<rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:trackback="http://madskills.com/public/xml/rss/module/trackback/" xmlns:wfw="http://wellformedweb.org/CommentAPI/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/"><channel><title>CyberForge</title><link>http://cyberforge.com/weblog/MainFeed.aspx</link><description>The Architect Aggregator</description><generator>.Text Version 0.95.2004.102</generator><item><title>This blog is moving! - New location http://www.aniltj.com/blog</title><link>http://CyberForge.com/weblog/aniltj/archive/2005/05/09/995.aspx</link><pubDate>Tue, 10 May 2005 04:03:00 GMT</pubDate><guid isPermaLink="true">http://CyberForge.com/weblog/aniltj/archive/2005/05/09/995.aspx</guid><wfw:comment>http://CyberForge.com/weblog/aniltj/comments/995.aspx</wfw:comment><wfw:commentRss>http://CyberForge.com/weblog/aniltj/comments/commentRss/995.aspx</wfw:commentRss><comments>http://CyberForge.com/weblog/aniltj/archive/2005/05/09/995.aspx#comment</comments><slash:comments>0</slash:comments><trackback:ping>http://CyberForge.com/weblog/aniltj/services/trackbacks/995.aspx</trackback:ping><source url="http://CyberForge.com/weblog/aniltj/rss.aspx">SecureCoder by Anil John</source><description>&lt;P&gt;This blog is moving!&lt;/P&gt;
&lt;P&gt;New location &lt;A href="http://www.aniltj.com/blog"&gt;http://www.aniltj.com/blog&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;RSS Feed @ &lt;A href="http://www.aniltj.com/blog/SyndicationService.asmx/GetRss"&gt;http://www.aniltj.com/blog/SyndicationService.asmx/GetRss&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;img src ="http://CyberForge.com/weblog/aniltj/aggbug/995.aspx" width = "1" height = "1" /&gt;</description><dc:creator>Anil John</dc:creator></item><item><title>Whew!!</title><link>http://CyberForge.com/weblog/aniltj/archive/2004/12/20/804.aspx</link><pubDate>Tue, 21 Dec 2004 09:30:00 GMT</pubDate><guid isPermaLink="true">http://CyberForge.com/weblog/aniltj/archive/2004/12/20/804.aspx</guid><wfw:comment>http://CyberForge.com/weblog/aniltj/comments/804.aspx</wfw:comment><wfw:commentRss>http://CyberForge.com/weblog/aniltj/comments/commentRss/804.aspx</wfw:commentRss><comments>http://CyberForge.com/weblog/aniltj/archive/2004/12/20/804.aspx#comment</comments><slash:comments>7</slash:comments><trackback:ping>http://CyberForge.com/weblog/aniltj/services/trackbacks/804.aspx</trackback:ping><source url="http://CyberForge.com/weblog/aniltj/rss.aspx">SecureCoder by Anil John</source><description>&lt;p&gt;When I wrote about &lt;a href="http://cyberforge.com/weblog/aniltj/archive/2004/11/14/750.aspx"&gt;Reliability and Security in a home network environment&lt;/a&gt; earlier, I never realized that I would have to put it to the test so soon!&lt;/p&gt; &lt;p&gt;About a week ago, my SBS 2003 server started hootin' and hollerin' at me. It turned out that&amp;nbsp;the&amp;nbsp;200GB hard drive&amp;nbsp;that held all of my data was the culprit. I rebooted the machine, came into the drive diagnostics and found out that the new drive that held all of my data had just given up the ghost!&amp;nbsp; But since that drive was configured in a RAID 1 (Mirrored) configuration I had a bit of a reprieve. I broke the array, took the defective drive out of the drive caddy and rebooted.&amp;nbsp;&amp;nbsp;Everything just came&amp;nbsp;up just fine!&amp;nbsp; Sweet!&lt;/p&gt; &lt;p&gt;I immediately increased the frequency of my backups to my external USB drive&amp;nbsp;to daily instead of weekly and called the drive manufacturer to request a replacement.&amp;nbsp;I got the replacement drive today, loaded it into the drive caddy, brought up the RAID controller console, and asked it to rebuild my RAID 1 array. It took more than 2 hours, but I just got notified that the drive array rebuild was complete and that my RAID 1 array was functioning properly.&amp;nbsp; My paranoia.. ah.. excuse me.... My disaster recovery and contingency plan just got validated big time! :-)&lt;/p&gt;&lt;img src ="http://CyberForge.com/weblog/aniltj/aggbug/804.aspx" width = "1" height = "1" /&gt;</description><dc:creator>Anil John</dc:creator></item><item><title>Acronics True Image or Norton Ghost?</title><link>http://CyberForge.com/weblog/aniltj/archive/2004/12/18/796.aspx</link><pubDate>Sat, 18 Dec 2004 23:53:00 GMT</pubDate><guid isPermaLink="true">http://CyberForge.com/weblog/aniltj/archive/2004/12/18/796.aspx</guid><wfw:comment>http://CyberForge.com/weblog/aniltj/comments/796.aspx</wfw:comment><wfw:commentRss>http://CyberForge.com/weblog/aniltj/comments/commentRss/796.aspx</wfw:commentRss><comments>http://CyberForge.com/weblog/aniltj/archive/2004/12/18/796.aspx#comment</comments><slash:comments>12</slash:comments><trackback:ping>http://CyberForge.com/weblog/aniltj/services/trackbacks/796.aspx</trackback:ping><source url="http://CyberForge.com/weblog/aniltj/rss.aspx">SecureCoder by Anil John</source><description>&lt;p&gt;I am looking for some drive imaging software that I can use to take a snap-shot of both my Windows 2003 server and my XP Pro clients. After looking over the online specs for both True Image and Ghost, I am not exactly clear if taking an image of Windows 2003 is supported (XP is) in both products WITHOUT upgrading to the "Enterprise-class" version of both products.&lt;/p&gt; &lt;p&gt;In short, I want to do manual images of both Windows 2003 and XP Pro. I am not at this point looking for live/incremental snap shots of Windows 2003. Will the entry level versions of True Image and/or Ghost do this job? Any practical experiences to share on the usage of one or both?&lt;/p&gt;&lt;img src ="http://CyberForge.com/weblog/aniltj/aggbug/796.aspx" width = "1" height = "1" /&gt;</description><dc:creator>Anil John</dc:creator></item><item><title>Webpart troubles on the SBS2003 SharePoint "Companyweb" site</title><link>http://CyberForge.com/weblog/aniltj/archive/2004/12/17/793.aspx</link><pubDate>Sat, 18 Dec 2004 08:39:00 GMT</pubDate><guid isPermaLink="true">http://CyberForge.com/weblog/aniltj/archive/2004/12/17/793.aspx</guid><wfw:comment>http://CyberForge.com/weblog/aniltj/comments/793.aspx</wfw:comment><wfw:commentRss>http://CyberForge.com/weblog/aniltj/comments/commentRss/793.aspx</wfw:commentRss><comments>http://CyberForge.com/weblog/aniltj/archive/2004/12/17/793.aspx#comment</comments><slash:comments>5</slash:comments><trackback:ping>http://CyberForge.com/weblog/aniltj/services/trackbacks/793.aspx</trackback:ping><source url="http://CyberForge.com/weblog/aniltj/rss.aspx">SecureCoder by Anil John</source><description>&lt;P&gt;I am currently&amp;nbsp;running SBS 2003 with ISA Server. One of the reasons I wanted to do this was that SBS by default comes with a Windows SharePoint Services site ("Companyweb")&amp;nbsp;and I wanted to explore custom web part development.&lt;/P&gt;
&lt;P&gt;Well.. I have not even gotten to that point yet. Playing around with third party web parts, I&amp;nbsp;installed SmilingGoat's FeedReader web part to bring up some RSS feeds on my SharePoint site and I am consistently getting the following error message:&lt;/P&gt;
&lt;BLOCKQUOTE dir=ltr style="MARGIN-RIGHT: 0px"&gt;
&lt;P&gt;&lt;SPAN class=ms-descriptiontext&gt;&lt;EM&gt;Searching for your RSS feed has timed out.&lt;BR&gt;If you use a proxy server, please make sure the address and port are correct in the Web Part settings.&lt;BR&gt;If you do not use a proxy server, please validate the RSS feed URL is correct.&lt;/EM&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;/BLOCKQUOTE&gt;
&lt;P&gt;&lt;SPAN class=ms-descriptiontext&gt;I have configured the proxy name and the proxy port on the web part settings within the shared view of the web part AND this is a stable feed that I am going against (The KBAlertz SharePoint RSS feed) AND I have no issues accessing the Internet via the browser that is configured with the same proxy settings.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN class=ms-descriptiontext&gt;So I put that on hold for a bit&amp;nbsp;and deployed the SmartPart 1.0.0.0 web part which enable you to host ASP.NET user controls within it. After installation of the SmartPart in the GAC via the install routine, I drop the SmartPart List onto the "Companyweb" page and choose the provided "Dropdown Navigation Sample" example. The site at that point dies with&amp;nbsp;the following error:&lt;/SPAN&gt;&lt;/P&gt;
&lt;BLOCKQUOTE dir=ltr style="MARGIN-RIGHT: 0px"&gt;
&lt;P&gt;&lt;SPAN class=ms-descriptiontext&gt;&lt;EM&gt;&lt;SPAN class=ms-descriptiontext id=LabelMessage&gt;The "UserControlWebpart" Web Part appears to be causing a problem.&lt;/SPAN&gt;&lt;/EM&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;/BLOCKQUOTE&gt;
&lt;P&gt;&lt;SPAN class=ms-descriptiontext&gt;I have to go and disable/delete the web part in order for the "Companyweb" SharePoint site to come up again.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN class=ms-descriptiontext&gt;I am wondering at this point if there is anything unique about the SharePoint installation on the SBS 2003 box or if anyone has encountered such an error before. Bit frustrating!&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN class=ms-descriptiontext&gt;I would very much appreciate any pointers anyone can provide to troubleshooting this issue.&lt;/SPAN&gt;&lt;/P&gt;&lt;img src ="http://CyberForge.com/weblog/aniltj/aggbug/793.aspx" width = "1" height = "1" /&gt;</description><dc:creator>Anil John</dc:creator></item><item><title>Upcoming Secure Coding Book by authors of Writing Secure Code!</title><link>http://CyberForge.com/weblog/aniltj/archive/2004/12/10/788.aspx</link><pubDate>Sat, 11 Dec 2004 09:42:00 GMT</pubDate><guid isPermaLink="true">http://CyberForge.com/weblog/aniltj/archive/2004/12/10/788.aspx</guid><wfw:comment>http://CyberForge.com/weblog/aniltj/comments/788.aspx</wfw:comment><wfw:commentRss>http://CyberForge.com/weblog/aniltj/comments/commentRss/788.aspx</wfw:commentRss><comments>http://CyberForge.com/weblog/aniltj/archive/2004/12/10/788.aspx#comment</comments><slash:comments>4</slash:comments><trackback:ping>http://CyberForge.com/weblog/aniltj/services/trackbacks/788.aspx</trackback:ping><source url="http://CyberForge.com/weblog/aniltj/rss.aspx">SecureCoder by Anil John</source><description>&lt;p&gt;Came across an interesting comment on one of the lists that I am on.&amp;nbsp;&lt;/p&gt; &lt;p&gt;It would appear that Michael Howard and David LeBlanc, the authors of Writing Secure Code, are working on a new book with John Viega (Building Secure Software)&amp;nbsp;and David Wheeler which is scheduled to hit the shelves in about 6 months.&amp;nbsp; According to LeBlanc, they specifically chose this set of authors to provide really good cross-platform coverage.&lt;/p&gt; &lt;p&gt;Looks like&amp;nbsp;a must have book!&lt;/p&gt;&lt;img src ="http://CyberForge.com/weblog/aniltj/aggbug/788.aspx" width = "1" height = "1" /&gt;</description><dc:creator>Anil John</dc:creator></item><item><title>IEEE Security &amp; Privacy: Building Security In </title><link>http://CyberForge.com/weblog/aniltj/archive/2004/12/10/787.aspx</link><pubDate>Sat, 11 Dec 2004 09:30:00 GMT</pubDate><guid isPermaLink="true">http://CyberForge.com/weblog/aniltj/archive/2004/12/10/787.aspx</guid><wfw:comment>http://CyberForge.com/weblog/aniltj/comments/787.aspx</wfw:comment><wfw:commentRss>http://CyberForge.com/weblog/aniltj/comments/commentRss/787.aspx</wfw:commentRss><comments>http://CyberForge.com/weblog/aniltj/archive/2004/12/10/787.aspx#comment</comments><slash:comments>2</slash:comments><trackback:ping>http://CyberForge.com/weblog/aniltj/services/trackbacks/787.aspx</trackback:ping><source url="http://CyberForge.com/weblog/aniltj/rss.aspx">SecureCoder by Anil John</source><description>&lt;p&gt;Gary McGraw has a series of articles in IEEE Security &amp;amp; Privacy that address secure coding issues. As a service to the community, he has made the articles available to the community. The current article in the series ".... is on Penetration Testing.&amp;nbsp; This article was co-authored by Brad Arkin (Symantec) and Scott Stender."&lt;/p&gt; &lt;blockquote&gt; &lt;p&gt;Previous articles in the series:&lt;br /&gt; &lt;a href="http://www.cigital.com/papers/download/bsi5-static.pdf"&gt;http://www.cigital.com/papers/download/bsi5-static.pdf&lt;/a&gt;&lt;br /&gt; &lt;a href="http://www.cigital.com/papers/download/misuse-bp.pdf"&gt;http://www.cigital.com/papers/download/misuse-bp.pdf&lt;/a&gt;&lt;br /&gt; &lt;a href="http://www.cigital.com/papers/download/risk-analysis.pdf"&gt;http://www.cigital.com/papers/download/risk-analysis.pdf&lt;/a&gt;&lt;br /&gt; &lt;a href="http://www.cigital.com/papers/download/j2oth-qxd.pdf"&gt;http://www.cigital.com/papers/download/j2oth-qxd.pdf&lt;/a&gt;&lt;br /&gt; &lt;a href="http://www.cigital.com/papers/download/software-security-gem.pdf"&gt;http://www.cigital.com/papers/download/software-security-gem.pdf&lt;/a&gt;&lt;br /&gt; &lt;a href="http://www.cigital.com/papers/download/bsi6-pentest.pdf"&gt;http://www.cigital.com/papers/download/bsi6-pentest.pdf&lt;/a&gt;&lt;/p&gt;&lt;/blockquote&gt; &lt;p&gt;Check them out!&lt;/p&gt;&lt;img src ="http://CyberForge.com/weblog/aniltj/aggbug/787.aspx" width = "1" height = "1" /&gt;</description><dc:creator>Anil John</dc:creator></item><item><title>Presentation on Instrumenting .NET Code &amp; Defense-in-Depth </title><link>http://CyberForge.com/weblog/aniltj/archive/2004/12/07/781.aspx</link><pubDate>Wed, 08 Dec 2004 09:08:00 GMT</pubDate><guid isPermaLink="true">http://CyberForge.com/weblog/aniltj/archive/2004/12/07/781.aspx</guid><wfw:comment>http://CyberForge.com/weblog/aniltj/comments/781.aspx</wfw:comment><wfw:commentRss>http://CyberForge.com/weblog/aniltj/comments/commentRss/781.aspx</wfw:commentRss><comments>http://CyberForge.com/weblog/aniltj/archive/2004/12/07/781.aspx#comment</comments><slash:comments>3</slash:comments><trackback:ping>http://CyberForge.com/weblog/aniltj/services/trackbacks/781.aspx</trackback:ping><source url="http://CyberForge.com/weblog/aniltj/rss.aspx">SecureCoder by Anil John</source><description>&lt;P&gt;I just got back from&amp;nbsp;the &lt;A href="http://www.cmap-online.org/"&gt;CMAP .NET User Group&lt;/A&gt; meeting during which I did 2 short presentations. At CMAP's December meetings we have a "10 Tips &amp;amp; Tricks for the Holidays" presentation format in which members do short 10-15 minute presentations on various topics. This year's topics ranged from my stuff to a demo of how to use client side script in ASP.NET.&amp;nbsp;&amp;nbsp;My topics were "Instrumenting .NET Code with &lt;A href="http://logging.apache.org/log4net/"&gt;Log4Net&lt;/A&gt;" and&amp;nbsp;"Applying Defense-in-Depth to protecting admin sections of web sites".&amp;nbsp;&lt;/P&gt;
&lt;P&gt;During the instrumenting &amp;amp; logging presentation I mentioned that &lt;A href="http://odetocode.com/Blogs/scott/"&gt;K. Scott Allen&lt;/A&gt; has a &lt;A href="http://www.odetocode.com/Articles/294.aspx"&gt;great write-up on Diagnostics and Logging in ASP.NET&lt;/A&gt; and that people should check it out to get a background on the "Why?" regarding instrumenting applications. Then I went into a short description of what &lt;A href="http://logging.apache.org/log4net/"&gt;Log4Net&lt;/A&gt; brought to the table and compared it to the &lt;A title="" href="http://www.microsoft.com/resources/practices/" target=_blank&gt;PAG&lt;/A&gt;'s Exception Management Block and the Logging Block.&amp;nbsp; In addition, &lt;A href="http://cyberforge.com/weblog/aniltj/archive/2004/09/14/653.aspx"&gt;I also had an earlier blog entry about incorporating logging into a web application.&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;My Defense-in-Depth short presentation was an expansion of an &lt;A href="http://cyberforge.com/weblog/aniltj/archive/2004/10/09/685.aspx"&gt;earlier blog entry that I had made on this topic&lt;/A&gt;.&lt;/P&gt;&lt;img src ="http://CyberForge.com/weblog/aniltj/aggbug/781.aspx" width = "1" height = "1" /&gt;</description><dc:creator>Anil John</dc:creator></item><item><title>Web services Contract-First Design &amp; Development</title><link>http://CyberForge.com/weblog/aniltj/archive/2004/12/07/780.aspx</link><pubDate>Wed, 08 Dec 2004 08:51:00 GMT</pubDate><guid isPermaLink="true">http://CyberForge.com/weblog/aniltj/archive/2004/12/07/780.aspx</guid><wfw:comment>http://CyberForge.com/weblog/aniltj/comments/780.aspx</wfw:comment><wfw:commentRss>http://CyberForge.com/weblog/aniltj/comments/commentRss/780.aspx</wfw:commentRss><comments>http://CyberForge.com/weblog/aniltj/archive/2004/12/07/780.aspx#comment</comments><slash:comments>4</slash:comments><trackback:ping>http://CyberForge.com/weblog/aniltj/services/trackbacks/780.aspx</trackback:ping><source url="http://CyberForge.com/weblog/aniltj/rss.aspx">SecureCoder by Anil John</source><description>&lt;p&gt;Lot's of buzz around it, and I am going to add to this, as this is very important to me in the InterOp space.&lt;/p&gt; &lt;p&gt;Christian Weyer and crew have released the &lt;a href="http://www.thinktecture.com/Resources/Software/WSContractFirst/default.html"&gt;latest version of&lt;/a&gt; &lt;a href="http://www.thinktecture.com/Resources/Software/WSContractFirst/default.html"&gt;thinktecture's free Contract-First VS.NET Add-in&lt;/a&gt;. Pure goodness! Check it and &lt;a href="http://www.thinktecture.com/Resources/Software/WSContractFirst/WSCF04Walkthrough1.html"&gt;take the walk-through&lt;/a&gt;!&lt;/p&gt;&lt;img src ="http://CyberForge.com/weblog/aniltj/aggbug/780.aspx" width = "1" height = "1" /&gt;</description><dc:creator>Anil John</dc:creator></item><item><title>Microsoft Security Resource Guide - November 2004</title><link>http://CyberForge.com/weblog/aniltj/archive/2004/11/25/764.aspx</link><pubDate>Thu, 25 Nov 2004 22:06:00 GMT</pubDate><guid isPermaLink="true">http://CyberForge.com/weblog/aniltj/archive/2004/11/25/764.aspx</guid><wfw:comment>http://CyberForge.com/weblog/aniltj/comments/764.aspx</wfw:comment><wfw:commentRss>http://CyberForge.com/weblog/aniltj/comments/commentRss/764.aspx</wfw:commentRss><comments>http://CyberForge.com/weblog/aniltj/archive/2004/11/25/764.aspx#comment</comments><slash:comments>11</slash:comments><trackback:ping>http://CyberForge.com/weblog/aniltj/services/trackbacks/764.aspx</trackback:ping><source url="http://CyberForge.com/weblog/aniltj/rss.aspx">SecureCoder by Anil John</source><description>&lt;p&gt;&lt;a href="http://msmvps.com/secure/archive/2004/11/24/20647.aspx"&gt;Jerry Bryant [MS] has an excellent post&lt;/a&gt; with links to Security resources that are provided by Microsoft. I am copying this here so that I do not have to go looking for them later:&lt;/p&gt; &lt;p&gt;&lt;strong&gt;Tools&lt;/strong&gt;&lt;/p&gt; &lt;ul&gt; &lt;li&gt;&lt;a href="http://www.microsoft.com/mbsa"&gt;Microsoft Baseline Security Analyzer (MBSA)&lt;/a&gt;&lt;br /&gt; Use this tool to identify common security misconfigurations and missing security updates. MBSA runs on the Windows Server&amp;trade; 2003, Windows&amp;reg; 2000, and Windows XP operating systems and will scan for vulnerabilities in multiple products and technologies, including Microsoft Internet Information Services (IIS) and SQL Server&amp;trade;.&lt;/li&gt; &lt;li&gt;&lt;a href="http://www.microsoft.com/wus"&gt;Software Update Services (SUS) / Windows Update Services (WUS)&lt;/a&gt;&lt;br /&gt; Quickly and reliably deploy the latest security updates, and service packs with Software Update Services. This new site now has the latest info on WUS.&lt;/li&gt; &lt;li&gt;&lt;a href="http://windowsupdate.microsoft.com/"&gt;Windows Update&lt;/a&gt;&lt;br /&gt; Scans your computer and provides a selection of updates tailored for your operating system, software, and hardware.&lt;/li&gt; &lt;li&gt;&lt;a href="http://office.microsoft.com/productupdates/"&gt;Microsoft Office Product Updates&lt;/a&gt;&lt;br /&gt; Scans and updates Microsoft Office products.&lt;/li&gt; &lt;li&gt;&lt;a href="http://www.microsoft.com/technet/security/tools/locktool.mspx"&gt;IIS Web Server Lockdown Wizard&lt;/a&gt;&lt;br /&gt; Reduces the attack surface of Internet Information Services (IIS) and includes URLScan to provide multiple layers of protection against attackers.&lt;/li&gt; &lt;li&gt;&lt;a href="http://www.microsoft.com/technet/security/tools/urlscan.mspx"&gt;UrlScan Security Tool&lt;/a&gt;&lt;br /&gt; Helps prevent potentially harmful HTTP requests from reaching IIS Web servers.&lt;/li&gt;&lt;/ul&gt; &lt;div&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Removal Tools:&lt;/div&gt; &lt;ul&gt; &lt;li&gt;&lt;a href="http://support.microsoft.com/?kbid=836528"&gt;Mydoom, Zindos and Doomjuice worms&lt;/a&gt;&lt;/li&gt; &lt;li&gt;&lt;a href="http://www.microsoft.com/downloads/details.aspx?familyid=e70a0d8b-fe98-493f-ad76-bf673a38b4cf&amp;amp;displaylang=en"&gt;Blaster Removal Tool for Windows XP and 2000&lt;/a&gt;&lt;/li&gt; &lt;li&gt;&lt;a href="http://support.microsoft.com/?kbid=841720"&gt;Sasser (A-F) Worm Removal Tool&lt;/a&gt;&lt;/li&gt; &lt;li&gt;&lt;a href="http://support.microsoft.com/?kbid=886988"&gt;MS04-028 Enterprise Scanning Tool&lt;/a&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&lt;/li&gt;&lt;/ul&gt; &lt;div&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; Other Tools:&lt;/div&gt; &lt;ul&gt; &lt;li&gt;&lt;a href="http://www.microsoft.com/technet/security/tools/default.mspx"&gt;http://www.microsoft.com/technet/security/tools/default.mspx&lt;/a&gt;&lt;/li&gt; &lt;li&gt;&lt;a href="http://www.securityguidance.com"&gt;Security Risk Self-Assessment for Midsize Organizations&lt;/a&gt;&lt;/li&gt;&lt;/ul&gt; &lt;div&gt;&lt;strong&gt;Updating&lt;/strong&gt;&lt;/div&gt; &lt;ul&gt; &lt;li&gt;&lt;a href="http://www.microsoft.com/technet/security/topics/patch/patchmanagement.mspx"&gt;Understanding Update Management: Microsoft&amp;rsquo;s Software Update Strategy&lt;/a&gt;&lt;br /&gt; Updated white paper talks about the need for strong update management process.&lt;/li&gt; &lt;li&gt;&lt;a href="http://www.microsoft.com/technet/security/topics/patch/default.mspx"&gt;Other Update Management info in the TechNet Topics Page&lt;/a&gt;&lt;/li&gt;&lt;/ul&gt; &lt;div&gt;&lt;strong&gt;Isolation and Resiliency&lt;/strong&gt;&lt;/div&gt; &lt;ul&gt; &lt;li&gt;&lt;a href="http://www.microsoft.com/technet/winxpsp2"&gt;Listing of resources for the IT Pro to evaluate and deploy XP SP2&lt;/a&gt;&lt;/li&gt; &lt;li&gt;&lt;a href="http://www.microsoft.com/nap"&gt;Network Access Protection&lt;/a&gt;&lt;/li&gt; &lt;li&gt;&lt;a href="http://www.microsoft.com/isaserver/evaluation/whitepapers/default.asp"&gt;Internet Security and Acceleration (ISA) Server 2004 whitepapers updated&lt;/a&gt;&lt;br /&gt; Read about secure remote Outlook access in the Unique Protection for Microsoft Exchange Server whitepaper, a very viable business scenario with ISA Server&lt;/li&gt;&lt;/ul&gt; &lt;div&gt;&lt;strong&gt;Engineering Excellence&lt;/strong&gt;&lt;/div&gt; &lt;div&gt;&amp;nbsp;&lt;/div&gt; &lt;ul&gt; &lt;li&gt;&lt;a href="http://www.microsoft.com/mscorp/twc/security/default.mspx"&gt;Trustworthy Computing: Security&lt;/a&gt;&lt;/li&gt; &lt;li&gt;Whitepapers on Security Enhancements:&lt;br /&gt; Describes the Trustworthy Computing initiative as applied to the Windows Server, Office 2003 and Exchange Server 2003 development processes respectively.&lt;br /&gt; &lt;a href="http://www.microsoft.com/windowsserver2003/techinfo/overview/secinnovation.mspx"&gt;Windows Server 2003&lt;/a&gt;&lt;br /&gt; &lt;a href="http://www.microsoft.com/technet/prodtechnol/office/office2003/deploy/secdesn.mspx"&gt;Office 2003&lt;/a&gt;&lt;br /&gt; &lt;a href="http://www.microsoft.com/exchange/evaluation/Security_e2k3.asp"&gt;Exchange Server 2003&lt;/a&gt;&lt;/li&gt; &lt;li&gt;Get the Facts:&lt;br /&gt; &lt;a href="http://www.microsoft.com/getthefacts"&gt;Windows and Linux&lt;/a&gt;&lt;/li&gt; &lt;li&gt;&lt;a href="http://www.microsoft.com/sql/evaluation/compare/databasesecurity.asp"&gt;SQL&lt;/a&gt;&lt;/li&gt;&lt;/ul&gt; &lt;div&gt;&lt;strong&gt;Guidance and Training&lt;/strong&gt;&lt;/div&gt; &lt;div&gt;&amp;nbsp;&lt;/div&gt; &lt;ul&gt; &lt;li&gt;Security Guidance Centers on Microsoft.com&lt;br /&gt; &lt;a href="http://www.microsoft.com/security/guidance/worldwide/default.mspx"&gt;Worldwide&lt;/a&gt;&lt;br /&gt; &lt;a href="http://www.microsoft.com/security/guidance"&gt;US&lt;/a&gt;&lt;br /&gt; Prescriptive guidance to help provide defence-in-depth security.&lt;/li&gt; &lt;li&gt;&lt;a href="https://www.microsoftelearning.com/security/"&gt;E-Learning Security Training&lt;/a&gt;&lt;br /&gt; E-Learning self-paced clinics - 4 Developer and 8 ITPro modules&lt;br /&gt; Now available in French, German, Spanish and Japanese&lt;br /&gt; &lt;a href="https://www.microsoftelearning.com/xpsp2"&gt;XP SP2&lt;/a&gt;&lt;/li&gt; &lt;li&gt;&lt;a href="http://www.microsoft.com/security/guidance/order/default.mspx"&gt;Security Guidance Kit CD (now shipping in US and Canada)&lt;/a&gt;&lt;br /&gt; CD-ROM with tools, templates, and how-to guides&lt;/li&gt; &lt;li&gt;&lt;a href="http://www.microsoft.com/technet/itsolutions/msit/default.mspx#EDBAAA"&gt;Microsoft IT Security Showcase&lt;/a&gt;&lt;br /&gt; An insider view into Microsoft's process of deploying, and managing its own enterprise solutions.&lt;/li&gt; &lt;li&gt;&lt;a href="http://www.microsoft.com/technet/security/secnews/default.mspx"&gt;Security Newsletter&lt;/a&gt;&lt;br /&gt; Register for our free monthly e-mail newsletter that's packed with security news, guidance, updates, and community resources to help you protect your network.&lt;/li&gt; &lt;li&gt;&lt;a href="http://www.microsoft.com/seminar/events/security.mspx"&gt;Security Program Guide: Events and Training Information&lt;/a&gt;&lt;br /&gt; Events, webcasts and training ivailable for both IT Professionals and Developers.&lt;/li&gt; &lt;li&gt;&lt;a href="http://www.microsoft.com/seminar/securitysummit/presentations/default.mspx"&gt;US Security Summit Keynote and Training Content&lt;/a&gt;&lt;/li&gt; &lt;li&gt;&lt;a href="http://www.microsoft.com/technet/security/bulletin/notify.mspx"&gt;Security Notifications via e-mail&lt;/a&gt;&lt;br /&gt; Sign up today to get e-mail alerts when an important security bulletin or virus alert has been released.&lt;/li&gt; &lt;li&gt;&lt;a href="http://www.microsoft.com/technet/security/bulletin/secrss.aspx"&gt;Security Update RSS Feed&lt;/a&gt;&lt;/li&gt; &lt;li&gt;&lt;a href="http://www.microsoft.com/technet/security/current.aspx"&gt;Security Bulletin Search Page&lt;/a&gt;&lt;br /&gt; Search on product, technology or KB article&lt;/li&gt; &lt;li&gt;&lt;a href="http://www.microsoft.com/technet/security/bulletin/summary.mspx"&gt;Security Bulletin Webcast&lt;/a&gt;&lt;br /&gt; Join Microsoft experts on the day after bulletin announcements to get the latest information and have the opportunity to ask questions.&lt;/li&gt; &lt;li&gt;&lt;a href="http://www.microsoft.com/security/antivirus/authenticate_mail.asp"&gt;How to Tell If a Microsoft Security-Related Message Is Genuine&lt;/a&gt;&lt;/li&gt; &lt;li&gt;&lt;a href="http://www.microsoft.com/mspress/books/5957.asp"&gt;Writing Secure Code, 2nd edition&lt;/a&gt;&lt;br /&gt; Best practices for writing secure code and stopping malicious hackers.&lt;/li&gt; &lt;li&gt;&lt;a href="http://msdn.microsoft.com/library/en-us/dnnetsec/html/openhack.asp"&gt;Building and Configuring More Secure Web Sites&lt;/a&gt;&lt;br /&gt; Best Practices used at OpenHack.&lt;/li&gt; &lt;li&gt;Recent Security Guidance Center additions:&lt;br /&gt; &lt;a href="http://www.microsoft.com/technet/security/prodtech/winclnt/secwinxp/default.mspx"&gt;Windows XP Guide, includes SP2&lt;/a&gt;&lt;br /&gt; &lt;a href="http://go.microsoft.com/fwlink/?LinkId=30794"&gt;New Security Risk Management Guide&lt;/a&gt;&lt;br /&gt; &lt;a href="http://go.microsoft.com/fwlink/?linkid=32048"&gt;Windows NT 4.0 and Windows 98 Threat Mitigation Guide&lt;/a&gt;&lt;br /&gt; &lt;a href="http://go.microsoft.com/fwlink/?LinkId=14841"&gt;Microsoft Identity and Access Management Series&lt;/a&gt;&lt;br /&gt; &lt;a href="http://www.microsoft.com/technet/security/guidance/avdind_0.mspx"&gt;Antivirus Defense-in-Depth&lt;/a&gt;&lt;br /&gt; &lt;a href="http://www.microsoft.com/technet/security/guidance/peap_0.mspx"&gt;Securing Wireless LANs with PEAP and Passwords&lt;/a&gt;&lt;/li&gt; &lt;li&gt;&lt;a href="http://www.microsoft.com/smallbusiness/gtm/securityguidance/hub.mspx"&gt;Small Business Guidance&lt;/a&gt;&lt;br /&gt; Guidance specifically for the smaller business&lt;/li&gt; &lt;li&gt;&lt;a href="http://www.microsoft.com/technet/prodtechnol/winxppro/maintain/wifisoho.mspx"&gt;Configuring Windows XP 802.11 Wireless Networks for the Home / Small Business&lt;/a&gt;&lt;/li&gt; &lt;li&gt;Consumer Information:&lt;br /&gt; &lt;a href="http://www.microsoft.com/security/protect"&gt;http://www.microsoft.com/security/protect&lt;/a&gt;&lt;br /&gt; &lt;a href="http://www.microsoft.com/athome/security/default.mspx"&gt;http://www.microsoft.com/athome/security/default.mspx&lt;/a&gt;&lt;/li&gt; &lt;li&gt;&lt;a href="http://www.microsoft.com/security/home/secnews/current.asp"&gt;Newsletter for home users&lt;/a&gt;&lt;/li&gt; &lt;li&gt;&lt;a href="http://register.microsoft.com/subscription/subscribeme.asp?id=166"&gt;Security bulletin notifications for home users&lt;/a&gt;&lt;br /&gt;&lt;/li&gt;&lt;/ul&gt;&lt;img src ="http://CyberForge.com/weblog/aniltj/aggbug/764.aspx" width = "1" height = "1" /&gt;</description><dc:creator>Anil John</dc:creator></item><item><title>Interop, Interop, Interop.....</title><link>http://CyberForge.com/weblog/aniltj/archive/2004/11/21/760.aspx</link><pubDate>Mon, 22 Nov 2004 07:51:00 GMT</pubDate><guid isPermaLink="true">http://CyberForge.com/weblog/aniltj/archive/2004/11/21/760.aspx</guid><wfw:comment>http://CyberForge.com/weblog/aniltj/comments/760.aspx</wfw:comment><wfw:commentRss>http://CyberForge.com/weblog/aniltj/comments/commentRss/760.aspx</wfw:commentRss><comments>http://CyberForge.com/weblog/aniltj/archive/2004/11/21/760.aspx#comment</comments><slash:comments>4</slash:comments><trackback:ping>http://CyberForge.com/weblog/aniltj/services/trackbacks/760.aspx</trackback:ping><source url="http://CyberForge.com/weblog/aniltj/rss.aspx">SecureCoder by Anil John</source><description>&lt;p&gt;Now this shows maturity in the industry!&amp;nbsp;&lt;/p&gt; &lt;p&gt;Microsoft has invited Sun, IBM, BEA and the Open Source&amp;nbsp;folks to talk about what it would take to make all of the various vendor technologies work together in the customer environment.&amp;nbsp;&amp;nbsp;It would appear that a majority of them, with the notable exception of IBM and the Open Source guys,&amp;nbsp;have accepted!&lt;/p&gt; &lt;p&gt;They are going to kick off a series of about 40 webcasts in January. &lt;a href="http://blogs.msdn.com/msdnwebcasts/archive/2004/11/20/266983.aspx"&gt;Find out more about it&lt;/a&gt; and &lt;a href="http://www.interopmonth.com/"&gt;pre-register&lt;/a&gt;.&lt;/p&gt; &lt;p&gt;Very, Very Cool!&lt;/p&gt; &lt;p&gt;&amp;nbsp;&lt;/p&gt; &lt;p&gt;&amp;nbsp;&lt;/p&gt;&lt;img src ="http://CyberForge.com/weblog/aniltj/aggbug/760.aspx" width = "1" height = "1" /&gt;</description><dc:creator>Anil John</dc:creator></item><item><title>Messaging Patterns in Service Oriented Architecture, Part 2</title><link>http://CyberForge.com/weblog/aniltj/archive/2004/11/21/759.aspx</link><pubDate>Mon, 22 Nov 2004 07:42:00 GMT</pubDate><guid isPermaLink="true">http://CyberForge.com/weblog/aniltj/archive/2004/11/21/759.aspx</guid><wfw:comment>http://CyberForge.com/weblog/aniltj/comments/759.aspx</wfw:comment><wfw:commentRss>http://CyberForge.com/weblog/aniltj/comments/commentRss/759.aspx</wfw:commentRss><comments>http://CyberForge.com/weblog/aniltj/archive/2004/11/21/759.aspx#comment</comments><slash:comments>5</slash:comments><trackback:ping>http://CyberForge.com/weblog/aniltj/services/trackbacks/759.aspx</trackback:ping><source url="http://CyberForge.com/weblog/aniltj/rss.aspx">SecureCoder by Anil John</source><description>&lt;p&gt;&lt;a href="http://msdn.microsoft.com/architecture/journal/default.aspx?pull=/library/en-us/dnmaj/html/messagingsoa.asp"&gt;Part 2 of this series is out&lt;/a&gt;.&amp;nbsp; Delve into the contract patterns that illustrate the behavioral specifications required to maintain smooth communications between service provider and service consumer.&lt;/p&gt; &lt;p&gt;&lt;a href="http://msdn.microsoft.com/architecture/JOurnal/default.aspx?pull=/library/en-us/dnmaj/html/aj2mpsoarch.asp"&gt;Part 1 of the series can be found here&lt;/a&gt;.&lt;/p&gt;&lt;img src ="http://CyberForge.com/weblog/aniltj/aggbug/759.aspx" width = "1" height = "1" /&gt;</description><dc:creator>Anil John</dc:creator></item><item><title>Browsing the Web and Reading E-mail Safely as an Administrator</title><link>http://CyberForge.com/weblog/aniltj/archive/2004/11/19/758.aspx</link><pubDate>Sat, 20 Nov 2004 08:41:00 GMT</pubDate><guid isPermaLink="true">http://CyberForge.com/weblog/aniltj/archive/2004/11/19/758.aspx</guid><wfw:comment>http://CyberForge.com/weblog/aniltj/comments/758.aspx</wfw:comment><wfw:commentRss>http://CyberForge.com/weblog/aniltj/comments/commentRss/758.aspx</wfw:commentRss><comments>http://CyberForge.com/weblog/aniltj/archive/2004/11/19/758.aspx#comment</comments><slash:comments>3</slash:comments><trackback:ping>http://CyberForge.com/weblog/aniltj/services/trackbacks/758.aspx</trackback:ping><source url="http://CyberForge.com/weblog/aniltj/rss.aspx">SecureCoder by Anil John</source><description>&lt;p&gt;&lt;!--StartFragment --&gt;Michael Howard discusses how you can run as an administrator and access Internet data safely by dropping unnecessary administrative privileges when using any tool to access the Internet.&lt;/p&gt; &lt;p&gt;He has created an application called &lt;em&gt;DropMyRights&lt;/em&gt; to help users who must run as an administrator run applications in a much-safer context&amp;mdash;that of a non-administrator. It does this by taking the current user's token, removing various privileges and SIDs from the token, and then using that token to start another process, such as Internet Explorer or Outlook. This tool works just as well with Mozilla's Firefox, Eudora, or Lotus Notes e-mail.&lt;/p&gt; &lt;p&gt;&lt;a href="http://msdn.microsoft.com/security/securecode/columns/default.aspx?pull=/library/en-us/dncode/html/secure11152004.asp"&gt;Check out the article...&lt;/a&gt;&lt;/p&gt;&lt;img src ="http://CyberForge.com/weblog/aniltj/aggbug/758.aspx" width = "1" height = "1" /&gt;</description><dc:creator>Anil John</dc:creator></item><item><title>Reliability and Security in a Home Network Environment...</title><link>http://CyberForge.com/weblog/aniltj/archive/2004/11/14/750.aspx</link><pubDate>Mon, 15 Nov 2004 08:40:00 GMT</pubDate><guid isPermaLink="true">http://CyberForge.com/weblog/aniltj/archive/2004/11/14/750.aspx</guid><wfw:comment>http://CyberForge.com/weblog/aniltj/comments/750.aspx</wfw:comment><wfw:commentRss>http://CyberForge.com/weblog/aniltj/comments/commentRss/750.aspx</wfw:commentRss><comments>http://CyberForge.com/weblog/aniltj/archive/2004/11/14/750.aspx#comment</comments><slash:comments>8</slash:comments><trackback:ping>http://CyberForge.com/weblog/aniltj/services/trackbacks/750.aspx</trackback:ping><source url="http://CyberForge.com/weblog/aniltj/rss.aspx">SecureCoder by Anil John</source><description>&lt;P&gt;Like most computer savvy folks these days, the amount of digital "stuff" in my house is growing rather rapidly. That includes:&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;MP3 music files that I've ripped from my CDs 
&lt;LI&gt;Photos from my digital camera 
&lt;LI&gt;Videos that I've taken 
&lt;LI&gt;Documents and Papers 
&lt;LI&gt;Source Code stored in my CM system 
&lt;LI&gt;Virtual Machine Images 
&lt;LI&gt;and more...&lt;/LI&gt;&lt;/UL&gt;
&lt;DIV&gt;Needless to say I have multiple computers in the house that&amp;nbsp;are connected via both&amp;nbsp;wired and wireless networks.&amp;nbsp; Currently I am running a Windows 2000 Domain in the house as my server class machine, which is a bit old, is not one I have upgraded to Windows 2003. All my&amp;nbsp;Windows 2003 machines are Virtual Machines :-)&lt;/DIV&gt;
&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;
&lt;DIV&gt;Recently, I've bitten the bullet and am in the process&amp;nbsp;standing up a server class machine that can run Windows 2003 at home.&amp;nbsp; My requirements are that:&lt;/DIV&gt;
&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;
&lt;OL&gt;
&lt;LI&gt;I need a redundant and reliable file storage for my network. A lot of the content that I have on the network is simply things I cannot afford to lose. 
&lt;LI&gt;I want to lock down my wireless network. 
&lt;LI&gt;ASP.NET Development environment. 
&lt;LI&gt;I am seriously getting into collaboration via Windows SharePoint Services. So I am looking to make sure that I have an environment that I can play a bit with it.. A personal goal, at least for the home, is to have a shared calendar for the family.&lt;/LI&gt;&lt;/OL&gt;
&lt;DIV&gt;(1) Starting out with the basics, I picked up a Dell server on sale. The only thing I upgraded was to bump up the memory and add a second network card to it. Redundant and reliable for me means that the storage in my machine needs to be configured either as a RAID 1 or RAID 5. For various reasons, I chose RAID 1. So, I also&amp;nbsp;picked up a HighPoint RocketRaid IDE controller and two 200GB hard disks.&amp;nbsp;&lt;/DIV&gt;
&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;
&lt;DIV&gt;I am also picking up an&amp;nbsp;external USB hard disk to which I intend to back up my RAID array on a weekly basis. I will be keeping this at work;&amp;nbsp;a poor man's version of off-site backup. This way, at most I am not losing more than a week of data if something untoward happens to my entire home system.&lt;/DIV&gt;
&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;
&lt;DIV&gt;(2) I love my Tivo but when it comes to security, it has some issues. My Tivo is set up with the Home Media Option such that I can play all of my MP3s, which are stored on my W2K server, via my Home Theater system. In addition, I can display all of my photos, again stored on my W2K box, on my TV. The Tivo is connected to my home network via a USB Wireless adapter and goes out over the network for program updates etc.&lt;/DIV&gt;
&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;
&lt;DIV&gt;The issue I have is that the highest level of encryption Tivo supports is 128 WEP. It does not support WPA at all!&amp;nbsp; This has limited my ability to upgrade the security of my Wireless network. So, I've gotten irritated enough that I am pulling wires to my Tivo to convert it from wireless to a hard line. Once this is done, my plan is to implement 802.11x authentication with certificates and lock down the the network.. Now, if I you ask me if I REALLY need to do this, the answer would be, probably not.. But I can, so I will :-)&lt;/DIV&gt;
&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;
&lt;DIV&gt;(3) (4) Now this is the interesting part, I could install Windows 2003 with WSS and get *some* of the functionality that I want (ASP.NET/Collaboration). But why bother?&amp;nbsp; There is a solution out there that will give me all of the components that I am looking for (Windows 2003, WSS, Exchange, SQL2K)&amp;nbsp;supposedly integrated rather well and designed to run on a single box.&amp;nbsp;Windows Small Business Server 2003.&lt;/DIV&gt;
&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;
&lt;DIV&gt;From what I've seen of and heard about this product, it seems to be ideal for what I am looking for within the house.&amp;nbsp; I am thinking that if I install SUS on top of the standard SBS 2003 install, I&amp;nbsp;would also get the ability to update and patch the machines on my network as well.&lt;/DIV&gt;
&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;
&lt;DIV&gt;The only decision I have not made as of yet, is where to put the SBS server on the network.&amp;nbsp; I am currently connected to the Internet via a cable modem, which in turn is coming into a Wireless router with hard line ports.&amp;nbsp; The router has NAT capabilities and has a built in simplistic firewall that has done the job for me so far. But SBS 2003 premium comes with ISA server and I have 2 NICs in the box, so I could hook it up to be Internet facing.&amp;nbsp; Or I could simply hook up the SBS machine to the internal network behind the Router.&amp;nbsp; I'll have to think a bit more about it..&lt;/DIV&gt;
&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;
&lt;DIV&gt;One resource that I am finding extremely helpful is "Windows Small Business Server 2003 Administrator's Companion" by Charlie Russel, Sharon Crawford and Jason Gerend.&lt;/DIV&gt;
&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;img src ="http://CyberForge.com/weblog/aniltj/aggbug/750.aspx" width = "1" height = "1" /&gt;</description><dc:creator>Anil John</dc:creator></item><item><title>Our Man in the Mid-Atlantic ...</title><link>http://CyberForge.com/weblog/aniltj/archive/2004/11/09/748.aspx</link><pubDate>Wed, 10 Nov 2004 08:41:00 GMT</pubDate><guid isPermaLink="true">http://CyberForge.com/weblog/aniltj/archive/2004/11/09/748.aspx</guid><wfw:comment>http://CyberForge.com/weblog/aniltj/comments/748.aspx</wfw:comment><wfw:commentRss>http://CyberForge.com/weblog/aniltj/comments/commentRss/748.aspx</wfw:commentRss><comments>http://CyberForge.com/weblog/aniltj/archive/2004/11/09/748.aspx#comment</comments><slash:comments>3</slash:comments><trackback:ping>http://CyberForge.com/weblog/aniltj/services/trackbacks/748.aspx</trackback:ping><source url="http://CyberForge.com/weblog/aniltj/rss.aspx">SecureCoder by Anil John</source><description>&lt;p&gt;I live and work in the state of Maryland in the U.S. which is classified as the Microsoft Mid-Atlantic district. If you want to get information and help at a local level from Microsoft, you need to know the local players.&amp;nbsp;And the level of support and engagement you get is often very subjective and dependent on the perspectives of the local representatives of the Empire.&lt;/p&gt; &lt;p&gt;Unfortunately, all too often what you run into is a pure sales driven attitude with no thought given to any type of long term relationship building.&amp;nbsp; Even though there is more transparency at the Home Office (Redmond) level, I personally do not believe that Microsoft, especially at the local level,&amp;nbsp;really get relationship management and long term relationship building. But that is a topic for another day.&amp;nbsp;&lt;/p&gt; &lt;p&gt;Fortunately, there are exceptions to every rule and we in the Mid-Atlantic district are fortunate that we have TWO exceptions to the rule. And those exceptions go by the name of &lt;a href="http://blogs.msdn.com/gsnowman"&gt;Geoff Snowman, our local Developer Community Champion&lt;/a&gt; and &lt;a href="http://blogs.msdn.com/gduthie/"&gt;G. Andrew Duthie, our local Developer Evangelist&lt;/a&gt;.&amp;nbsp;&lt;/p&gt; &lt;p&gt;These guys DO get it and are simply awesome!&lt;/p&gt; &lt;p&gt;Together, their responsibilities cover everything from User Group Support to Enterprise Customer Support.&amp;nbsp; With the wide variety of technologies and products that I've been looking at recently, there have often been questions that I needed answered and these guys have come through every time with information or pointers to resources who have the information. I just wanted to take this opportunity to&amp;nbsp;say a very public "Thank You" to both Geoff and Andrew.&lt;/p&gt; &lt;p&gt;&amp;nbsp;&lt;/p&gt;&lt;img src ="http://CyberForge.com/weblog/aniltj/aggbug/748.aspx" width = "1" height = "1" /&gt;</description><dc:creator>Anil John</dc:creator></item><item><title>The side-effect of having an interesting job ....</title><link>http://CyberForge.com/weblog/aniltj/archive/2004/11/09/747.aspx</link><pubDate>Wed, 10 Nov 2004 08:09:00 GMT</pubDate><guid isPermaLink="true">http://CyberForge.com/weblog/aniltj/archive/2004/11/09/747.aspx</guid><wfw:comment>http://CyberForge.com/weblog/aniltj/comments/747.aspx</wfw:comment><wfw:commentRss>http://CyberForge.com/weblog/aniltj/comments/commentRss/747.aspx</wfw:commentRss><comments>http://CyberForge.com/weblog/aniltj/archive/2004/11/09/747.aspx#comment</comments><slash:comments>4</slash:comments><trackback:ping>http://CyberForge.com/weblog/aniltj/services/trackbacks/747.aspx</trackback:ping><source url="http://CyberForge.com/weblog/aniltj/rss.aspx">SecureCoder by Anil John</source><description>&lt;p&gt;.... is that you become very engaged at work. And this is a good thing!&lt;/p&gt; &lt;p&gt;These days I am focusing a great deal on Collaboration (Both real-time and asynchronous), Business Process Management,&amp;nbsp;Service Oriented Systems&amp;nbsp;implemented via&amp;nbsp;web services&amp;nbsp;and more, all within a framework that has very high security needs.&lt;/p&gt; &lt;p&gt;On top of that I am also Blogging internally,&amp;nbsp;which&amp;nbsp;on some levels draws in some of the energy that I used to spend on Blogging externally.&amp;nbsp; I could blog to my external blog from work and I know that my&amp;nbsp;employer would not have any issues with it (yup, we've talked about it).&amp;nbsp;&amp;nbsp;But I've made a conscious decision to NOT blog to my personal blog from work simply to separate my work voice from my personal voice.&amp;nbsp; Which means&amp;nbsp;going forward I have to make a more conscious effort to put more of a balance between Blogging at work and Blogging at home.&lt;/p&gt; &lt;p&gt;But, I do like going to work... :-)&lt;/p&gt; &lt;p&gt;&amp;nbsp;&lt;/p&gt; &lt;p&gt;&amp;nbsp;&lt;/p&gt;&lt;img src ="http://CyberForge.com/weblog/aniltj/aggbug/747.aspx" width = "1" height = "1" /&gt;</description><dc:creator>Anil John</dc:creator></item></channel></rss>