<?xml version="1.0" encoding="utf-8"?>
<rss version="2.0"
xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
xmlns:content="http://purl.org/rss/1.0/modules/content/">
<channel>
<title>Scorpion Software Corporate Weblog</title>
<link>http://www.scorpionsoft.com/blog/</link>
<description>The Security Company for Small Business</description>
<copyright>Copyright 2008</copyright>
<lastBuildDate>Thu, 21 Feb 2008 16:47:46 -0800</lastBuildDate>
<generator>http://www.movabletype.org/?v=3.2</generator>
<docs>http://blogs.law.harvard.edu/tech/rss</docs> 
<sy:updatePeriod>hourly</sy:updatePeriod>
<sy:updateFrequency>1</sy:updateFrequency>
<sy:updateBase>2000-01-01T12:00+00:00</sy:updateBase>

<item>
<title>Protecting Outlook Web Access with AuthAnvil</title>
<description><![CDATA[<p>Have you ever considered that there is nothing between someone and all your business email, shared folders or contacts except a simple password that can be easily shared, stolen or circumvented? Email has become a vital part of our daily operations, which makes it a primary target for virus, vandals and thieves. And its becoming ever more a concern for businesses around the world.</p>

<p>Today I wanted to show just how easy it is to add AuthAnvil's strong authentication to Outlook Web Access (OWA). If your office is using Exchange and you use OWA for webmail, you might want to check out the short 5 minute video I created that demonstrates just how quickly and easily you can add protection on your own Exchange server. You can watch it <a href="http://www.authanvil.com/Videos/OWAProtection/index.html" target="_blank">here</a>.  </p>
]]></description>
<link>http://www.scorpionsoft.com/blog/archives/2008/02/protecting_outl.html</link>
<guid>http://www.scorpionsoft.com/blog/archives/2008/02/protecting_outl.html</guid>
<category>Tips &amp; Tricks</category>
<pubDate>Thu, 21 Feb 2008 16:47:46 -0800</pubDate>
<content:encoded><![CDATA[<p>Have you ever considered that there is nothing between someone and all your business email, shared folders or contacts except a simple password that can be easily shared, stolen or circumvented? Email has become a vital part of our daily operations, which makes it a primary target for virus, vandals and thieves. And its becoming ever more a concern for businesses around the world.</p>

<p>Today I wanted to show just how easy it is to add AuthAnvil's strong authentication to Outlook Web Access (OWA). If your office is using Exchange and you use OWA for webmail, you might want to check out the short 5 minute video I created that demonstrates just how quickly and easily you can add protection on your own Exchange server. You can watch it <a href="http://www.authanvil.com/Videos/OWAProtection/index.html" target="_blank">here</a>.  </p>
]]></content:encoded>

</item>
<item>
<title>Can AuthAnvil help with password expiration policies?</title>
<description><![CDATA[<p>This weekend I saw an interesting <a href="http://msmvps.com/blogs/bradley/archive/2008/01/06/the-longer-the-password-i-mean-passphase.aspx" target="_blank">post</a> by Susan Bradley on password complexity policies and the need for a better solution to deal with the pain of frequent password changes. I really started to smile when I saw her say:</p>

<blockquote>And of course with something like <a href="http://www.AuthAnvil.com" target="_blank">www.AuthAnvil.com</a>, you can make that even LONGER of a period to change passphrases.</blockquote>

<p>What she is eluding to is the fact that with the use of strong authentication as a requirement for all your login entry points you no longer need to change it every month (or 42 days if you are using strong Windows password policies). You can easily get away with doing it quarterly, or even longer. Its an interesting byproduct of using strong authentication... you can extend the password expiry so your users don't have to always be changing it. </p>

<p>We changed our own policy from 42 days to quarterly. And its working really well.</p>

<p>YMMV of course. Great post Susan!</p>
]]></description>
<link>http://www.scorpionsoft.com/blog/archives/2008/01/can_authanvil_h.html</link>
<guid>http://www.scorpionsoft.com/blog/archives/2008/01/can_authanvil_h.html</guid>
<category>Tips &amp; Tricks</category>
<pubDate>Mon, 07 Jan 2008 12:48:36 -0800</pubDate>
<content:encoded><![CDATA[<p>This weekend I saw an interesting <a href="http://msmvps.com/blogs/bradley/archive/2008/01/06/the-longer-the-password-i-mean-passphase.aspx" target="_blank">post</a> by Susan Bradley on password complexity policies and the need for a better solution to deal with the pain of frequent password changes. I really started to smile when I saw her say:</p>

<blockquote>And of course with something like <a href="http://www.AuthAnvil.com" target="_blank">www.AuthAnvil.com</a>, you can make that even LONGER of a period to change passphrases.</blockquote>

<p>What she is eluding to is the fact that with the use of strong authentication as a requirement for all your login entry points you no longer need to change it every month (or 42 days if you are using strong Windows password policies). You can easily get away with doing it quarterly, or even longer. Its an interesting byproduct of using strong authentication... you can extend the password expiry so your users don't have to always be changing it. </p>

<p>We changed our own policy from 42 days to quarterly. And its working really well.</p>

<p>YMMV of course. Great post Susan!</p>
]]></content:encoded>

</item>
<item>
<title>How AuthAnvil helps with PCI DSS compliance</title>
<description><![CDATA[<p>As companies extend their online business processes to encompass the acceptance of credit card payments, they need to ensure that they meet compliance objectives being set forth by major credit card companies. The <em>Payment Card Industry Data Security Standard</em> (<a href="https://www.pcisecuritystandards.org" target="_blank">PCI DSS</a>) was created as a guideline to help organizations that process card payments prevent credit card fraud, hacking and various other security issues. </p>

<p>Today we are releasing a <a href="https://secure.authanvil.com/ContentLibrary/default.aspx?file=AAWP-PCI-DSS.pdf">whitepaper</a> that explores the guidance of the PCI standard and demonstrates how AuthAnvil can help to reach compliance objectives.</p>

<p>Of course, if you have any questions about PCI DSS compliance and how AuthAnvil fits in, feel free to <a href="mailto:sales@scorpionsoft.com">contact us</a>.</p>
]]></description>
<link>http://www.scorpionsoft.com/blog/archives/2007/08/how_authanvil_h.html</link>
<guid>http://www.scorpionsoft.com/blog/archives/2007/08/how_authanvil_h.html</guid>
<category>Tips &amp; Tricks</category>
<pubDate>Wed, 01 Aug 2007 11:21:47 -0800</pubDate>
<content:encoded><![CDATA[<p>As companies extend their online business processes to encompass the acceptance of credit card payments, they need to ensure that they meet compliance objectives being set forth by major credit card companies. The <em>Payment Card Industry Data Security Standard</em> (<a href="https://www.pcisecuritystandards.org" target="_blank">PCI DSS</a>) was created as a guideline to help organizations that process card payments prevent credit card fraud, hacking and various other security issues. </p>

<p>Today we are releasing a <a href="https://secure.authanvil.com/ContentLibrary/default.aspx?file=AAWP-PCI-DSS.pdf">whitepaper</a> that explores the guidance of the PCI standard and demonstrates how AuthAnvil can help to reach compliance objectives.</p>

<p>Of course, if you have any questions about PCI DSS compliance and how AuthAnvil fits in, feel free to <a href="mailto:sales@scorpionsoft.com">contact us</a>.</p>
]]></content:encoded>

</item>
<item>
<title>Publishing AuthAnvil Self Service Token Enrollment</title>
<description><![CDATA[<p>This evening I noticed that Amy Babinchak from Harbor Computing Services has <a href="http://isainsbs.blogspot.com/2007/04/publishing-authanvil-self-service-token.html" target="_blank">posted an interesting tip</a> on her blog about how to publish the AuthAnvil self enrollment site through ISA on SBS. Amy is a great ISA MVP who really understands Microsoft's firewall on SBS, and as a client of ours has been instrumental in some of the direction of RWW-Guard and AuthAnvil. </p>

<p>If you wish to make the self service enrollment site for your AuthAnvil server be available on the Internet, check out her <a href="http://isainsbs.blogspot.com/2007/04/publishing-authanvil-self-service-token.html" target="_blank">post</a> on the subject.</p>

<p>Thanks Amy!</p>
]]></description>
<link>http://www.scorpionsoft.com/blog/archives/2007/04/publishing_auth.html</link>
<guid>http://www.scorpionsoft.com/blog/archives/2007/04/publishing_auth.html</guid>
<category>Tips &amp; Tricks</category>
<pubDate>Wed, 25 Apr 2007 23:13:14 -0800</pubDate>
<content:encoded><![CDATA[<p>This evening I noticed that Amy Babinchak from Harbor Computing Services has <a href="http://isainsbs.blogspot.com/2007/04/publishing-authanvil-self-service-token.html" target="_blank">posted an interesting tip</a> on her blog about how to publish the AuthAnvil self enrollment site through ISA on SBS. Amy is a great ISA MVP who really understands Microsoft's firewall on SBS, and as a client of ours has been instrumental in some of the direction of RWW-Guard and AuthAnvil. </p>

<p>If you wish to make the self service enrollment site for your AuthAnvil server be available on the Internet, check out her <a href="http://isainsbs.blogspot.com/2007/04/publishing-authanvil-self-service-token.html" target="_blank">post</a> on the subject.</p>

<p>Thanks Amy!</p>
]]></content:encoded>

</item>
<item>
<title>What do passwords cost your business?</title>
<description><![CDATA[<p>As companies extend access to their business online, they need enhanced password security, better identity management, and improved remote access control. Unlike traditional password management systems, strong authentication delivers the appropriate safeguards to increase remote access productivity while reducing online risk and the associated operating costs. </p>

<p>Today we are releasing a <a href="https://secure.authanvil.com/ContentLibrary/default.aspx?file=AAWP-CostOfPasswords-v1.pdf" target="_blank">whitepaper</a> that explores the total cost of ownership (TCO) associated with the use of password security to allow small and medium sized businesses to make an informed decision about the value of strong authentication systems such as <a href="http://www.scorpionsoft.com/products/authanvil/" target="_blank">AuthAnvil</a>. We will show that the hidden costs of "free" password security actually outweigh the costs of implementing strong authentication, and offer far less protection.</p>

<p>This <a href="https://secure.authanvil.com/ContentLibrary/default.aspx?file=AAWP-CostOfPasswords-v1.pdf" target="_blank">whitepaper</a>, along with the accompanying TCO worksheet provided in Appendix A, will help you to understand the actual costs involved in password security. You can substitute your own numbers to determine if strong authentication costs and benefits outweigh those provided with password security for your business. Of course, we encourage you to <a href="mailto:sales@scorpionsoft.com">contact us</a> at any time to get a more comprehensive cost analysis based on your own unique needs.</p>
]]></description>
<link>http://www.scorpionsoft.com/blog/archives/2007/04/what_do_passwor.html</link>
<guid>http://www.scorpionsoft.com/blog/archives/2007/04/what_do_passwor.html</guid>
<category>Tips &amp; Tricks</category>
<pubDate>Mon, 16 Apr 2007 10:01:25 -0800</pubDate>
<content:encoded><![CDATA[<p>As companies extend access to their business online, they need enhanced password security, better identity management, and improved remote access control. Unlike traditional password management systems, strong authentication delivers the appropriate safeguards to increase remote access productivity while reducing online risk and the associated operating costs. </p>

<p>Today we are releasing a <a href="https://secure.authanvil.com/ContentLibrary/default.aspx?file=AAWP-CostOfPasswords-v1.pdf" target="_blank">whitepaper</a> that explores the total cost of ownership (TCO) associated with the use of password security to allow small and medium sized businesses to make an informed decision about the value of strong authentication systems such as <a href="http://www.scorpionsoft.com/products/authanvil/" target="_blank">AuthAnvil</a>. We will show that the hidden costs of "free" password security actually outweigh the costs of implementing strong authentication, and offer far less protection.</p>

<p>This <a href="https://secure.authanvil.com/ContentLibrary/default.aspx?file=AAWP-CostOfPasswords-v1.pdf" target="_blank">whitepaper</a>, along with the accompanying TCO worksheet provided in Appendix A, will help you to understand the actual costs involved in password security. You can substitute your own numbers to determine if strong authentication costs and benefits outweigh those provided with password security for your business. Of course, we encourage you to <a href="mailto:sales@scorpionsoft.com">contact us</a> at any time to get a more comprehensive cost analysis based on your own unique needs.</p>
]]></content:encoded>

</item>
<item>
<title>HOWTO: Adding two-factor auth support into your own apps with AuthAnvil</title>
<description><![CDATA[<p>Recently I have had some deep discussions with a few partners now about leveraging AuthAnvil deployments to offer two-factor authentication into existing business workflow. Not only can AuthAnvil be used for logging into your network and workstations, you CAN add support in your LOB applications that you write in house.</p>

<p>Today I put up a HOWTO video on "<a href="http://www.scorpionsoft.com/products/authanvil/videos/Consume-AuthAnvil/">Adding two-factor auth support into your own apps with AuthAnvil</a>".  Within the first 4 minutes of the 9 minute video you will see just how easy it is to wire up your apps to consume the AuthAnvil Web Service in just a few lines of code. That's right. You don't need to be an expert in strong authentication security to add the power to your own apps.</p>

<p>I hope you find it useful. Enjoy.</p>
]]></description>
<link>http://www.scorpionsoft.com/blog/archives/2007/03/howto_adding_tw.html</link>
<guid>http://www.scorpionsoft.com/blog/archives/2007/03/howto_adding_tw.html</guid>
<category>Tips &amp; Tricks</category>
<pubDate>Fri, 30 Mar 2007 13:44:54 -0800</pubDate>
<content:encoded><![CDATA[<p>Recently I have had some deep discussions with a few partners now about leveraging AuthAnvil deployments to offer two-factor authentication into existing business workflow. Not only can AuthAnvil be used for logging into your network and workstations, you CAN add support in your LOB applications that you write in house.</p>

<p>Today I put up a HOWTO video on "<a href="http://www.scorpionsoft.com/products/authanvil/videos/Consume-AuthAnvil/">Adding two-factor auth support into your own apps with AuthAnvil</a>".  Within the first 4 minutes of the 9 minute video you will see just how easy it is to wire up your apps to consume the AuthAnvil Web Service in just a few lines of code. That's right. You don't need to be an expert in strong authentication security to add the power to your own apps.</p>

<p>I hope you find it useful. Enjoy.</p>
]]></content:encoded>

</item>
<item>
<title>HOWTO: Filtering firewall events in the FWDB Console</title>
<description><![CDATA[<p>Did you know that there is a powerful query analysis engine behind the Firewall Dashboard (FWDB)? No? You're not alone. </p>

<p>Most people use the FWDB to get their graphical daily reports, and never open the FWDB Console. But good administration of the firewall reports goes beyond pretty graphs. The goal of the FWDB is to sift through thousands upon thousands of firewall events and point you in the direction of areas you should look deeper into. Human heurisitics will always trump static analysis by a computer, and there are some interesting tools in the FWDB Console that can really help in accomplishing that.</p>

<p>Today I put up a HOWTO video on "<a href="http://www.scorpionsoft.com/products/fwdashboard/videos/FWDB-Filter-Events/">Filtering firewall events in the FWDB Console</a>". If you use the FWDB you owe it to yourself to spend 5 minutes checking out the video and seeing how you can use the powers of the filtering of the "View Firewall Events" to add in this type of analysis.</p>

<p>Feel free to send me feedback if you would like to discuss this feature further, or have suggestions on how you would like to see the tool updated to make your analysis easier. </p>
]]></description>
<link>http://www.scorpionsoft.com/blog/archives/2006/06/howto_filtering.html</link>
<guid>http://www.scorpionsoft.com/blog/archives/2006/06/howto_filtering.html</guid>
<category>Tips &amp; Tricks</category>
<pubDate>Tue, 06 Jun 2006 14:37:01 -0800</pubDate>
<content:encoded><![CDATA[<p>Did you know that there is a powerful query analysis engine behind the Firewall Dashboard (FWDB)? No? You're not alone. </p>

<p>Most people use the FWDB to get their graphical daily reports, and never open the FWDB Console. But good administration of the firewall reports goes beyond pretty graphs. The goal of the FWDB is to sift through thousands upon thousands of firewall events and point you in the direction of areas you should look deeper into. Human heurisitics will always trump static analysis by a computer, and there are some interesting tools in the FWDB Console that can really help in accomplishing that.</p>

<p>Today I put up a HOWTO video on "<a href="http://www.scorpionsoft.com/products/fwdashboard/videos/FWDB-Filter-Events/">Filtering firewall events in the FWDB Console</a>". If you use the FWDB you owe it to yourself to spend 5 minutes checking out the video and seeing how you can use the powers of the filtering of the "View Firewall Events" to add in this type of analysis.</p>

<p>Feel free to send me feedback if you would like to discuss this feature further, or have suggestions on how you would like to see the tool updated to make your analysis easier. </p>
]]></content:encoded>

</item>
<item>
<title>HOWTO: Import/Export Firewall Dashboard Settings</title>
<description><![CDATA[<p>Ever find yourself in a situation where you want to reinstall the Firewall Dashboard, but don't want to have to re-enter all the configuration settings, especially your custom False Positive Filters? How about speeding up the standardized deployment of FWDB on multiple client sites?</p>

<p>Well, with the release of v1.1 came a new command line tool to do just that. Called <em>FWDBSettings.exe</em>, it can export existing settings directly to XML, which you can then import on any target FWDB machine (or itself of course). Want to learn more? Then check our our <a href="http://www.scorpionsoft.com/products/fwdashboard/videos/FWDB-Import-Export/">Video HOWTO</a> on how to do just that.</p>
]]></description>
<link>http://www.scorpionsoft.com/blog/archives/2006/06/howto_importexp.html</link>
<guid>http://www.scorpionsoft.com/blog/archives/2006/06/howto_importexp.html</guid>
<category>Tips &amp; Tricks</category>
<pubDate>Thu, 01 Jun 2006 11:39:22 -0800</pubDate>
<content:encoded><![CDATA[<p>Ever find yourself in a situation where you want to reinstall the Firewall Dashboard, but don't want to have to re-enter all the configuration settings, especially your custom False Positive Filters? How about speeding up the standardized deployment of FWDB on multiple client sites?</p>

<p>Well, with the release of v1.1 came a new command line tool to do just that. Called <em>FWDBSettings.exe</em>, it can export existing settings directly to XML, which you can then import on any target FWDB machine (or itself of course). Want to learn more? Then check our our <a href="http://www.scorpionsoft.com/products/fwdashboard/videos/FWDB-Import-Export/">Video HOWTO</a> on how to do just that.</p>
]]></content:encoded>

</item>
<item>
<title>HOWTO: Add FWDB to the SBS and ISA Management Consoles</title>
<description><![CDATA[<p>I thought we would try something a bit different, and create a quick HOWTO using <a href="http://www.techsmith.com/">TechSmith's</a> neat <a href="http://www.techsmith.com/community/blogcomments.asp?thread=141">Camtasia Studio software</a>. </p>

<p>I frequently get asked how to add the Firewall Dashboard to the SBS Server Manager. Some people don't even know, but you can ALSO add it to the ISA Management Console. WHAT?? That's right... the Firewall Dashboard can be installed ANYWHERE where MMC 2.0 snapins are allowed.</p>

<p>Not yet convinced? Well, check out the quick <a href="http://www.scorpionsoft.com/products/fwdashboard/videos/FWDB-MMC-Snapin/">HOWTO screencast</a> I did showing just that!</p>

<p>I would love some feedback on the screencast. If its something people find useful, I will do a bunch more. With Camtasia, it takes no time at all to produce these things. I think it was less than an hour to get that 4 minute piece done, and I would have to say the first 45 minutes was all about learning how to use the software. After that... it took no time to make the recording. </p>

<p>So drop me a line at <a href="mailto:dana@scorpionsoft.com">dana@scorpionsoft.com</a>, or log into Typekey and leave me a comment here! I look forward to hearing what you guys think!</p>
]]></description>
<link>http://www.scorpionsoft.com/blog/archives/2006/05/howto_add_fwdb.html</link>
<guid>http://www.scorpionsoft.com/blog/archives/2006/05/howto_add_fwdb.html</guid>
<category>Tips &amp; Tricks</category>
<pubDate>Tue, 30 May 2006 16:24:30 -0800</pubDate>
<content:encoded><![CDATA[<p>I thought we would try something a bit different, and create a quick HOWTO using <a href="http://www.techsmith.com/">TechSmith's</a> neat <a href="http://www.techsmith.com/community/blogcomments.asp?thread=141">Camtasia Studio software</a>. </p>

<p>I frequently get asked how to add the Firewall Dashboard to the SBS Server Manager. Some people don't even know, but you can ALSO add it to the ISA Management Console. WHAT?? That's right... the Firewall Dashboard can be installed ANYWHERE where MMC 2.0 snapins are allowed.</p>

<p>Not yet convinced? Well, check out the quick <a href="http://www.scorpionsoft.com/products/fwdashboard/videos/FWDB-MMC-Snapin/">HOWTO screencast</a> I did showing just that!</p>

<p>I would love some feedback on the screencast. If its something people find useful, I will do a bunch more. With Camtasia, it takes no time at all to produce these things. I think it was less than an hour to get that 4 minute piece done, and I would have to say the first 45 minutes was all about learning how to use the software. After that... it took no time to make the recording. </p>

<p>So drop me a line at <a href="mailto:dana@scorpionsoft.com">dana@scorpionsoft.com</a>, or log into Typekey and leave me a comment here! I look forward to hearing what you guys think!</p>
]]></content:encoded>

</item>
<item>
<title>Zotob: Latest Network Worm and How Carina Stops It</title>
<description><![CDATA[<p>On August 9th Microsoft released a patch for a vulnerability in the Windows Plug and Play service (<a href="http://www.microsoft.com/technet/security/bulletin/MS05-039.mspx">MS05-039</a>), which was quickly followed with a new worm that exploited it.</p>

<p>For our Carina customers that ran a full profile on their Windows 2000 servers and included a full profile of the WINNT directory and system files, you are already protected against this vulnerability even before applying the patch (which you should do anyways). The impact is significantly reduced to a point that the worm cannot successfully install the backdoor trojan, rendering this attack useless for the following reasons:</p>

<p><UL><LI>On exploitation Zotob tries to WRITE <strong>botzor.exe</strong> to the %systemroot% directory which is DENIED by the enforcement policy for the Windows core system.<br />
<LI>On Exploitation Zotob tries to WRITE(append) to the %systemroot%\system32\drivers\etc\hosts file, which is DENIED by the enforcement policy for the Windows core system.</UL></p>

<p>On exploitation the malicious code will install a few registry keys which can be safely removed. The easiest way to do this is by using the <a href="http://www.microsoft.com/security/malwareremove/default.mspx">Microsoft Windows Malicious Software Removal Tool</a> to search for and remove the Zotob worm and its variants from your hard drive. </p>

<p>You can read more information about the Zotob worm from Microsoft <a href="http://www.microsoft.com/security/incident/zotob.mspx">here</a>.<br />
</p>
]]></description>
<link>http://www.scorpionsoft.com/blog/archives/2005/08/zotob_latest_ne_1.html</link>
<guid>http://www.scorpionsoft.com/blog/archives/2005/08/zotob_latest_ne_1.html</guid>
<category>Tips &amp; Tricks</category>
<pubDate>Sun, 14 Aug 2005 11:48:29 -0800</pubDate>
<content:encoded><![CDATA[<p>On August 9th Microsoft released a patch for a vulnerability in the Windows Plug and Play service (<a href="http://www.microsoft.com/technet/security/bulletin/MS05-039.mspx">MS05-039</a>), which was quickly followed with a new worm that exploited it.</p>

<p>For our Carina customers that ran a full profile on their Windows 2000 servers and included a full profile of the WINNT directory and system files, you are already protected against this vulnerability even before applying the patch (which you should do anyways). The impact is significantly reduced to a point that the worm cannot successfully install the backdoor trojan, rendering this attack useless for the following reasons:</p>

<p><UL><LI>On exploitation Zotob tries to WRITE <strong>botzor.exe</strong> to the %systemroot% directory which is DENIED by the enforcement policy for the Windows core system.<br />
<LI>On Exploitation Zotob tries to WRITE(append) to the %systemroot%\system32\drivers\etc\hosts file, which is DENIED by the enforcement policy for the Windows core system.</UL></p>

<p>On exploitation the malicious code will install a few registry keys which can be safely removed. The easiest way to do this is by using the <a href="http://www.microsoft.com/security/malwareremove/default.mspx">Microsoft Windows Malicious Software Removal Tool</a> to search for and remove the Zotob worm and its variants from your hard drive. </p>

<p>You can read more information about the Zotob worm from Microsoft <a href="http://www.microsoft.com/security/incident/zotob.mspx">here</a>.<br />
</p>
]]></content:encoded>

</item>
<item>
<title>Quick Configuration Replication between Servers</title>
<description><![CDATA[<p>Have you ever found yourself having to deploy Carina on multiple servers that have a similar protection profile? Instead of worrying about profiling the system again consider replicating the configuration from one machine to another.</p>

<p>How do you do that? It's quite easy.</p>

<p><OL><LI>Start the Administrative Console and log on<br />
<LI>Select the "Carina Maintenance" group<br />
<LI>Select the "Back up your data" task<br />
<LI>When prompted at the dialog, select:<UL><LI>Active Policy Rulesets<LI>Preferences</UL><br />
<LI>Browse to store the backup on the other server (assuming a free share is available). If a share isn't available, send the file to diskette, or some other transportable media such as a USB flashkey.<br />
<LI>Press the "Backup" button<br />
<LI>Do a default installation of Carina on the new server<br />
<LI>Start the Administrative Console and log on<br />
<LI>Select the "Carina Maintenance" group<br />
<LI>Select the "Restore an old backup" task<br />
<LI>When prompted click "Browse" and select the backup file created earlier<br />
<LI>Click the "Select All" button to select all data to restore<br />
<LI>Press the "Restore" button<br />
<LI>In the menu at the top, select Tools->Preferences->License Key<br />
<LI>Enter in the license key for the new server<br />
<LI>Save the key and exit.<br />
<LI>Select the "Set Protection Mode" task<br />
<LI>Select "IPS" Mode<br />
</OL></p>

<p>At this point, you will have replicated the last known configuration on the previous server and activated the rules. Now in IPS mode, it is running the same protection profile as the previous server.</p>

<p>Only cavet is that the pathing have to be the same. Outside of that, the same protection profile will immediately be locked into the kernel, giving you immediate protection.</p>
]]></description>
<link>http://www.scorpionsoft.com/blog/archives/2005/01/quick_configura.html</link>
<guid>http://www.scorpionsoft.com/blog/archives/2005/01/quick_configura.html</guid>
<category>Tips &amp; Tricks</category>
<pubDate>Mon, 03 Jan 2005 17:56:17 -0800</pubDate>
<content:encoded><![CDATA[<p>Have you ever found yourself having to deploy Carina on multiple servers that have a similar protection profile? Instead of worrying about profiling the system again consider replicating the configuration from one machine to another.</p>

<p>How do you do that? It's quite easy.</p>

<p><OL><LI>Start the Administrative Console and log on<br />
<LI>Select the "Carina Maintenance" group<br />
<LI>Select the "Back up your data" task<br />
<LI>When prompted at the dialog, select:<UL><LI>Active Policy Rulesets<LI>Preferences</UL><br />
<LI>Browse to store the backup on the other server (assuming a free share is available). If a share isn't available, send the file to diskette, or some other transportable media such as a USB flashkey.<br />
<LI>Press the "Backup" button<br />
<LI>Do a default installation of Carina on the new server<br />
<LI>Start the Administrative Console and log on<br />
<LI>Select the "Carina Maintenance" group<br />
<LI>Select the "Restore an old backup" task<br />
<LI>When prompted click "Browse" and select the backup file created earlier<br />
<LI>Click the "Select All" button to select all data to restore<br />
<LI>Press the "Restore" button<br />
<LI>In the menu at the top, select Tools->Preferences->License Key<br />
<LI>Enter in the license key for the new server<br />
<LI>Save the key and exit.<br />
<LI>Select the "Set Protection Mode" task<br />
<LI>Select "IPS" Mode<br />
</OL></p>

<p>At this point, you will have replicated the last known configuration on the previous server and activated the rules. Now in IPS mode, it is running the same protection profile as the previous server.</p>

<p>Only cavet is that the pathing have to be the same. Outside of that, the same protection profile will immediately be locked into the kernel, giving you immediate protection.</p>
]]></content:encoded>

</item>
<item>
<title>Work Around: Analyzer unable to load Profiler Data</title>
<description><![CDATA[<p>There has been an interesting bug caught today that will prevent the Carina Analyzer from loading the System Profiler data if you have an ampersand (<B>&amp;</B>) in the main file/directory path of a resource being profiled. Due to a schema constraint on the dataset such characters are viewed as invalid data and the Carina parser rejects it, as it should.</p>

<p>The System Profiler has been updated to correctly output XML to support this through the use of a CDATA member, and this fix will be available in our next release. Until then, to work around this problem you can manually edit the carinaprofiler.log file and wrap the offending data with a CDATA tag.</p>

<p>Example (Original Data): &lt;src&gt;c:\foo\fu & bar\app.exe&lt;/src&gt;<br />
Example (Work around): &lt;src&gt;<b>&lt;![CDATA[</B>c:\foo\fu & bar\app.exe<B>]]&gt;</B>&lt;/src&gt;</p>

<p>Thanks to Wim Kerkhoff for reporting this bug, and providing the details to diagnose the problem.</p>
]]></description>
<link>http://www.scorpionsoft.com/blog/archives/2004/05/work_around_ana.html</link>
<guid>http://www.scorpionsoft.com/blog/archives/2004/05/work_around_ana.html</guid>
<category>Tips &amp; Tricks</category>
<pubDate>Wed, 19 May 2004 13:55:44 -0800</pubDate>
<content:encoded><![CDATA[<p>There has been an interesting bug caught today that will prevent the Carina Analyzer from loading the System Profiler data if you have an ampersand (<B>&amp;</B>) in the main file/directory path of a resource being profiled. Due to a schema constraint on the dataset such characters are viewed as invalid data and the Carina parser rejects it, as it should.</p>

<p>The System Profiler has been updated to correctly output XML to support this through the use of a CDATA member, and this fix will be available in our next release. Until then, to work around this problem you can manually edit the carinaprofiler.log file and wrap the offending data with a CDATA tag.</p>

<p>Example (Original Data): &lt;src&gt;c:\foo\fu & bar\app.exe&lt;/src&gt;<br />
Example (Work around): &lt;src&gt;<b>&lt;![CDATA[</B>c:\foo\fu & bar\app.exe<B>]]&gt;</B>&lt;/src&gt;</p>

<p>Thanks to Wim Kerkhoff for reporting this bug, and providing the details to diagnose the problem.</p>
]]></content:encoded>

</item>


</channel>
</rss>