.feedburner.com/~f/AntonChuvakinPersonalBlog?i=RHgWqK" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/AntonChuvakinPersonalBlog/~4/363162188" height="1" width="1"/>]]></content:encoded>
      <pubDate>Tue, 12 Aug 2008 07:00:00 +0000</pubDate>
      <category domain="http://securityratty.com/tag/border protection">border protection</category>
      <category domain="http://securityratty.com/tag/laptops">laptops</category>
      <category domain="http://securityratty.com/tag/border">border</category>
      <category domain="http://securityratty.com/tag/data loss">data loss</category>
      <category domain="http://securityratty.com/tag/homeland security">homeland security</category>
      <category domain="http://securityratty.com/tag/analog storage device">analog storage device</category>
      <category domain="http://securityratty.com/tag/policy applies">policy applies</category>
      <category domain="http://securityratty.com/tag/security">security</category>
      <category domain="http://securityratty.com/tag/suspicion">suspicion</category>
      <source url="http://feeds.feedburner.com/~r/AntonChuvakinPersonalBlog/~3/363162188/again-on-laptops-and-us-borders.html">Again, On Laptops and US Borders</source>
    </item>
    <item>
      <title><![CDATA[iPhone Feature Discovered By Hacker Allows Apple To Remotely Disable Unwanted Apps]]></title>
      <link>http://securityratty.com/article/cef567a4c4e8ec04522ec9b7630e4591</link>
      <guid>http://securityratty.com/article/cef567a4c4e8ec04522ec9b7630e4591</guid>
      <description><![CDATA[According to iPhone hacker Jonathan Zdziarski, Apple has prepared a blacklisting system which allows the company to remotely disable applications on any iPhone device. Apparently, the new 2.x firmware...]]></description>
      <content:encoded><![CDATA[According to iPhone hacker Jonathan Zdziarski, Apple has prepared a blacklisting system which allows the company to remotely disable applications on any iPhone device. Apparently, the new 2.x firmware contains a URL which points to a page containing a list of &#8220;unauthorized&#8221; apps, a move which suggests that the device makes occasional contact with Apple&#8217;s [...]]]></content:encoded>
      <pubDate>Mon, 11 Aug 2008 10:55:39 +0000</pubDate>
      <category domain="http://securityratty.com/tag/iphone device">iphone device</category>
      <category domain="http://securityratty.com/tag/remotely disable applications">remotely disable applications</category>
      <category domain="http://securityratty.com/tag/device">device</category>
      <category domain="http://securityratty.com/tag/apple">apple</category>
      <category domain="http://securityratty.com/tag/apps">apps</category>
      <category domain="http://securityratty.com/tag/occasional contact">occasional contact</category>
      <category domain="http://securityratty.com/tag/apparently">apparently</category>
      <category domain="http://securityratty.com/tag/suggests">suggests</category>
      <category domain="http://securityratty.com/tag/move">move</category>
      <source url="http://cyberinsecure.com/iphone-feature-discovered-by-hacker-allows-apple-to-remotely-disable-unwanted-apps/">iPhone Feature Discovered By Hacker Allows Apple To Remotely Disable Unwanted Apps</source>
    </item>
    <item>
      <title><![CDATA[WarDriving is so 2000. Here comes WarShipping.]]></title>
      <link>http://securityratty.com/article/160e3dde8d84bf0e65913dbb8676f1d6</link>
      <guid>http://securityratty.com/article/160e3dde8d84bf0e65913dbb8676f1d6</guid>
      <description><![CDATA[Imnot talking shipping as in boats, but shipping as in packages. David Maynor is giving a talk at Black Hat on his newest experiment: using a small and cheap WiFi platform that is remotely...]]></description>
      <content:encoded><![CDATA[<p>I&#8217;m not talking shipping as in boats, but shipping as in packages.  David Maynor is giving a talk at Black Hat on his newest experiment: using a small and cheap WiFi platform that is remotely accessible over a WAN perform WiFi surveillance inside of a package delivered right to your victim.  Guess what the cheap platform is?  An iPhone of course.  George Ou has some pictures and more details in his blog posting, <a href="http://www.formortals.com/Default.aspx?tabid=36&amp;EntryID=97">The iPhone wireless LAN Ownage in a Box.</a></p>
<p>This new remote WiFi attack is particularly timely as a new <a href="http://wbztv.com/local/hacking.identity.theft.2.788265.html">indictment of 11 for ID theft of over 100 Million credit cards </a>(watch video to see Veracode&#8217;s CEO) was handed down this week.  Guess how they got in?  They used War Driving to get on insecure internal WiFi networks and then used the internal access to install sniffing software.  The attackers were mostly from foriegn countries and the companies attacked in the US.  So at some point someone must have been in the country to physically scan the networks. </p>
<p>David Maynor&#8217;s WarShipping trick solves this &#8220;need to be there&#8221; problem  to do wireless attacks.  Why travel and risk being physically apprehended when you can just mail a package with a WiFi and WAN enabled device and just hack remotely? </p>
<p>We will have to see how insecure these businesses that need to be PCI compliant are now that this massive WiFi attack has been made public.  I find it takes a widely publicized attack of your organization or a close peer to actually get many security problems fixed.  I bet some retailer&#8217;s IT departments started scambling after this was made public.</p>
<p>Attackers like to keep updating their methods just ahead of compliance requirements.  Sometimes I think that becoming compliant is protecting yourself from last year&#8217;s attack due to the lag time between attacks becoming prevelant, compliance standards changing, and then organizations making security updates to meet complaince.</p>
<p>With application security we may already be a little behind.  PCI requirement 6.6 kicked in June 2008 and requires organizations handling credit card data to audit their applications for the vulnerability classes outlined in OWASP Top Ten 2004 (yes, note the lag time).  I fear a 100 Million ID theft scale compromise is still looming using application security attacks.</p>
]]></content:encoded>
      <pubDate>Thu, 07 Aug 2008 20:51:35 +0000</pubDate>
      <category domain="http://securityratty.com/tag/massive wifi attack">massive wifi attack</category>
      <category domain="http://securityratty.com/tag/wifi">wifi</category>
      <category domain="http://securityratty.com/tag/application security attacks">application security attacks</category>
      <category domain="http://securityratty.com/tag/attacks">attacks</category>
      <category domain="http://securityratty.com/tag/application security">application security</category>
      <category domain="http://securityratty.com/tag/attack">attack</category>
      <category domain="http://securityratty.com/tag/cheap wifi platform">cheap wifi platform</category>
      <category domain="http://securityratty.com/tag/security">security</category>
      <category domain="http://securityratty.com/tag/lastyears attack due">lastyears attack due</category>
      <source url="http://www.veracode.com/blog/?p=171">WarDriving is so 2000. Here comes WarShipping.</source>
    </item>
    <item>
      <title><![CDATA[WarDriving Is So 2000 Here Comes WarShipping]]></title>
      <link>http://securityratty.com/article/cb2e8129a0d1de629018d75f0d2eeceb</link>
      <guid>http://securityratty.com/article/cb2e8129a0d1de629018d75f0d2eeceb</guid>
      <description><![CDATA[Im not talking shipping as in boats, but shipping as in packages. David Maynor is giving a talk at Black Hat on his newest experiment: using a small and cheap WiFi platform that is remotely accessible...]]></description>
      <content:encoded><![CDATA[<p>I&#8217;m not talking shipping as in boats, but shipping as in packages.  David Maynor is giving a talk at Black Hat on his newest experiment: using a small and cheap WiFi platform that is remotely accessible over a WAN perform WiFi surveillance inside of a package delivered right to your victim.  Guess what the cheap platform is?  An iPhone of course.  George Ou has some pictures and more details in his blog posting, <a href="http://www.formortals.com/Default.aspx?tabid=36&amp;EntryID=97">The iPhone wireless LAN Ownage in a Box.</a></p>
<p>This new remote WiFi attack is particularly timely as a new <a href="http://wbztv.com/local/hacking.identity.theft.2.788265.html">indictment of 11 for ID theft of over 100 Million credit cards </a>(watch video to see Veracode&#8217;s CEO) was handed down this week.  Guess how they got in?  They used War Driving to get on insecure internal WiFi networks and then used the internal access to install sniffing software.  The attackers were mostly from foriegn countries and the companies attacked in the US.  So at some point someone must have been in the country to physically scan the networks. </p>
<p>David Maynor&#8217;s WarShipping trick solves this &#8220;need to be there&#8221; problem  to do wireless attacks.  Why travel and risk being physically apprehended when you can just mail a package with a WiFi and WAN enabled device and just hack remotely? </p>
<p>We will have to see how insecure these businesses that need to be PCI compliant are now that this massive WiFi attack has been made public.  I find it takes a widely publicized attack of your organization or a close peer to actually get many security problems fixed.  I bet some retailer&#8217;s IT departments started scambling after this was made public.</p>
<p>Attackers like to keep updating their methods just ahead of compliance requirements.  Sometimes I think that becoming compliant is protecting yourself from last year&#8217;s attack due to the lag time between attacks becoming prevelant, compliance standards changing, and then organizations making security updates to meet complaince.</p>
<p>With application security we may already be a little behind.  PCI requirement 6.6 kicked in June 2008 and requires organizations handling credit card data to audit their applications for the vulnerability classes outlined in OWASP Top Ten 2004 (yes, note the lag time).  I fear a 100 Million ID theft scale compromise is still looming using application security attacks.</p>
]]></content:encoded>
      <pubDate>Thu, 07 Aug 2008 20:51:35 +0000</pubDate>
      <category domain="http://securityratty.com/tag/massive wifi attack">massive wifi attack</category>
      <category domain="http://securityratty.com/tag/wifi">wifi</category>
      <category domain="http://securityratty.com/tag/application security attacks">application security attacks</category>
      <category domain="http://securityratty.com/tag/attacks">attacks</category>
      <category domain="http://securityratty.com/tag/application security">application security</category>
      <category domain="http://securityratty.com/tag/attack">attack</category>
      <category domain="http://securityratty.com/tag/attack due">attack due</category>
      <category domain="http://securityratty.com/tag/cheap wifi platform">cheap wifi platform</category>
      <category domain="http://securityratty.com/tag/security">security</category>
      <source url="http://www.veracode.com/blog/2008/08/wardriving-is-so-2000-here-comes-warshipping/">WarDriving Is So 2000 Here Comes WarShipping</source>
    </item>
    <item>
      <title><![CDATA[Apptis and USNS Mercy Monitoring on the High Seas]]></title>
      <link>http://securityratty.com/article/32ab3189b54d8e46b467ebbf87db32e0</link>
      <guid>http://securityratty.com/article/32ab3189b54d8e46b467ebbf87db32e0</guid>
      <description><![CDATA[Meet Mike Lawson, Pre-Sales Engineer at Apptis, a leading system integrator and ScienceLogic partner that has deployed EM7 to meet the network, systems and application management needs of several...]]></description>
      <content:encoded><![CDATA[<p><img style="border-right: 0px; border-top: 0px; margin: 0px 10px 10px 0px; border-left: 0px; border-bottom: 0px" height="244" alt="mike2 (Small)" src="http://blog.sciencelogic.com/wp-content/uploads/2008/08/mike2-small.jpg" width="204" align="left" border="0"> Meet Mike Lawson, Pre-Sales Engineer at Apptis, a leading system integrator and ScienceLogic partner that has deployed EM7 to meet the network, systems and application management needs of several customers. We thought Mike would have an interesting perspective to share on EM7, having recently come from the “customer side” and already with a few deployments under his belt.
<p><b>ScienceLogic: Mike, what’s your background working with network and management system tools?</b>
<p><b>Mike Lawson: </b>Before joining Apptis, I worked for the Air Force, mainly in satellite communications for almost nine years. I’m probably most familiar with HP OpenView and BMC Remedy. I managed a team that used them but wasn’t involved in tool selection; like many other federal IT workers, we didn’t have a choice of tools because there were existing enterprise licenses and maintenance contracts.
<p>I also saw a large systems integrator do a full Remedy/Crystal Systems/OpenView installation. It took 6 weeks to stand up and customize to meet just the basic monitoring requirements, and it cost something like half a million dollars. At the time, I thought that wasn’t bad and was a pretty typical experience.
<p><b>ScienceLogic: Coming from where you did, what’s your take on EM7?</b>
<p><strong>Mike Lawson:</strong> Honestly, I didn’t believe that EM7 could really do all that it claimed. In many ways, it was the complete opposite of what I had seen first-hand with other monitoring solutions. Could it really cover that much functionality? At relatively much lower cost to the customer and without the licensing nightmare?
<p>That quickly changed when I needed to understand the system enough to run it at a customer’s site. I went back over the training docs I received during my initial training class and jumped in; now, 6 months later, I’m the EM7 expert and can tell you that it delivers on all those promises. (But I still need to show people to get them to believe it too)
<p>I preach the “EM7 gospel” and when anyone wants to talk monitoring, I ask about the universal pain points: cost, maintenance contracts and licensing, and then I explain EM7. The cost difference is real; the solution is based on capacity, so there’s no licensing and it’s easy to use. They are shocked to learn that they can buy multiple EM7 appliances and years of maintenance for what they paid for most other tools.
<p><b>ScienceLogic: Apptis won the contract for monitoring aboard the USNS Mercy. We love that you’re using EM7 for one of the Navy’s hospital ships. Can you tell us more?</b>
<p><strong>Mike Lawson:</strong> The USNS Mercy is a Military Sealift Command hospital ship. <a href="http://www.navy.mil/navydata/fact_display.asp?cid=4400&amp;tid=400&amp;ct=4" target="_blank">Some stats</a>:
<ul>
<li>849 feet long (nearly the size of a football field)
<li>12 fully-equipped operating rooms, a 1,000 bed hospital facility, digital radiological services, a diagnostic and clinical laboratory, a pharmacy, an optometry lab, a CAT scan and two oxygen producing plants
<li>Crew: 61 civilian mariners, 956 Naval medical staff, and 259 Naval support staff</li>
</ul>
<p>The USNS recently departed on a five-month humanitarian mission in the Western Pacific and Southeast Asia in support of Pacific Partnership 2008. The partnership provides international medical, dental and engineering teams this summer to provide humanitarian support and conduct joint, combined, and cooperative Civil-Military Operations in order to improve regional stability and build partner capacity to respond to natural disasters and pandemic.
<p>For the most part, the ship’s network is self-contained, but can also use a landline when docked. The network covers 400 devices, including Windows/Exchange servers and VMware for server virtualization. Prior to using EM7, none of the monitoring was integrated; each system was independently monitored through individual vendor-specific consoles.
<p>Out of the box, EM7 provided integrated systems, application and network management for all network gear, applications and virtual machines in one solution. We didn’t have to do a lot of customization – EM7 includes best-practice based thresholds, event and monitoring templates and this covered what USNS Mercy needed to monitor.
<p><b>ScienceLogic: You’re a systems integrator with a very useful “customer point of view” when it comes to looking at tools. From that perspective, can you share what you think are the biggest benefits that EM7 provides?</b>
<p><strong>Mike Lawson:</strong> First of all, EM7 stands up right away. We’re talking days, not weeks. In contrast to the lengthy installation of OpenView and Remedy I witnessed during my military career, I was able to configure, customize, and implement the EM7 solution for the USNS Mercy in three days.
<p>Second, it’s easy to train people on and the support is outstanding. This judgment is from first-hand experience. Right before the USNS Mercy departed on its latest voyage, the system administrator I had trained on EM7 left, so I had all of a day to train some new EM7 admins. I prepared a seven-page “cheat sheet” and over a 3-hour conference call, we walked through the entire EM7 solution; I haven’t gotten a support call since.
<p>And when a problem did crop up with a device being discovered incorrectly, ScienceLogic was very responsive. We contacted ScienceLogic support on a Saturday and they created and emailed us a video to help troubleshoot the same day. Within 30 seconds of watching the video, the problem was resolved.
<p>Finally, EM7 helps us be good stewards of the government’s money. This is very important to me personally and to Apptis as a company. Because EM7 is cheaper and deploys so quickly and easily, you might think that it’s just the opposite of what a system integrator would want to use. But that’s short-term thinking. We believe in deliver the most value for customers every time. It’s what creates trust and long-term relationships with our customers. Instead of that half million spent on standing up the solution and basic setup, I’d much rather (and I know the customer would rather) spend that on fine-tuning or extending the solution to do much, much more.
<p>As a former government employee, I know what it’s like to use a tool that doesn’t fit my needs. EM7 proves that the best solution can totally break the old model of costly, lengthy installations. EM7 has the right model: the right solution and the right price delivered as an appliance that is easy to deploy, train on and use. </p>
<p><a href="http://sharethis.com/item?&wp=abc&amp;publisher=ea11358c-69de-4e80-9804-e964a8930b70&amp;title=Apptis+and+USNS+Mercy+%26ndash%3B+Monitoring+on+the+High+Seas&amp;url=http%3A%2F%2Fblog.sciencelogic.com%2Fapptis-and-usns-mercy-monitoring-on-the-high-seas%2F08%2F2008">ShareThis</a></p>]]></content:encoded>
      <pubDate>Thu, 07 Aug 2008 11:59:40 +0000</pubDate>
      <category domain="http://securityratty.com/tag/solution">solution</category>
      <category domain="http://securityratty.com/tag/entire em7 solution">entire em7 solution</category>
      <category domain="http://securityratty.com/tag/em7">em7</category>
      <category domain="http://securityratty.com/tag/em7 gospel">em7 gospel</category>
      <category domain="http://securityratty.com/tag/em7 proves">em7 proves</category>
      <category domain="http://securityratty.com/tag/em7 admins">em7 admins</category>
      <category domain="http://securityratty.com/tag/multiple em7 appliances">multiple em7 appliances</category>
      <category domain="http://securityratty.com/tag/em7 solution">em7 solution</category>
      <category domain="http://securityratty.com/tag/explain em7">explain em7</category>
      <source url="http://blog.sciencelogic.com/apptis-and-usns-mercy-monitoring-on-the-high-seas/08/2008">Apptis and USNS Mercy Monitoring on the High Seas</source>
    </item>
    <item>
      <title><![CDATA[Object Refinement in CEP: Tracking Temperatures]]></title>
      <link>http://securityratty.com/article/4f0c3a73b377ca62b6ad376fd4626741</link>
      <guid>http://securityratty.com/article/4f0c3a73b377ca62b6ad376fd4626741</guid>
      <description><![CDATA[Our colleagues at Apama sharean interestinguse case, tracking the bodytemperature of someone walking in their recent press release
This use case is aclear example of a subfunction of complex event...]]></description>
      <content:encoded><![CDATA[<p>Our colleagues at <a href="http://www.progress.com/apama" target="_blank">Apama</a> share an interesting use case, <a href="http://newsroom.progress.com/phoenix.zhtml?c=86919&amp;p=NewsArticle&amp;id=1183176" target="_blank">tracking the body temperature of someone walking</a> in their recent press release.</p>
<p>This use case is a clear example of a subfunction of complex event processing, folks in the mult-sensor data fusion field (and <a href="http://www.thecepblog.com/what-is-complex-event-processing/" target="_blank">here</a> at The CEP Blog) refer to as <a href="http://www.thecepblog.com/2007/05/14/what-is-complex-event-processing-part-3/" target="_blank">event (object) refinement</a>, sometimes called &#8220;track and trace.&#8221;</p>
<p>The reason we call this processing function &#8220;event (object) refinement&#8221; is that, in the way the use case was described in the press release, the medical staff are basically tracking body temperature and comparing it to a key indicator to generate an alarm, in this case &#8220;body temperature too high.&#8221;   This is a simple event, not complex, because the level of inference is quite very low in an overall knowledge hierarchy.</p>
<p>For example, we cannot infer from the alarm that &#8220;body temperature too high&#8221; is caused by a previous medical condition.  There is no causality at this stage of the game.   We cannot infer from the alarm that the walker has embarked up a steep hill, and the body temperature is expected to exceed a key indicator for a period of time.</p>
<p>Looking at another complex event model,  the system does not (yet) combine all of the body temperatures of the entire group of walkers, correlated by the situation of an approaching thunderstorm, and infer that the walkers have increased their pace because they don&#8217;t want to be caught in a driving rainstorm with high winds.</p>
<p>In other words, tracking a single object like &#8220;body temperature&#8221; is a basic-step in a CEP application, but not really a CEP application yet, because to really be a complex event, there should be some inference of higher knowledge, or estimated situation.    For example, tracking and tracing the position of an aircraft is good data, but being able to infer the complex situation &#8220;potential mid-air crash&#8221; between two airplanes is better (defining a complex event vs simply tracking state changes).</p>
<p>Steam processing engines are well suited for track and trace processing of individual event objects, like a walker&#8217;s body temperature, or a similar temperature monitoring application from a network device, as demonstrated by the Apama use case.  Tracking events such as &#8220;temperature in an object reaches critical threshold&#8221; have been going on for decades, in your network, in your car,  in your washing machine, in as spacecraft, just about everywhere we sense-and-respond to temperature changes.</p>
<p>The real marvel of this application was not the event processing on the back end, but in the sensor network, comprised of the human body, an RFID sensor, and a transmission network to a centeralized data collection facility.</p>
]]></content:encoded>
      <pubDate>Thu, 07 Aug 2008 09:39:29 +0000</pubDate>
      <category domain="http://securityratty.com/tag/complex">complex</category>
      <category domain="http://securityratty.com/tag/complex event model">complex event model</category>
      <category domain="http://securityratty.com/tag/event">event</category>
      <category domain="http://securityratty.com/tag/walkers body temperature">walkers body temperature</category>
      <category domain="http://securityratty.com/tag/body temperature">body temperature</category>
      <category domain="http://securityratty.com/tag/complex event">complex event</category>
      <category domain="http://securityratty.com/tag/temperature">temperature</category>
      <category domain="http://securityratty.com/tag/simple event">simple event</category>
      <category domain="http://securityratty.com/tag/object">object</category>
      <source url="http://www.thecepblog.com/2008/08/07/object-refinement-in-cep-tracking-temperatures/">Object Refinement in CEP: Tracking Temperatures</source>
    </item>
    <item>
      <title><![CDATA[Frequent Flyers Have More to Fear than Terrorists]]></title>
      <link>http://securityratty.com/article/4f0de09022ef86598ef36907bcbcdfd1</link>
      <guid>http://securityratty.com/article/4f0de09022ef86598ef36907bcbcdfd1</guid>
      <description><![CDATA[The last international flight I took, I was frisked carefully when the security realized I had a laptop with me. At the time I was a student on a 6-month trip for foreign study. Today Im taking...]]></description>
      <content:encoded><![CDATA[<p>The last international flight I took, I was frisked carefully when the security realized I had a laptop with me. At the time I was a student on a 6-month trip for foreign study. Today I&#8217;m taking another flight but it&#8217;s only down to LA for a friend&#8217;s wedding. I&#8217;ve been researching how much luggage I can take on board, and it&#8217;s not much, considering I regularly carry a few heavy items everywhere with me - my laptop, and my dslr camera, and naturally a book and purse.</p>
<p>I also came across this tidbit online &#8212; the government has granted themselves the right to take any traveler&#8217;s laptops away on international flights, even if they have no reason for suspicion. Apparently this has been in place a while but they&#8217;re finally publicizing it.</p>
<blockquote><p>Federal agents may take a traveler&#8217;s laptop computer or other electronic device to an off-site location for an unspecified period of time without any suspicion of wrongdoing, as part of border search policies the <a rel="nofollow" target="_blank" href="http://www.washingtonpost.com/ac2/related/topic/U.S.+Department+of+Homeland+Security?tid=informline">Department of Homeland Security</a> recently disclosed.</p>
<p>Also, officials may share copies of the laptop&#8217;s contents with other agencies and private entities for language translation, data decryption or other reasons, according to the policies, dated July 16 and issued by two DHS agencies, <a rel="nofollow" target="_blank" href="http://www.washingtonpost.com/ac2/related/topic/U.S.+Customs+and+Border+Protection?tid=informline">U.S. Customs and Border Protection</a> and <a rel="nofollow" target="_blank" href="http://www.washingtonpost.com/ac2/related/topic/U.S.+Bureau+of+Immigration+and+Customs+Enforcement?tid=informline">U.S. Immigration and Customs Enforcement</a>.</p></blockquote>
<p>Read the<a rel="nofollow" target="_blank" href="http://www.washingtonpost.com/wp-dyn/content/article/2008/08/01/AR2008080103030.html"> full article</a> here.</p>]]></content:encoded>
      <pubDate>Fri, 01 Aug 2008 11:12:37 +0000</pubDate>
      <category domain="http://securityratty.com/tag/laptop">laptop</category>
      <category domain="http://securityratty.com/tag/travelers laptop computer">travelers laptop computer</category>
      <category domain="http://securityratty.com/tag/homeland security recently">homeland security recently</category>
      <category domain="http://securityratty.com/tag/security">security</category>
      <category domain="http://securityratty.com/tag/customs enforcement">customs enforcement</category>
      <category domain="http://securityratty.com/tag/border protection">border protection</category>
      <category domain="http://securityratty.com/tag/international flight">international flight</category>
      <category domain="http://securityratty.com/tag/customs">customs</category>
      <category domain="http://securityratty.com/tag/agencies">agencies</category>
      <source url="http://feeds.feedburner.com/~r/itsecurity/~3/353066110/">Frequent Flyers Have More to Fear than Terrorists</source>
    </item>
  </channel>
</rss>
