<?xml version="1.0" encoding="utf-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title><![CDATA[[SecurityRatty] tag: downtown]]></title>
    <link>http://securityratty.com/tag/downtown</link>
    <description></description>
    <pubDate>Tue, 15 Jul 2008 07:06:22 +0000</pubDate>
    <generator>iRatty Engine</generator>
    <docs>http://blogs.law.harvard.edu/tech/rss</docs>
    <item>
      <title><![CDATA[Links List 10.31.08]]></title>
      <link>http://securityratty.com/article/9428945f69b50703993282159a9d8676</link>
      <guid>http://securityratty.com/article/9428945f69b50703993282159a9d8676</guid>
      <description><![CDATA[Happy Halloween

What an interesting time to hold a technology conference. The DLA Piper Global Technology Leaders Summit last week brought together CXOs from Amazon, Walmart.com, Stanford, Safeway,...]]></description>
      <content:encoded><![CDATA[<p><b>Happy Halloween!</b>
<p><a href="http://blog.sciencelogic.com/wp-content/uploads/2008/10/em7-pumpkin.jpg"><img style="border-right: 0px; border-top: 0px; border-left: 0px; border-bottom: 0px" height="184" alt="EM7_pumpkin" src="http://blog.sciencelogic.com/wp-content/uploads/2008/10/em7-pumpkin-thumb.jpg" width="244" border="0"></a>
<p>What an interesting time to hold a technology conference. The <a href="http://www.eweek.com/c/a/IT-Management/CxOs-Get-Together-for-Candid-OfftheRecord-Chat/?kc=EWKNLNAV10272008STR3" target="_blank">DLA Piper Global Technology Leaders Summit last week</a> brought together CXOs from Amazon, Walmart.com, Stanford, Safeway, Microsoft, Sun, Cisco and others to discuss the state of IT in general and how the economy is impacting it. Some highlights:<br />
<blockquote>
<p>&#8220;Cloud computing for large enterprises is a dead duck, in the opinion of several venture capital firms.&#8221;</p>
</blockquote>
<p>&nbsp;<br />
<blockquote>
<p>&#8220;The current slowdown in the U.S. macroeconomy is definitely going to hurt the IT industry, as it will most of the nation&#8217;s businesses, for at least the next year and most likely into the next two years.&#8221;</p>
</blockquote>
<p>&nbsp;
<p><a href="http://blogs.eweek.com/storage_station/content/general/netapp_cancels_first_user_conference_cites_travel_issues.html" target="_blank">NetApp cancelled its first user conference</a> slated for 2009 citing economy-driven restrictions on <a href="http://www.btnonline.com/businesstravelnews/headlines/frontpage_display.jsp?vnu_content_id=1003875472" target="_blank">business travel</a>.
<p>We recently wrote about the possible <a href="http://blog.sciencelogic.com/are-there-recession-proof-it-products/10/2008" target="_blank">upside for MSPs</a> in this economic downtown. A <a href="http://www.infoworld.com/article/08/10/29/Recession_set_to_boost_outsourcing_1.html?source=NLC-TB&amp;cgd=2008-10-30" target="_blank">survey from EquaTerra</a> of more than 200 outsourcing service suppliers announced that “more than 40 percent of those polled had seen increased demand levels, despite the economic downturn.” The survey suggests that outsourcing projects are changing, with a strong focus on quick return on investment replacing longer-term initiatives to improve end-to-end business processes, according to InfoWorld. So as we saw during <a href="http://blog.sciencelogic.com/interop-ny-survey-top-it-challenges-trends-and-what-it-is-spending-money-on/09/2008" target="_blank">our own surveys</a> this year, it looks like IT will spend time and money against the practical projects that should and could get done and not taking on ITIL and CMDB projects.
<p>Jonathan Schwartz as a puppet talking about open source and his ponytail. The driest Sesame Street take-off you’ll ever see. Check out the <a href="http://www.techcrunchit.com/2008/10/14/continuous-partial-innovation/" target="_blank">video here</a>. For those of you playing a drinking game at home, “ponytail”.
<p>Denise Dubie <a href="http://www.networkworld.com/newsletters/nsm/2008/102708nsm2.html?nlhtnsm=ts_102908&amp;nladname=102908networksystemsmanagemental" target="_blank">posted a follow up</a> to her article <a href="http://www.networkworld.com/community/node/33996" target="_blank">Novell’s Managed Objects buy</a>, and shared insights from different commenters, including <a href="http://www.networkworld.com/community/node/33996#comment-191253" target="_blank">yours truly</a>.
<p>One of our favorites, the IT Skeptic was <a href="http://www.johnmwillis.com/itil/5-questions-for-the-itskeptic/" target="_blank">featured on John Willis’ blog</a> this week, answering some questions about CMDB, ITSMF and more. He also provided his insight into IBM Tivoli, although he “tries to stay non-partisan”.
<p>Inexplicable. HP posted <a href="http://blogs.wsj.com/biztech/2008/10/27/h-p-commercializes-halloween-with-monsters-that-speak-technobabble/" target="_blank">Halloween-themed videos about datacenters</a> on YouTube this week. Unlike the great <a href="http://www.youtube.com/watch?v=MSqXKp-00hM" target="_blank">IBM videos about the mainframe</a>, these videos speak techno-babble without tempering the lingo with being funny or tongue-in-cheek. Various frightening creatures share information on service management processes and discuss virtualization techniques to help consolidate hardware. Scary.</p>
]]></content:encoded>
      <pubDate>Fri, 31 Oct 2008 18:10:53 +0000</pubDate>
      <category domain="http://securityratty.com/tag/projects">projects</category>
      <category domain="http://securityratty.com/tag/practical projects">practical projects</category>
      <category domain="http://securityratty.com/tag/discuss virtualization techniques">discuss virtualization techniques</category>
      <category domain="http://securityratty.com/tag/discuss">discuss</category>
      <category domain="http://securityratty.com/tag/cmdb projects">cmdb projects</category>
      <category domain="http://securityratty.com/tag/cmdb">cmdb</category>
      <category domain="http://securityratty.com/tag/ibm videos">ibm videos</category>
      <category domain="http://securityratty.com/tag/videos">videos</category>
      <category domain="http://securityratty.com/tag/survey suggests">survey suggests</category>
      <source url="http://blog.sciencelogic.com/links-list-103108/10/2008">Links List 10.31.08</source>
    </item>
    <item>
      <title><![CDATA[What's Happiness Got to Do With It?]]></title>
      <link>http://securityratty.com/article/141d4a55a5d3195a7aaaa7ca4b3a3c7e</link>
      <guid>http://securityratty.com/article/141d4a55a5d3195a7aaaa7ca4b3a3c7e</guid>
      <description><![CDATA[Gartner's own John Pescatore has issued a 12 world post
The best security program is at the business with the happiest customers

Happiness? Really? That's the measure of program effectiveness? I...]]></description>
      <content:encoded><![CDATA[<p>Gartner&#39;s own John Pescatore has issued a 12 world <a href="http://blogs.gartner.com/john_pescatore/2008/10/28/twelve-word-tuesday-measuring-security-program-effectiveness/">post:</a></p><blockquote class="webkit-indent-blockquote" style="margin: 0 0 0 40px; border: none; padding: 0px;"><p><span style="color: #333333; font-family: Arial; font-size: 14px; line-height: 17px; ">The best security program is at the business with the happiest customers.</span></p></blockquote><br /><div>Happiness? Really? That&#39;s the measure of program effectiveness? I would see those 12 words and raise them one word (13 if you&#39;re scoring at home):</div><br /><blockquote class="webkit-indent-blockquote" style="margin: 0 0 0 40px; border: none; padding: 0px;"><p>There&#39;s a fine line between happy customers and playing piano in a bordello.</p></blockquote><br /><div>I mean the people running hedge funds and derivative books at AIG, Lehman and friends had lots of happy customers for the last decade!</div><br /><div>To me the happy customer is a classic IT copout &quot;we just did what the &quot;business&quot; asked&quot;. Like we&#39;re just a bystander or something. Its our job to create business value and be business like. We should seek to <span style="font-style: italic;">empower</span> out customers, not make them happy.&#0160;</div><br /><div>Please understand I am not that guy who says IT security has to be the &quot;bad cops&quot; who deny everything the business wants to do. Just saying it is our job to raise the bar where we can. Raising the bar does not always create super happy customers in the short run, but it does empower companies.</div><br /><div>Unfortunately, playing piano in the bordello is what a lot of security groups do and even big analyst firms. The path of least resistance ain&#39;t always the way. Here is an example. I was at a client many years ago, they wanted to build a big Identity Management solution, so of course they wrote a big RFI got responses from Sun, IBM, Oracle and friends. The bids were in the $3-5 million range. Pretty big projects for an Infosec team. So what do you do? Call up a big analyst firm and get some advice, right?</div><br /><div>A week goes by and we get an audience with the &quot;guru&quot; from the Big Analyst Firm. The client has pretty detailed requirements, what systems they want to connect to, what use cases they are looking to solve for, &#0160;and so on. We anxiously await the knowledge the analyst is about to transfer to us. His response was as follows - &quot;what kind of shop are you? IBM shop? Oracle shop?&quot; &quot;Ummm...we are a huge company we have everything.&quot; &quot;Well if you are more of a IBM shop you should go with them. If you are more of a Oracle shop you should go with them.&quot; That was the extent of a 30 minute conversation. True story.</div><br /><div>Of course, the one value proposition of the Big Analyst Firms is that they supposedly can tell you what everyone else is supposedly doing. There is some value in this I grant you. And it does make for happy customers because even when you force your customers to change, you can say &quot;Well geez, I know its hard but the Big Analyst Firm says that everyone is doing it.&quot; But is this security improvement?</div><br /><div>Back in 2004, I went to a great security conference, it was Information Security Decisions (<a href="http://infosecurityconference.techtarget.com/conference/index.html">they are back in Chicago next week</a>). It was in Chicago, downtown on the river. Tom Davern even took us all out on a boat for lunch one day. Anyway, there was one truly great talk there. It wasn&#39;t Fred Cohen debating <a href="http://cigital.com/justiceleague/">Gary McGraw</a> on application security which was outstanding (in which Fred uttered the memorable line &quot;I agree with Gary everywhere he agrees with me.&quot; (Gary won the debate, his best line - &quot;We know how to win the software security war, but we don&#39;t know how to manage the peace&quot; still the problem today actually)) It wasn&#39;t Pete Lindstrom showing his security metrics framework (which is still a great starting point). it wasn&#39;t Dan Geer&#39;s fireside chat.</div><br /><div>The truly great talk, though, was by the now departed <a href="http://1raindrop.typepad.com/1_raindrop/2007/02/thinking_about_.html">Robert Garigue</a>. It was called &quot;Its the End of the CISO as I Know It, (And I Feel Fine).&quot; The whole end to end talk was wonderful, there are several things in there that I still use every single day like the separate security models for Infostructure and Infrastructure but the point I want to talk about is the CISO role.</div><br /><div>Garigue talked about the two most prevalent CISO models - the jester and the bad cop. The jester CISO</div><br /><blockquote class="webkit-indent-blockquote" style="margin: 0 0 0 40px; border: none; padding: 0px;"><p><span style="color: #333333; line-height: 19px; ">Sees a lot</span><br /><span style="color: #333333; line-height: 19px; ">Can tell the king he has no clothes</span><br /><span style="color: #333333; line-height: 19px; ">Can tell the king he really is ugly</span><br /><span style="color: #333333; line-height: 19px; ">Does not get killed by the king</span><br /><span style="color: #333333; line-height: 19px; ">Nice to have around but…how much security improvement comes from this ?</span></p></blockquote><p><span style="color: #333333; line-height: 19px;"><br /></span></p><div><span style="color: #333333; line-height: 19px;">The jester has happy customers! At least for awhile.</span></div><div><span style="color: #333333; line-height: 19px;"><br /></span></div><div><span style="color: #333333; line-height: 19px;">Again I grant you bad cop is not the way to go either (and while this already long post could read harsh on John Pescatore&#39;s pithy summary, I give him a lot of points for saying that security needs to be customer conscious).</span></div><div><span style="color: #333333; line-height: 19px;"><br /></span></div><div><span style="color: #333333; line-height: 19px;">We have all seen bad cop CISOs who</span></div><div><span style="color: #333333; line-height: 19px;"><br /></span></div><blockquote class="webkit-indent-blockquote" style="margin: 0 0 0 40px; border: none; padding: 0px;"><p><span style="color: #333333; line-height: 19px; ">Changes happened faster that he was able to move</span><br /><span style="color: #333333; line-height: 19px; ">Did not read the signs</span><br /><span style="color: #333333; line-height: 19px; ">Good intentions went unfulfilled</span><br /><span style="color: #333333; line-height: 19px; ">A brutal way to ending a promising career</span><br /><span style="color: #333333; line-height: 19px; ">Sad to have around but…how much security improvement comes from this ?</span></p></blockquote><blockquote class="webkit-indent-blockquote" style="margin: 0 0 0 40px; border: none; padding: 0px;"><p><span style="color: #333333; line-height: 19px;"><br /></span></p></blockquote><p><span style="color: #333333; line-height: 19px;"></span></p><p style="margin-top: 10px; margin-bottom: 10px; text-align: left; ">Obviously these models of CISOs are not solving our information security problems. Instead Dr. Garigue points us to Charlemagne as a better model</p><blockquote style="margin-top: 10px; margin-bottom: 10px; "><p>King of the Franks and Holy Roman Emperor; conqueror of the Lombards and Saxons (742-814) - reunited much of Europe after the Dark Ages.</p><p style="margin-top: 10px; margin-bottom: 10px; text-align: left; ">He set up other schools, opening them to peasant boys as well as nobles. Charlemagne never stopped studying. He brought an English monk, Alcuin, and other scholars to his court - encouraging the development of a standard script.</p><p style="margin-top: 10px; margin-bottom: 10px; text-align: left; ">He set up money standards to encourage commerce, tried to build a Rhine-Danube canal, and urged better farming methods. He especially worked to spread education and Christianity in every class of people.</p><p style="margin-top: 10px; margin-bottom: 10px; text-align: left; ">He relied on Counts, Margraves and Missi Domini to help him.</p><p style="margin-top: 10px; margin-bottom: 10px; text-align: left; ">Margraves - Guard the frontier districts of the empire. Margraves retained, within their own jurisdictions, the authority of dukes in the feudal arm of the empire.</p><p style="margin-top: 10px; margin-bottom: 10px; text-align: left; ">Missi Domini - Messengers of the King.</p></blockquote><p style="margin-top: 10px; margin-bottom: 10px; text-align: left; "></p><p style="margin-top: 10px; margin-bottom: 10px; text-align: left; ">This is the way forward! Find software security champions in the architecture and development groups,help them understand the real security issues. They will find solutions you have not thought of. Same for DBAs, same for business analysts even. Its all about beating the bushes, education, and decentralizing security services. Specifically, he points out this important mandate for IT security</p><p></p><blockquote class="webkit-indent-blockquote" style="margin: 0 0 0 40px; border: none; padding: 0px;"><p><span style="color: #333333; line-height: 19px; ">Knowledge of risky things is of strategic value</span></p></blockquote><blockquote class="webkit-indent-blockquote" style="margin: 0 0 0 40px; border: none; padding: 0px;"><p><span style="color: #333333; line-height: 19px; ">How to know today tomorrow’s unknown ?</span><br /><span style="color: #333333; line-height: 19px; ">How to structure information security processes in an organization so as to identify and address the NEXT categories of risks ?</span></p></blockquote><p><span style="color: #333333; line-height: 19px;"></span></p><p style="margin-top: 10px; margin-bottom: 10px; text-align: left; ">To me this is our mandate and measure of effectiveness. Empower our customers, educate, and create business value. If I am a CISO &#0160;I don&#39;t want 20 people reporting to me who do firewall ruleset changes. I want one champion in 20 different groups - development teams, architects, DBAs, business analysts.</p><p style="margin-top: 10px; margin-bottom: 10px; text-align: left; ">A concrete example, infosec can continue to go along with the herd and follow the &quot;what everyone else is doing architecture&quot; meanwhile developers are connecting <span style="font-style: italic;"><span style="font-weight: bold;">every single thing</span></span> in your business to the Web. I have been doing integration and new technology projects for a long time, and let me tell you - Change does not always create happy customers in the short run. But the chart below shows that information security is maybe more concerned with not causing waves rather than adapting.</p><p style="margin-top: 10px; margin-bottom: 10px; text-align: left; "></p>
<div><a href="http://1raindrop.typepad.com/photos/uncategorized/2008/05/19/innovatecompare_2.png"><img alt="Innovatecompare_2" border="0" height="167" src="http://1raindrop.typepad.com/1_raindrop/images/2008/05/19/innovatecompare_2.png" title="Innovatecompare_2" width="300" /></a><p></p></div><div>How long can developers evolve, connect everything and security people not change anything? Herb Stein said, &quot;things that can&#39;t go on forever, don&#39;t. &quot;At some point these chickens are coming home to roost, there is a yawning gap between rapidly evolution connecting the enterprise and the 13 year old and counting security architecture that &quot;Everyone else is using&quot; and when those chicken come home to roost you may not have happy customers then. Here is my 12 words:</div><br /><p></p><blockquote class="webkit-indent-blockquote" style="margin: 0 0 0 40px; border: none; padding: 0px;"><p><span style="color: #333333; font-family: Arial; font-size: 14px; line-height: 17px; ">The best security program is at the business with sustainable competitive advantage.</span></p></blockquote>]]></content:encoded>
      <pubDate>Wed, 29 Oct 2008 07:00:44 +0000</pubDate>
      <category domain="http://securityratty.com/tag/information security">information security</category>
      <category domain="http://securityratty.com/tag/information security decisions">information security decisions</category>
      <category domain="http://securityratty.com/tag/security">security</category>
      <category domain="http://securityratty.com/tag/software security champions">software security champions</category>
      <category domain="http://securityratty.com/tag/architecture">architecture</category>
      <category domain="http://securityratty.com/tag/security architecture">security architecture</category>
      <category domain="http://securityratty.com/tag/security metrics framework">security metrics framework</category>
      <category domain="http://securityratty.com/tag/super happy customers">super happy customers</category>
      <category domain="http://securityratty.com/tag/happy customers">happy customers</category>
      <source url="http://1raindrop.typepad.com/1_raindrop/2008/10/whats-happiness-got-to-do-with-it-1.html">What's Happiness Got to Do With It?</source>
    </item>
    <item>
      <title><![CDATA[Phreaknic 12 (2008) Hacker Con]]></title>
      <link>http://securityratty.com/article/4f1c46cc8d2c53438d8656355e1bfa74</link>
      <guid>http://securityratty.com/article/4f1c46cc8d2c53438d8656355e1bfa74</guid>
      <description><![CDATA[New Video: Phreaknic 12 (2008) Hacker Con

This is a quick and dirty video documentary of the things that when on around the talks and event at Phreaknic 12 (2008). Don't watch if you get sick at...]]></description>
      <content:encoded><![CDATA[New Video: <a href="http://www.irongeek.com/i.php?page=videos/phreaknic-12-hacker-con">Phreaknic 12 (2008) Hacker Con</FONT></B></a>
<p></p>
<p>This is a quick and dirty video documentary of the things that when on around the talks and event at <a href="http://www.phreaknic.info">Phreaknic 12 </a>(2008). Don't watch if you get sick at shaky cam movies like Blair Witch or Cloverfield. A rough timeline of the content in the video is as follows: </p>
<p>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; Intro and leaving Louisville with Brian. Morgellon talks about hacking the <a href="http://dailyduino.com/">Arduino</a> micro controller platform.&nbsp;Sorteal talks about the LiVes Open Source video editor. AT&amp;T Batman building by night. Mojo-JoJo soldering some stuff for the shooting range. The patron gods of hackerdom. Registration. Con swag overview. Morgellon&nbsp; gets his discreet logic on. AK-47 building with HandGrip and Buttstock. Froggy talks up Notacon, which I plan to go to next year. Skydog explains the Jware chair toss event, and then we compete. Rootwars hacker wargames. I ask <a href="http://dualcoremusic.com/nerdcore/">Int80 about using his nerdcore</a> music in some of my videos. NotLarry explains rootwars. Some iPhone hacking with <a href="http://leebaird.com/Me/Hacking.html">Lee Baird</a> and John Skinner. I do a little <a href="http://www.irongeek.com/i.php?page=security/bluecasing1">Bluecaseing/Warnibbling </a>with the Bluetooth on my Nokia n810. John, Lee, Brian and I go to the German restaurant. I blind DOSman with the light from my camera and check out what folks are doing with the <a href="http://dailyduino.com/">Arduinos</a> Droops brought for folks to play with. I check back in on R00tW4rz. I blind Droops. I talk Ettercap filters with <a href="http://www.rmccurdy.com/">operat0r</a>. USB door key fun with the <a href="http://dailyduino.com/">Arduino</a>. More breadboard fun. Nokia n810 + Ettercap Filter + Lemon-part = win. <a href="http://dualcoremusic.com/nerdcore/">Int80</a> gets down with his own bad self, and the rest of Phreaknic. I find an energy drink with protein. Folks play with the hardware keyloggers I brought, and we have some epic fail with the IBM Model M + USB adapter + Mac OS 10.5. <a href="http://www.winnschwartau.com/">Winn Schwartau</a> joins in on the keylogger fun. <a href="http://www.packetsniffers.org/">DOSman and Zack</a> use a directional antenna from the 9th floor to search downtown Nashville for WiFi access points. Zoom in on Al. John and Lee eat jerky. <a href="http://www.hak5.org/">Daren and Shannon from Hak5</a> blind me this time. :) Then they do a quick interview. I interview <a href="http://www.digome.com/">TRiP</a> about the legalities of wardriving, sniffing and leaving your access point open so you have plausible deniability of copyright infringement (most likely it won't hold water in court if you are a computer geek). I give Hak5 Daren beef jerky. <a href="http://www.offensive-security.com/">Ziplock</a> had more con badges than God. I meet up with Iridium. I talk with Nightcarnage about the audio/video setup at Phreaknic. As I predicted, the <a href="http://www.shmoo.com/~gdead/Site/Home.html">Potters</a> won the WiFi Race. I say why this was the best Phreaknic ever. Using green lasers on crack dealers. Techno in the dark, the Aiptek action HD does not do well in low light. Nicodemius shows off his Minority Report like multi-touch table. Hula hoop contest. I check back in with Jeff Cotton and his USB keyed door. I strap on my gear to leave the con. Brian and I do a wrap up of our thoughts on Phreaknic 2008.</p>
<p><a href="http://feedads.googleadservices.com/~a/fu-jGbBXkZllK6znlRDBB8Bbjxo/a"><img src="http://feedads.googleadservices.com/~a/fu-jGbBXkZllK6znlRDBB8Bbjxo/i" border="0" ismap="true"></img></a></p><img src="http://feedproxy.google.com/~r/IrongeeksSecuritySite/~4/H4w0W-ygK2s" height="1" width="1"/>]]></content:encoded>
      <pubDate>Wed, 29 Oct 2008 02:59:17 +0000</pubDate>
      <category domain="http://securityratty.com/tag/con">con</category>
      <category domain="http://securityratty.com/tag/phreaknic">phreaknic</category>
      <category domain="http://securityratty.com/tag/video">video</category>
      <category domain="http://securityratty.com/tag/con swag overview">con swag overview</category>
      <category domain="http://securityratty.com/tag/source video editor">source video editor</category>
      <category domain="http://securityratty.com/tag/talks">talks</category>
      <category domain="http://securityratty.com/tag/sorteal talks">sorteal talks</category>
      <category domain="http://securityratty.com/tag/hacker con">hacker con</category>
      <category domain="http://securityratty.com/tag/lee eat jerky">lee eat jerky</category>
      <source url="http://feedproxy.google.com/~r/IrongeeksSecuritySite/~3/H4w0W-ygK2s/i.php">Phreaknic 12 (2008) Hacker Con</source>
    </item>
    <item>
      <title><![CDATA[Links List 10.24.08]]></title>
      <link>http://securityratty.com/article/8e899f9ef46d0a44116f8be8a4a6e8a3</link>
      <guid>http://securityratty.com/article/8e899f9ef46d0a44116f8be8a4a6e8a3</guid>
      <description><![CDATA[Ah a mystery. In The strange case of the slow server , Jack Hughes at The Tech Teapot had problems with internet presence slow website loading, problems logging in and slow emails. Sound familiar? In...]]></description>
      <content:encoded><![CDATA[<p>Ah a mystery. In “<a href="http://www.openxtra.co.uk/blog/the-strange-case-of-the-slow-server/" target="_blank">The strange case of the slow server</a>”, Jack Hughes at The Tech Teapot had problems with internet presence – slow website loading, problems logging in and slow emails. Sound familiar? In Jack’s case, the culprit was his main download site but the real issue was lack of visibility across multiple tools that provided much info but not in a way that was really usable. “The main lesson I take away from this is to make sure you’re creating meaningful stats for everything you’ve got because you never know what may be causing you a problem.”</p>
<p>Information Week’s new blog, Plug Into the Cloud, is already in the thick of the controversy on the emerging cloud computing trend. A recent post <a href="http://www.informationweek.com/cloud-computing/blog/archives/2008/10/cloud_computing_4.html" target="_blank">lists a bunch of highly opinionated comments on the topic</a> by site visitors, running the gamut from “Cloud computing is kind of like the Emperor’s New Clothes” to “cloud software can actually be more expensive than the software I load onto my hard drive.”</p>
<p>Jeff Doyle writes an interesting post about <a href="http://www.networkworld.com/community/node/34103" target="_blank">resistance to IPv6</a> adoption (what, you think <a href="http://blog.sciencelogic.com/times-up-ipv6-omb-mandate/06/2008" target="_blank">we forgot</a>?). Instead of the usual focus on IPv6 as an application issue, he points out that it’s actually an infrastructure thing. Would you wait to upgrade routers, switches, software, or servers until you can find a way to make the newer systems profitable? Would you wait to increase bandwidth only after you have customers waiting to use it? If you’ve answered these questions “no”, then why are you waiting to upgrade to IPv6?</p>
<p>We posted about whether or not there were <a href="http://blog.sciencelogic.com/are-there-recession-proof-it-products/10/2008" target="_blank">recession proof products in IT yesterday</a>. Network World Management Maven Denise Dubie also writes about <a href="http://www.networkworld.com/newsletters/nsm/2008/102008nsm2.html?nlhtnsm=ts_102208&amp;nladname=102208networksystemsmanagemental" target="_blank">readers weighing in on IT and the economy</a> – from having to do even more with less to seeing the economic downtown as an opportunity to highlight IT’s true value to the business.</p>
<p><img style="border-right: 0px; border-top: 0px; border-left: 0px; border-bottom: 0px" src="http://blog.sciencelogic.com/wp-content/uploads/2008/10/clip-image002.jpg" border="0" alt="clip_image002" hspace="hspace" width="299" height="196" align="left" />And finally, on the lighter side: What would we do without crazy billionaires and their crazy purchases? According to a New York Times article, a company controlled by Google’s top execs just added a <a href="http://bits.blogs.nytimes.com/2008/10/23/a-new-fighter-jet-for-googles-founders/" target="_blank">fighter jet</a> to their roster. “Presumably no attacks on Microsoft are planned at this time.” <em>(<a href="http://en.wikipedia.org/wiki/Image:Alpha_jet_zj646_arp.jpg" target="_blank">image from Wikipedia</a>)</em></p>
]]></content:encoded>
      <pubDate>Fri, 24 Oct 2008 14:55:16 +0000</pubDate>
      <category domain="http://securityratty.com/tag/cloud software">cloud software</category>
      <category domain="http://securityratty.com/tag/software">software</category>
      <category domain="http://securityratty.com/tag/cloud">cloud</category>
      <category domain="http://securityratty.com/tag/jeff doyle writes">jeff doyle writes</category>
      <category domain="http://securityratty.com/tag/ipv6 adoption">ipv6 adoption</category>
      <category domain="http://securityratty.com/tag/post">post</category>
      <category domain="http://securityratty.com/tag/recent post lists">recent post lists</category>
      <category domain="http://securityratty.com/tag/ipv6">ipv6</category>
      <category domain="http://securityratty.com/tag/writes">writes</category>
      <source url="http://blog.sciencelogic.com/links-list-102408/10/2008">Links List 10.24.08</source>
    </item>
    <item>
      <title><![CDATA[Wee-Fi: Share Cell Connections over Wi-Fi; Mile High-Fi Salaciousness; Giga-Fi; and More]]></title>
      <link>http://securityratty.com/article/457365225a8b72096232f2b375549cff</link>
      <guid>http://securityratty.com/article/457365225a8b72096232f2b375549cff</guid>
      <description><![CDATA[New version of Windows Mobile software to share cell data connections over Wi-Fi: Morose Media ships version 1.20 of WMWifiRouter, a Windows Mobile 5 and 6 application that routes cellular data...]]></description>
      <content:encoded><![CDATA[<p><img src="http://wifinetnews.com/images/weefi.jpg" align="right" border="0" hspace="5" /><a href="http://www.wmwifirouter.com/"><strong>New version of Windows Mobile software to share cell data connections over Wi-Fi:</strong></a> Morose Media ships version 1.20 of WMWifiRouter, a Windows Mobile 5 and 6 application that routes cellular data connections over Wi-Fi, turning your phone into a micro-hotspot. The software can also share a cell connection via Bluetooth or USB. The software costs $30 or &euro;20, and requires Internet (Connection) Sharing (ICS), which some providers may have removed from your phone. (The company set the price at US$30 before the euro drop, so is offering a kind of discount over their real &euro;20 price for the moment.)</p>

<p><a href="http://www.nytimes.com/2008/09/11/technology/personaltech/11smart.html?_r=1&8cir&emc=cirb1&oref=slogin"><strong>The New York Times rounds up using cell phones as hotspots:</strong></a> Though the reporter, Bob Tedeschi, mentions the issue of having to have an unlimited data plan to avoid unpleasant charges, and worries about bad drains and malicious users, he doesn't note that many carriers don't allow this kind of sharing or routing without a separate "tethering" plan, that can run $20 or more per month. Also, U.S. carriers have now all imposed a 5 GB per month reasonable use cap; some will cut you off, some charge you more, some cancel your service based on exceeding this use.</p>

<p><a href="http://www.networkworld.com/news/2008/090908-ieee-considers-gigabit.html?hpg1=bn"><strong>Gigabit Wi-Fi? Someday:</strong></a> TechWorld considers the IEEE's Very High Throughput (VHT) study group, which wants to start work on 1 Gbps or faster Wi-Fi standard for completion in 2012. With 802.11n offering raw symbol rates up to 600 Mbps--even though no devices have shipped with the radios and antennas to offer that optional high speed yet--there's interest in other frequencies that would allow faster encodings, as well as aggregating multiple links to achieve high speed rates. My experience in testing and using 2.4 GHz with Draft N would show that wide or aggregated channels doesn't work very well. The article's writer, Peter Judge, notes that ultrawideband had potential (over short distances) to approach the gigabit mark, but that UWB hasn't really reached the market in any substantive way years after it was promised to be a big technology.</p>

<p><a href="http://www.nbc5i.com/news/17435300/detail.html"><strong>Flight attendants express concerns about in-flight broadband porn:</strong></a> When I've spoken to airlines, industry experts, and service providers, I find that they all have stories about how porn is viewed on computers, through DVD players, and in convenient magazine form on planes today. Adding the Internet may provide new salacious imagery, but the problem predates Internet access, and filtering Internet service is never as good a solution as a social one. Someone idiotic enough to view porn on a plane over the Internet is also stupid enough to bring along inappropriate DVDs they watch while seated next to children. Flight attendants already have the power vested in them to take care of this. The flight attendants for American might be expressing this concern as part of a bargaining issue, where their responsibilities but not commensurate pay have increased.</p>

<p><a href="http://www.kxly.com/Global/story.asp?S=8989329"><strong>Spokane ends free Wi-Fi:</strong></a> Remember Vivato? Boy, I sure do. A company with a reach far exceeding its grasp, Vivato initially powered Spokane's downtown network. The network has continued to run on some basis--I'm not sure using what equipment--and now will move from free to fee. OneEighty Networks will charge about $10 per month to cover the costs of the network, for which local businesses at one point chipped in.</p>

<p><a href="http://www.onair.aero/"><strong>Brazilian TAM airline signs up for in-flight calling, messaging:</strong></a> OnAir has signed up the Brazilian carrier TAM, which will deploy the service on its Airbus A320 craft. Brazil hasn't yet provided regulatory approval, so no launch date is noted. TAM is the largest domestic and international carrier for Brazil.</p>]]></content:encoded>
      <pubDate>Thu, 11 Sep 2008 07:02:26 +0000</pubDate>
      <category domain="http://securityratty.com/tag/wi-fi">wi-fi</category>
      <category domain="http://securityratty.com/tag/internet service">internet service</category>
      <category domain="http://securityratty.com/tag/faster wi-fi standard">faster wi-fi standard</category>
      <category domain="http://securityratty.com/tag/service">service</category>
      <category domain="http://securityratty.com/tag/internet">internet</category>
      <category domain="http://securityratty.com/tag/internet access">internet access</category>
      <category domain="http://securityratty.com/tag/software">software</category>
      <category domain="http://securityratty.com/tag/software costs">software costs</category>
      <category domain="http://securityratty.com/tag/free wi-fi">free wi-fi</category>
      <source url="http://wifinetnews.com/archives/008436.html">Wee-Fi: Share Cell Connections over Wi-Fi; Mile High-Fi Salaciousness; Giga-Fi; and More</source>
    </item>
    <item>
      <title><![CDATA[The Resolution Will Not Be Televised]]></title>
      <link>http://securityratty.com/article/aafbdad14f05dbfb9ed7011d64981e7f</link>
      <guid>http://securityratty.com/article/aafbdad14f05dbfb9ed7011d64981e7f</guid>
      <description><![CDATA[Wow






1-meter simulated resolution from aerial imagery of Colorado Capitol and Downtown Denver









































5-meter simulated resolution from...]]></description>
      <content:encoded><![CDATA[<p><a href="http://radar.oreilly.com/2008/09/watch-geoeye-1-launch-tomorrow.html">Wow</a></p><div><span style="color: #333333; font-family: Arial; font-size: 14px; line-height: 19px; "></span><br /><br /><div><a href="http://1raindrop.typepad.com/.a/6a00d83451c75869e200e555056e368834-pi" style="float: left;"><img alt="200809051615" class="at-xid-6a00d83451c75869e200e555056e368834 " src="http://1raindrop.typepad.com/.a/6a00d83451c75869e200e555056e368834-320wi" style="margin: 0px 5px 5px 0px;" /></a>
<p>
</p></div>
<p></p><br />
1-meter simulated resolution from aerial imagery of Colorado Capitol and Downtown Denver
 <a href="http://1raindrop.typepad.com/.a/6a00d83451c75869e200e554e8103f8833-pi" style="float: left;"><img alt="200809051616" class="at-xid-6a00d83451c75869e200e554e8103f8833 selected " src="http://1raindrop.typepad.com/.a/6a00d83451c75869e200e554e8103f8833-320pi" style="margin: 0px 0px 5px 5px;" title="200809051616" /></a>
 <br />

</div><br /><br /><br /><br /><div><span style="color: #333333; font-family: Arial; font-size: 14px; line-height: 19px;"><br /></span></div><div><span style="color: #333333; font-family: Arial; font-size: 14px; line-height: 19px;"><br /></span></div><div><span style="color: #333333; font-family: Arial; font-size: 14px; line-height: 19px;"><br /></span></div><div><span style="color: #333333; font-family: Arial; font-size: 14px; line-height: 19px;"><br /></span></div><div><span style="color: #333333; font-family: Arial; font-size: 14px; line-height: 19px;"><br /></span></div><div><span style="color: #333333; font-family: Arial; font-size: 14px; line-height: 19px;"><br /></span></div><div><span style="color: #333333; font-family: Arial; font-size: 14px; line-height: 19px;"><br /></span></div><div><span style="color: #333333; font-family: Arial; font-size: 14px; line-height: 19px;"><br /></span></div><div><span style="color: #333333; font-family: Arial; font-size: 14px; line-height: 19px;"><br /></span></div><div><span style="color: #333333; font-family: Arial; font-size: 14px; line-height: 19px;"><br /></span></div><div><span style="color: #333333; font-family: Arial; font-size: 14px; line-height: 19px;"><br /></span></div><div><span style="color: #333333; font-family: Arial; font-size: 14px; line-height: 19px;"><br /></span></div><div><span style="color: #333333; font-family: Arial; font-size: 14px; line-height: 19px;"><br /></span></div><div><span style="color: #333333; font-family: Arial; font-size: 14px; line-height: 19px;"><br /></span></div><div><span style="color: #333333; font-family: Arial; font-size: 14px; line-height: 19px;"><br /></span></div><div><span style="color: #333333; font-family: Arial; font-size: 14px; line-height: 19px;"><br /></span></div><div><span style="color: #333333; font-family: Arial; font-size: 14px; line-height: 19px;"><br /></span></div><div><span style="color: #333333; font-family: Arial; font-size: 14px; line-height: 19px;"><br /></span></div><p>.5-meter simulated resolution from <a href="http://geoeye.com/CorpSite/">GeoEye</a></p>]]></content:encoded>
      <pubDate>Fri, 05 Sep 2008 19:59:29 +0000</pubDate>
      <category domain="http://securityratty.com/tag/resolution">resolution</category>
      <category domain="http://securityratty.com/tag/downtown denver">downtown denver</category>
      <category domain="http://securityratty.com/tag/colorado capitol">colorado capitol</category>
      <category domain="http://securityratty.com/tag/aerial imagery">aerial imagery</category>
      <category domain="http://securityratty.com/tag/5-meter">5-meter</category>
      <category domain="http://securityratty.com/tag/1-meter">1-meter</category>
      <category domain="http://securityratty.com/tag/geoeye">geoeye</category>
      <source url="http://1raindrop.typepad.com/1_raindrop/2008/09/the-resolution-will-not-be-televised.html">The Resolution Will Not Be Televised</source>
    </item>
    <item>
      <title><![CDATA[RNC]]></title>
      <link>http://securityratty.com/article/be0e55d9cb445eec42568a38816bb728</link>
      <guid>http://securityratty.com/article/be0e55d9cb445eec42568a38816bb728</guid>
      <description><![CDATA[Yup, we have the RNC here in MN. Downtown is locked down pretty tight, you would need the combined powers of Chuck Norris and Bruce Schneier to even get a cup of coffee down there. Here is the round...]]></description>
      <content:encoded><![CDATA[<p>Yup, we have the RNC here in MN. Downtown is locked down pretty tight, you would need the combined powers of Chuck Norris and <a href="http://geekz.co.uk/schneierfacts/">Bruce Schneier</a> to even get a cup of coffee down there. Here is the round up from <a href="http://www.economist.com/blogs/freeexchange/2008/09/above_the_fold_251.cfm">The Economist&#39;s blog</a></p><br /><blockquote class="webkit-indent-blockquote" style="margin: 0 0 0 40px; border: none; padding: 0px;"><p><span style="font-family: Verdana; line-height: normal; ">You&#39;ll have to pardon me this morning if the round-up seems a bit off. I&#39;m still a little stunned at the spectacle of an arena full of (seemingly sober and sane) adults chanting, &quot;Drill, baby, drill&quot;.</span></p></blockquote><blockquote class="webkit-indent-blockquote" style="margin: 0 0 0 40px; border: none; padding: 0px;"><p><span style="font-family: Verdana; line-height: normal;"><br /></span><span style="font-family: Verdana; line-height: normal; ">So let&#39;s see, what&#39;s in the news? Well, last night Republicans trotted out a Massachusetts venture capitalist and governor, the former mayor of New York City, former executives of eBay and HP, and an Alaskan neophyte pol who as mayor of a small town delivered $4,000 in federal pork for every man, woman, and child, in railing against coastal elites and Washington politics, while supporting a candidate who&#39;s been in the Senate for 26 years.</span></p></blockquote>]]></content:encoded>
      <pubDate>Thu, 04 Sep 2008 07:34:05 +0000</pubDate>
      <category domain="http://securityratty.com/tag/massachusetts venture capitalist">massachusetts venture capitalist</category>
      <category domain="http://securityratty.com/tag/alaskan neophyte pol">alaskan neophyte pol</category>
      <category domain="http://securityratty.com/tag/washington politics">washington politics</category>
      <category domain="http://securityratty.com/tag/bruce schneier">bruce schneier</category>
      <category domain="http://securityratty.com/tag/rnc">rnc</category>
      <category domain="http://securityratty.com/tag/federal pork">federal pork</category>
      <category domain="http://securityratty.com/tag/drill">drill</category>
      <category domain="http://securityratty.com/tag/round-up">round-up</category>
      <category domain="http://securityratty.com/tag/pretty tight">pretty tight</category>
      <source url="http://1raindrop.typepad.com/1_raindrop/2008/09/rnc.html">RNC</source>
    </item>
    <item>
      <title><![CDATA[While I Was Out: Compendium of the Last Week's News]]></title>
      <link>http://securityratty.com/article/9b2e491a24c669b08b8cfdf0d0df0b47</link>
      <guid>http://securityratty.com/article/9b2e491a24c669b08b8cfdf0d0df0b47</guid>
      <description><![CDATA[You wouldn't listen, but continued to generate products, news stories, and analysis about wireless networking in my absence: Here's the run down of the last week or so's Wi-Fi and wireless stories....]]></description>
      <content:encoded><![CDATA[<p><img src="http://wifinetnews.com/images/weefi.jpg" align="right" border="0" hspace="5" /><strong>You wouldn't listen, but continued to generate products, news stories, and analysis about wireless networking in my absence:</strong> Here's the run down of the last week or so's Wi-Fi and wireless stories. (Yes, I enjoyed my time off.)</p>

<p><a href="http://www.informationweek.com/news/services/data/showArticle.jhtml?articleID=210200880"><strong>Fourth US airline to go Wi-Fi:</strong></a> Aircell says they have a fourth airline--after American, Delta, and Virgin America--on board for its in-flight Wi-Fi service. The aerial broadband provider's latest partner will be announced soon. Aircell's service went live in 15 American Airlines planes two weeks ago, and there's been a surprising lack of reporting from regular travelers or journalists since the big splash at the launch.</p>

<p><a href="http://seattlepi.nwsource.com/business/376308_software25.html"><strong>Microsoft, two universities research methods for better Wi-Fi handoff for vehicles:</strong></a> The researchers developed a method they call Vi-Fi, writes the Seattle Post-Intelligencer's Todd Bishop, which allows a system to maintain connections with several base stations at once, using a primary access point for traffic until a discontinuity is predicted or encountered. This allows seamless handoffs and continuous voice conversations. </p>

<p><a href="http://www.nytimes.com/2008/08/24/technology/24digi.html?_r=1&oref=slogin"><strong>Speaking of autos and Wi-Fi, concerns raised about Chrysler's in-car Wi-Fi option:</strong></a> Randall Stross wrote nearly two weeks ago in The New York Times about the problem of distraction. With the Internet at your fingertips, can you restrain yourself? The only problem with the humorous and accurate analysis is that millions of business travelers have 3G access via laptop cards already, so you'd think we'd already be seeing the bad effects of automotive area networks.</p>

<p><a href="http://www.omaha.com/index.php?u_page=2798&u_sid=10415031"><strong>A Wi-Fi booster can't post availability signs on highway:</strong></a> The Nebraska town of Louisville has free Wi-Fi downtown, and wanted to post "Visitor Wi-Fi" on a highway sign as another amenity. The state highway department has a policy that doesn't allow the promotion of Wi-Fi, because they believe they'd be inundated. A resident who runs a local Internet firm installed his own signs on the highway; the roads department removed them; he remounted them; they were removed again. The idea of zoning and mounting a billboard apparently hasn't come to the city officials' minds (or perhaps they're prohibited).</p>

<p><a href="http://www.lisburntoday.co.uk/news/PRIMARY-PULLS-PLUG-ON-WIFI.4435678.jp"><strong>The folks spreading misinformation about Wi-Fi health effects cause Ulster school to disable network:</strong></a> I can understand why non-technical folks might think that Wi-Fi has been proven to be unsafe, given the kind of information that's available on the Internet about wireless safety. While there are ongoing studies about the safety of cellular signals--and I'm convinced at this point there's no increased risk to an adult's health by using a cell phone--there is no specific and credible research linked to Wi-Fi, which broadcasts signals at a far lower level than a cell phone, most of the time in most uses.</p>

<p><a href="http://blog.seattlepi.nwsource.com/thebigblog/archives/147374.asp"><strong>Washington state shuts down rest-area Wi-Fi:</strong></a> The $3 for 15 minutes, $7 per day, or $30 per month Wi-Fi service at 28 of Washington's 42 rest areas has been turned off after a year for lack of use. Figures. The fees charged by Parsons and Road Connect aren't unreasonable for a nationally scoped plan, but are ridiculous for limited use. States should either bite the bullet and offer these service for free, partner with national roaming operators who can resell service into large networks of business travelers, or use ads to support the service. Highways in remote areas can typically pick up cell data networks, and ongoing costs should be minimal to operate such networks.</p>

<p><a href="http://www.techworld.com/news/index.cfm?RSS&NewsID=103501"><strong>IEEE approves fast-roaming standard, 802.11r:</strong></a> This new standard is designed to improve the handoff of devices between base stations. This is accomplished in part by allowing base stations to communicate security and quality of service information so that a VoIP over WLAN phone can immediately reassociate without the delay of authentication and other handshaking.</p>

<p><a href="http://www.marketwatch.com/news/story/freefi-networks-releases-figures-wi-fi/story.aspx?guid={5252EF0E-2563-42B7-8A95-2F893580E6F6}&dist=hppr"><strong>Denver airport sees 7,000 connections on a single day last week due to Democratic National Convention:</strong></a> FreeFi released the usage figures recently to show how their service is operating. The network started with about 600 daily users when the switchover from fee to free happened 10 months ago, and now carries about 3,500 daily connections.</p>

<p><a href="http://www.centredaily.com/living/travel/story/804003.html"><strong>Coffee Bean & Tea Leaf goes free:</strong></a> The chain of about 700 cafes will have free Wi-Fi installed by now in all its company-owned stores (about 300).</p>]]></content:encoded>
      <pubDate>Tue, 02 Sep 2008 10:55:47 +0000</pubDate>
      <category domain="http://securityratty.com/tag/free wi-fi">free wi-fi</category>
      <category domain="http://securityratty.com/tag/wi-fi">wi-fi</category>
      <category domain="http://securityratty.com/tag/in-car wi-fi option">in-car wi-fi option</category>
      <category domain="http://securityratty.com/tag/wi-fi handoff">wi-fi handoff</category>
      <category domain="http://securityratty.com/tag/free wi-fi downtown">free wi-fi downtown</category>
      <category domain="http://securityratty.com/tag/month wi-fi service">month wi-fi service</category>
      <category domain="http://securityratty.com/tag/rest-area wi-fi">rest-area wi-fi</category>
      <category domain="http://securityratty.com/tag/wi-fi booster">wi-fi booster</category>
      <category domain="http://securityratty.com/tag/in-flight wi-fi service">in-flight wi-fi service</category>
      <source url="http://wifinetnews.com/archives/008428.html">While I Was Out: Compendium of the Last Week's News</source>
    </item>
    <item>
      <title><![CDATA[Wee-Fi: Houston-Fi, ASCII WPA Passphrases, Green Wi-Fi]]></title>
      <link>http://securityratty.com/article/7f30d96346f66d41619e4abd9bae8e7d</link>
      <guid>http://securityratty.com/article/7f30d96346f66d41619e4abd9bae8e7d</guid>
      <description><![CDATA[Houston flips switch on free downtown Wi-Fi: Dwight Silverman of the Houston Chronicle accidentally discovers the soft launch of the network funded by EarthLink's $5m default fee. (The fee was paid...]]></description>
      <content:encoded><![CDATA[<p><img src="http://wifinetnews.com/images/weefi.jpg" align="right" border="0" hspace="5" /><a href="http://blogs.chron.com/techblog/archives/2008/08/it_lives_city_of_houston_turns_on_free_downto.html"><strong>Houston flips switch on free downtown Wi-Fi:</strong></a> Dwight Silverman of the Houston Chronicle accidentally discovers the soft launch of the network funded by EarthLink's $5m default fee. (The fee was paid when they missed a milestone, and the firm later walked away.) The downtown area now has a limited pilot project that's free; the real effort in Houston is supposed to be at 10 housing projects and in parks where service would be used to bridge the digital divide and improve the quality of life. How, exactly, is part of what's being tested.</p>

<p><a href="http://www.sfgate.com/cgi-bin/article.cgi?f=/c/a/2008/08/18/MNH312BTS1.DTL&hw=wi+fi&sn=004&sc=589"><strong>That's ASCII, not hex:</strong></a> An article on wardriving raises security hackles by repeating some slightly overheated statements about Wi-Fi security. The article opens with a 63-character ASCII WPA passphrase, which is later described as "hex." (ASCII passphrases in WPA can be up to 63 "printable" characters - ASCII 32 to 127 - while a hex version of a 256-bit TKIP or AES password is 64 hexadecimal digits long.) The article tries to conflate Wi-Fi attacks that led to the largest set of breaches in retail credit-card systems and wardriving, a hobbyist activity that's never been looked on very favorably by law enforcement. The sense of ennui of wardriving pioneers is pretty clear; when Wi-Fi is everywhere and generally secured, it's far less interesting. The wardriver in the article convinced the reporter that a maximum-length WPA passphrase stored on a USB drive for automatic use was the best way to go. But, really, 20 characters containing letters and punctuation and no words found in a dictionary along with changing your network's SSID (network name) provides all the security you'll ever need for a home or small business. (If you need more, deploy WPA/WPA2 Personal.)</p>

<p><a href="http://www.sfgate.com/cgi-bin/article.cgi?f=/c/a/2008/08/16/BUA712BH1O.DTL&hw=wi+fi&sn=001&sc=1000"><strong>Green Wi-Fi's Senegal efforts hit snags:</strong></a> The folks at Green Wi-Fi are well motivated, and they're running up against all forms of security theater and bureaucracy both here and in Senegal, where they have an active project. The San Francisco Chronicle notes the group's effort to build solar-powered, self-sustaining Internet access via mesh networked nodes. Getting devices out of the country, clearing customs in Senegal, and hooking up their solar system all hit problems they're working through. As with the One Laptop Per Child program, I see a "build it and they will come" mentality in <a href="http://www.green-wifi.org/"><strong>Green Wi-Fi's mission statement</strong></a>: the notion that providing computing power and Internet access will result in good things, rather than an effort to figure out what good things need to be achieved, and whether computers and the Internet will assist. </p>]]></content:encoded>
      <pubDate>Tue, 19 Aug 2008 06:26:25 +0000</pubDate>
      <category domain="http://securityratty.com/tag/wi-fi">wi-fi</category>
      <category domain="http://securityratty.com/tag/wi-fi attacks">wi-fi attacks</category>
      <category domain="http://securityratty.com/tag/houston">houston</category>
      <category domain="http://securityratty.com/tag/wi-fi security">wi-fi security</category>
      <category domain="http://securityratty.com/tag/free downtown wi-fi">free downtown wi-fi</category>
      <category domain="http://securityratty.com/tag/free">free</category>
      <category domain="http://securityratty.com/tag/security">security</category>
      <category domain="http://securityratty.com/tag/ascii">ascii</category>
      <category domain="http://securityratty.com/tag/security theater">security theater</category>
      <source url="http://wifinetnews.com/archives/008423.html">Wee-Fi: Houston-Fi, ASCII WPA Passphrases, Green Wi-Fi</source>
    </item>
    <item>
      <title><![CDATA[Wee-Fi: Kentucky Town-Fi; Exorbitant Hotel-Fi]]></title>
      <link>http://securityratty.com/article/f6c9992466c72a222e4afddfdbb584de</link>
      <guid>http://securityratty.com/article/f6c9992466c72a222e4afddfdbb584de</guid>
      <description><![CDATA[Kentucky town shaves 97 percent of Wi-Fi network cost: The town of Prestonsburg, Kent., thought a city-wide Wi-Fi network could help attract tourists and businesses, while expanding remote access for...]]></description>
      <content:encoded><![CDATA[<p><img src="http://wifinetnews.com/images/weefi.jpg" align="right" border="0" hspace="5" /><a href="http://www.govtech.com/gt/377232?topic=117699"><strong>Kentucky town shaves 97 percent of Wi-Fi network cost:</strong></a> The town of Prestonsburg, Kent., thought a city-wide Wi-Fi network could help attract tourists and businesses, while expanding remote access for telemedicine and other purposes. But Government Technology reports that the first estimates for building a network were from $48,000 to $248,000. They opted to use Meraki's mesh gear and spent $8,500 instead, covering just a 2-mi stretch of their downtown. About 2/3rds was for the equipment, the rest for DSL connections and marketing. The service is free and has no ads at present.</p>

<p><a href="http://www.portfolio.com/business-travel/seat-2B/2008/07/15/Hotel-Internet-Access?rss=true"><strong>Portfolio critiques crazy hotel Wi-Fi pricing:</strong></a> The travel guru that is Joe Brancatelli turns a steely eye to $15 per night charges at fancy hotels for Internet access, noting that cheaper hotels include such service at no cost. The higher-end hotels won't talk for attribution, but they say that a "fraction" of guests use Internet, so why bundle it into the room rate? Pshaw. At $15 per night, four to six users pay the entire cost, while the hotel or its operator accepts a fraction of that rate as settlement from Boingo and iPass and other aggregators. So it's nonsense. They charge because business travelers will expense it and be reimbursed.</p>]]></content:encoded>
      <pubDate>Tue, 15 Jul 2008 07:06:22 +0000</pubDate>
      <category domain="http://securityratty.com/tag/town">town</category>
      <category domain="http://securityratty.com/tag/network">network</category>
      <category domain="http://securityratty.com/tag/cost">cost</category>
      <category domain="http://securityratty.com/tag/wi-fi network cost">wi-fi network cost</category>
      <category domain="http://securityratty.com/tag/city-wide wi-fi network">city-wide wi-fi network</category>
      <category domain="http://securityratty.com/tag/kentucky town shaves">kentucky town shaves</category>
      <category domain="http://securityratty.com/tag/cheaper hotels include">cheaper hotels include</category>
      <category domain="http://securityratty.com/tag/internet">internet</category>
      <category domain="http://securityratty.com/tag/night">night</category>
      <source url="http://wifinetnews.com/archives/008397.html">Wee-Fi: Kentucky Town-Fi; Exorbitant Hotel-Fi</source>
    </item>
  </channel>
</rss>
