News

Wednesday, November 05, 2008

Take Control of Windows Object Ownership and Inheritance

WIN_SECURITY UPDATE_
A Penton Media Property
November 5, 2008


If you want to view this on the web go to:
http://ct.email.windowsitpro.com/rd/cts?d=33-17058-803-202-62923-1809589-0-0-0-1-2-207

----------------------------------------
ADVERTISEMENT
Google Inc.

Google Apps Security Services

95% of email is spam. Want to spend more time on the other 5%?
Spam-proof your business with Google's hosted security services, powered
by Postini, and stop email threats before they reach your organization.
Google delivers complete spam and virus protection, content-based
policies, and reliable real-time processing. As a hosted solution,
there is no installation or maintenance required, freeing you to focus
on the strategic activities that drive your business. Watch our video
to learn how Google services can strengthen your security today.

http://ct.email.windowsitpro.com/rd/cts?d=33-17058-803-202-62923-1809590-0-0-0-1-2-207
----------------------------------------

SECURITY SOLUTIONS

--Take Control of Windows Object Ownership and Inheritance
by Jan De Clercq
The Windows discretionary access control (DAC) model and its "ownership
is power" concept can threaten security and compliance for organizations
that must ensure the continuous availability of company data. But in the
classic DAC model, there's no way to block users from deleting objects
they've created. Now a feature in Windows Vista and Windows Server 2008
can help you regain control of ownership. It's a security principal
called Owner Rights (SID S-1-3-4)
(http://ct.email.windowsitpro.com/rd/cts?d=33-17058-803-202-62923-1809591-0-0-0-1-2-207. You can use this SID
and other methods, such as command-line tools, to control ownership and
better manage your Windows resources. Read the complete article here
(http://ct.email.windowsitpro.com/rd/cts?d=33-17058-803-202-62923-1809592-0-0-0-1-2-207.

----------------------------------------
ADVERTISEMENT
Windows IT Pro

Meeting the Challenge of Securing Endpoints

Endpoints bring three significant new risks. So how do you respond to
these challenges and make sure your organization is setup to unify
endpoint security? This white paper will help you better under the risks
you face and discusses a new strategy that organizations are turning to
-- using a broad set of technologies for endpoint security unified into
a single agent with central control.

Read this white paper to avoid stolen data, disruptions of business
operations, and potential penalties for noncompliance.

http://ct.email.windowsitpro.com/rd/cts?d=33-17058-803-202-62923-1809593-0-0-0-1-2-207
----------------------------------------


SECURITY NEWS AND FEATURES

--How Effective Are Your Security Policies?
Cisco, a leading security provider, recently conducted a two-part
research study that assessed the effectiveness of IT security policies.
This study analyzed the behavior and perceptions of 2,000 employees and
IT professionals in 10 countries. For more information about Cisco's IT
security policy study
(http://ct.email.windowsitpro.com/rd/cts?d=33-17058-803-202-62923-1809594-0-0-0-1-2-207, click here
(http://ct.email.windowsitpro.com/rd/cts?d=33-17058-803-202-62923-1809595-0-0-0-1-2-207.

--Recent Security Vulnerabilities
If you subscribe to this newsletter, you also receive Security Alerts
(http://ct.email.windowsitpro.com/rd/cts?d=33-17058-803-202-62923-1809596-0-0-0-1-2-207,
which inform you about recently discovered security vulnerabilities. You
can also find information about these discoveries here
(http://ct.email.windowsitpro.com/rd/cts?d=33-17058-803-202-62923-1809597-0-0-0-1-2-207.


GIVE AND TAKE

--SECURITY MATTERS BLOG: Google's New Android Phone Vulnerable
by Mark Joseph Edwards
Google's new Android-based phone made some rather unwelcome news when
security researchers reported a vulnerability to the New York Times.
Read this blog post (http://ct.email.windowsitpro.com/rd/cts?d=33-17058-803-202-62923-1809598-0-0-0-1-2-207)
for more information about the Google Android phone's security
vulnerability (http://ct.email.windowsitpro.com/rd/cts?d=33-17058-803-202-62923-1809599-0-0-0-1-2-207.

--FAQ: Starting a Program in Elevated Permission Mode
by John Savill
Q. How can I easily start a program in elevated permission mode
(http://ct.email.windowsitpro.com/rd/cts?d=33-17058-803-202-62923-1809600-0-0-0-1-2-207

Find the answer here (http://ct.email.windowsitpro.com/rd/cts?d=33-17058-803-202-62923-1809601-0-0-0-1-2-207.

--SHARE YOUR SECURITY TIPS AND GET $100
Share your security-related tips, comments, or problems and solutions.
Email your contributions to r2r@windowsitpro.com
(mailto:r2r@windowsitpro.com). If we print your submission, you'll get
$100. We edit submissions for style, grammar, and length.


RESOURCES AND EVENTS

Don't Miss This Free Online Event!

Virtualization: Get the Facts! November 13, 2008 (North America),
November 20, 2008 (Europe). Attend this live in-depth online virtual
conference on November 13 and 20, 2008, produced by Windows IT Pro.
Virtualization experts Michael Otey, Mel Beckman, and Mike Campbell will
provide the knowledge you need to successfully implement your
virtualization solution in whatever environment you choose--server,
application, or desktop. All registrants are eligible to receive a
complimentary one-year (12 issues) digital subscription to Windows IT
Pro (a $49.95 value)!

Click here to register
(http://ct.email.windowsitpro.com/rd/cts?d=33-17058-803-202-62923-1809602-0-0-0-1-2-207) for
this online virtual conference
(http://ct.email.windowsitpro.com/rd/cts?d=33-17058-803-202-62923-1809603-0-0-0-1-2-207.

Managing SQL Server Sprawl

Managing a few SQL Server databases is easy. But when a few instances
become many, and those grow at the rate of 40, 50, or 100 per year, IT
has a problem--one that cries out for effective consolidation. Sprawl
can result in inefficient use of hardware, software, and administrative
resources. Hardware and maintenance costs are magnified by such
inefficiency, and poor utilization rapidly increases energy consumption.
Server sprawl can also rob SQL Server users of resource availability and
business productivity.

Read this white paper
(http://ct.email.windowsitpro.com/rd/cts?d=33-17058-803-202-62923-1809604-0-0-0-1-2-207)
to explore solutions to SQL Server sprawl
(http://ct.email.windowsitpro.com/rd/cts?d=33-17058-803-202-62923-1809605-0-0-0-1-2-207.

Myths & Truths of Email Management with SharePoint

Live Web Seminar on November 20, 2008, 11:00 AM EST. With the right
strategy you can maximize user adoption of SharePoint for email
management while minimizing the burden on IT. The wrong email archiving
strategy can quickly become an Exchange and SharePoint administrative
challenge.

Attend this web seminar
(http://ct.email.windowsitpro.com/rd/cts?d=33-17058-803-202-62923-1809606-0-0-0-1-2-207)
to learn deployment tips and tricks that will ensure your mail strategy
in SharePoint
(http://ct.email.windowsitpro.com/rd/cts?d=33-17058-803-202-62923-1809607-0-0-0-1-2-207)
is effective, adopted, and scalable.


FEATURED WHITE PAPER

"Real-Time BI" Through Real-Time Data Integration

Given today's struggle for more immediate access to real-time data and
information, a new approach to data transfer is critical to the success
of your business. Change data capture (CDC) is an innovative new
software technology that is changing the data integration landscape. CDC
is now a must-have for the modern BI and data warehouse project.

Download today
(http://ct.email.windowsitpro.com/rd/cts?d=33-17058-803-202-62923-1809608-0-0-0-1-2-207)
to begin taking advantage of this exciting new development in the world
of information management and "real-time BI."
(http://ct.email.windowsitpro.com/rd/cts?d=33-17058-803-202-62923-1809609-0-0-0-1-2-207)


ANNOUNCEMENTS

Microsoft Exchange & Windows Connections event returns to Las Vegas
November 10-13

Connections returns to Las Vegas for this exciting event. Every attendee
will receive a copy of SQL Server 2008 Standard edition with one CAL.
This event is co-located with Microsoft ASP.NET, SQL Server, and
SharePoint Connections and offers more than 250 in-depth sessions
delivered by 150+ Microsoft and industry experts. Last year's Windows
Connections event (http://ct.email.windowsitpro.com/rd/cts?d=33-17058-803-202-62923-1809610-0-0-0-1-2-207) sold out at 5,000
attendees, so register online today (http://ct.email.windowsitpro.com/rd/cts?d=33-17058-803-202-62923-1809611-0-0-0-1-2-207) or
call 1-800-438-6720.

Ease Your Scripting Pains with the Flexibility of PowerShell!

Join MVP Paul Robichaux on December 11, 2008, at 11:00 AM EDT as he
equips you with PowerShell basics
(http://ct.email.windowsitpro.com/rd/cts?d=33-17058-803-202-62923-1809612-0-0-0-1-2-207)
in 3 introductory lessons--all on your own computer! For only $99,
you'll learn how to
* enter and run commands with and without aliases and experiment safely
with the -whatif switch
* string together information to format and export it in a variety of
ways
* mix and match variables and command output
Seats are limited to allow for lots of live Q&A at the end. Register
today
(http://ct.email.windowsitpro.com/rd/cts?d=33-17058-803-202-62923-1809613-0-0-0-1-2-207!


CONTACT US
Security UDPATE is brought to you by the Windows IT Pro website's
Security page (URL below).
http://ct.email.windowsitpro.com/rd/cts?d=33-17058-803-202-62923-1809614-0-0-0-1-2-207

You are subscribed to this newsletter as boy.blogger@gmail.com

Manage your Security UPDATE subscription at
http://ct.email.windowsitpro.com/rd/cts?d=33-17058-803-202-62923-1809615-0-0-0-1-2-207.

To unsubscribe:
http://ct.email.windowsitpro.com/rd/cts?d=33-17058-803-202-62923-1809616-0-0-0-1-2-207&list_id=803&email=boy.blogger@gmail.com&message_id=17058

Be sure to add Security_UPDATE@email.windowsitpro.com
to your spam filter's list of allowed senders.

To contact us:
About Security UPDATE content -- mailto:letters@windowsitpro.com
About technical questions -- http://ct.email.windowsitpro.com/rd/cts?d=33-17058-803-202-62923-1809617-0-0-0-1-2-207
About your product news -- mailto:products@windowsitpro.com
About your subscription -- mailto:windowsitproupdate@windowsitpro.com
About sponsoring Security UPDATE -- mailto:salesopps@windowsitpro.com

View the Windows IT Pro privacy policy at
http://ct.email.windowsitpro.com/rd/cts?d=33-17058-803-202-62923-1809618-0-0-0-1-2-207

Windows IT Pro, a division of Penton Media, Inc.
221 East 29th Street, Loveland, CO 80538
Attention: Customer Service Department

Copyright 2008, Penton Media, Inc. All rights reserved.

No comments:

Blog Archive