<?xml version="1.0" encoding="UTF-8" ?>
<?xml-stylesheet type="text/xsl" href="http://msinfluentials.com/utility/FeedStylesheets/rss.xsl" media="screen"?><rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:wfw="http://wellformedweb.org/CommentAPI/"><channel><title>What I Learned from Attending the Windows Launch Event Today</title><link>http://msinfluentials.com/blogs/jesper/archive/2008/04/01/what-i-learned-from-attending-the-windows-launch-event-today.aspx</link><description>Today I attended the Microsoft 2008 server wave launch event in Seattle. In the process I learned a number of things: The launch event apparently does not need to coincide with actually launching anything. Server 2008 launched a couple of months ago.</description><dc:language>en</dc:language><generator>CommunityServer 2008.5 SP2 (Build: 40407.4157)</generator><item><title>Domain/server isolation</title><link>http://msinfluentials.com/blogs/jesper/archive/2008/04/01/what-i-learned-from-attending-the-windows-launch-event-today.aspx#9851</link><pubDate>Tue, 11 Nov 2008 12:07:20 GMT</pubDate><guid isPermaLink="false">91db4bc3-5a69-4a9f-94bf-eedb569902ab:9851</guid><dc:creator>Ole Nielsen</dc:creator><description>&lt;p&gt;Hi Jesper,&lt;/p&gt;
&lt;p&gt;I think domain/server isolation is very, very cool. Network guys will always find a lot of reasons to hate it, but if we cut through the religion, they haven&amp;#39;t got much of a case in my opinion.&lt;/p&gt;
&lt;p&gt;Except for maybe one argument, they can throw at me:&lt;/p&gt;
&lt;p&gt;What if there&amp;#39;s a severe run-code-of-attacker&amp;#39;s-choice vulnerability in IPSec, enabling an attacker to gain control over the server by crafting some sort of malformed packet during some part of some IPSec negotiation sequence?&lt;/p&gt;
&lt;p&gt;To my knowledge there never has been such a vulnerability, but I suppose it could happen, right?&lt;/p&gt;
&lt;p&gt;If there were to be discovered such a vulnerability, the attacker could take control over each and every machine, that requires or requests IPSec security. If there was a severe vulnerability in a network router/firewall device it would indeed be bad, but the attacker wouldn&amp;#39;t have control over the servers behind the network device yet - he would still have to defeat the Windows firewall and other security mechanisms in-place on the servers. With an IPSec vulnerability, it would be game-over for the server right away...&lt;/p&gt;
&lt;p&gt;How do you view this potential risk? How can it be mitigated?&lt;/p&gt;
&lt;p&gt;Thanks a lot for your time in advance!&lt;/p&gt;
&lt;p&gt;Best regards,&lt;/p&gt;
&lt;p&gt;Ole&lt;/p&gt;
&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://msinfluentials.com/aggbug.aspx?PostID=9851" width="1" height="1"&gt;</description></item><item><title>re: What I Learned from Attending the Windows Launch Event Today</title><link>http://msinfluentials.com/blogs/jesper/archive/2008/04/01/what-i-learned-from-attending-the-windows-launch-event-today.aspx#7609</link><pubDate>Sat, 12 Apr 2008 05:43:35 GMT</pubDate><guid isPermaLink="false">91db4bc3-5a69-4a9f-94bf-eedb569902ab:7609</guid><dc:creator>(A different) Robert</dc:creator><description>&lt;p&gt;Thankfully I had very different experiences at the launch event I attended. &lt;/p&gt;
&lt;p&gt;The &amp;quot;experts&amp;quot; were giving away discs with powergui and quest&amp;#39;s ad commandlets as well as breath mints :)&lt;/p&gt;
&lt;p&gt;Nobody talked about windows advanced firewall :)&lt;/p&gt;
&lt;p&gt;During the demo of NAP the presenter was VERY clear on the points you&amp;#39;ve raised and repeatedly reminded those present it was meant to be another tool and/or layer, not the solution. &lt;/p&gt;
&lt;p&gt;The Hyper-V stuff was very cool. Seeing the presenter take a snapshot of 20+ VMs simultaneously and having it complete in about 40 seconds was impressive.&lt;/p&gt;
&lt;p&gt;The Read Only Domain Controller demo was also pretty slick. It helpfully resets passwords for accounts that were allowed to be cached by the rodc if you remove it from the domain, but it is also smart enough to only reset those that actually were cached. &lt;/p&gt;
&lt;p&gt;I assume RODCs are covered in your 2008 security resource kit book, I&amp;#39;m anxiously awaiting my copy so I guess I&amp;#39;ll have to wait and see ;)&lt;/p&gt;
&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://msinfluentials.com/aggbug.aspx?PostID=7609" width="1" height="1"&gt;</description></item><item><title>re: What I Learned from Attending the Windows Launch Event Today</title><link>http://msinfluentials.com/blogs/jesper/archive/2008/04/01/what-i-learned-from-attending-the-windows-launch-event-today.aspx#7604</link><pubDate>Wed, 09 Apr 2008 05:28:01 GMT</pubDate><guid isPermaLink="false">91db4bc3-5a69-4a9f-94bf-eedb569902ab:7604</guid><dc:creator>rich</dc:creator><description>&lt;p&gt;please come back to MS. &amp;nbsp;we miss you here and heaven knows we could use the sanity.&lt;/p&gt;
&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://msinfluentials.com/aggbug.aspx?PostID=7604" width="1" height="1"&gt;</description></item><item><title>re: What I Learned from Attending the Windows Launch Event Today</title><link>http://msinfluentials.com/blogs/jesper/archive/2008/04/01/what-i-learned-from-attending-the-windows-launch-event-today.aspx#7596</link><pubDate>Sun, 06 Apr 2008 03:15:12 GMT</pubDate><guid isPermaLink="false">91db4bc3-5a69-4a9f-94bf-eedb569902ab:7596</guid><dc:creator>Ryan Hurst</dc:creator><description>&lt;p&gt;More on NAP and &amp;quot;asking the drunk if they are drunk&amp;quot;.&lt;/p&gt;
&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://msinfluentials.com/aggbug.aspx?PostID=7596" width="1" height="1"&gt;</description></item><item><title>re: What I Learned from Attending the Windows Launch Event Today</title><link>http://msinfluentials.com/blogs/jesper/archive/2008/04/01/what-i-learned-from-attending-the-windows-launch-event-today.aspx#7585</link><pubDate>Wed, 02 Apr 2008 16:18:00 GMT</pubDate><guid isPermaLink="false">91db4bc3-5a69-4a9f-94bf-eedb569902ab:7585</guid><dc:creator>Scotte</dc:creator><description>&lt;p&gt;Thanks for confirming what I&amp;#39;d always suspected about NAP. &amp;nbsp;I haven&amp;#39;t had time to play with it at all, but could never figure out how it could be secure while relying on the potentially compromised machine to report its health.&lt;/p&gt;
&lt;p&gt;I can see its usefulness for making sure non-admin users of laptops get their machines patched and updated once they get back to the production network. &amp;nbsp;But, I&amp;#39;ve not seen NAP described that way. &amp;nbsp;Its usually described as a way to make sure vendors get their machines up to your standards before they&amp;#39;re allowed on the network. &amp;nbsp;The problem is that they&amp;#39;ll never be up to MY standards as long as someone outside of my group has admin rights on them.&lt;/p&gt;
&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://msinfluentials.com/aggbug.aspx?PostID=7585" width="1" height="1"&gt;</description></item><item><title>re: What I Learned from Attending the Windows Launch Event Today</title><link>http://msinfluentials.com/blogs/jesper/archive/2008/04/01/what-i-learned-from-attending-the-windows-launch-event-today.aspx#7584</link><pubDate>Wed, 02 Apr 2008 15:58:30 GMT</pubDate><guid isPermaLink="false">91db4bc3-5a69-4a9f-94bf-eedb569902ab:7584</guid><dc:creator>Susan</dc:creator><description>&lt;p&gt;The difference is (I&amp;#39;m guessing) is that he may be in a program Microsoft calls the TAP program where people are supported to place it in production.&lt;/p&gt;
&lt;p&gt;This is vastly different than downloading from TechNet and going it alone.&lt;/p&gt;
&lt;p&gt;As you say, these TAP betas serve a great purpose, they put those beta bits in real networks .... and then there&amp;#39;s the added bonus that the marketing folks love &amp;#39;em as they get deployment stories for events out of them.&lt;/p&gt;
&lt;p&gt;I told you, you should have said the SharePoint conference was last week :-)&lt;/p&gt;
&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://msinfluentials.com/aggbug.aspx?PostID=7584" width="1" height="1"&gt;</description></item><item><title>re: What I Learned from Attending the Windows Launch Event Today</title><link>http://msinfluentials.com/blogs/jesper/archive/2008/04/01/what-i-learned-from-attending-the-windows-launch-event-today.aspx#7580</link><pubDate>Wed, 02 Apr 2008 05:01:13 GMT</pubDate><guid isPermaLink="false">91db4bc3-5a69-4a9f-94bf-eedb569902ab:7580</guid><dc:creator>jesper</dc:creator><description>&lt;p&gt;Good point Robert. I did not manage to get to the Hyper-V presentation unfortunately. It sounds like cool technology though, but, sadly, did not make it for Server 2008. &lt;/p&gt;
&lt;p&gt;Using a server in production before it is released is not that unusual, depending on what you mean by &amp;quot;production&amp;quot; and where you work. At Microsoft, they have been running most, if not all, of their Domain Controllers on various builds of what eventually became Server 2008 for a couple of years. They run SQL Server in production too. For those of use whose job is NOT mainly to test pre-release software, doing so would... ill-advised, although I'm very happy someone does it. &lt;/p&gt;
&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://msinfluentials.com/aggbug.aspx?PostID=7580" width="1" height="1"&gt;</description></item><item><title>re: What I Learned from Attending the Windows Launch Event Today</title><link>http://msinfluentials.com/blogs/jesper/archive/2008/04/01/what-i-learned-from-attending-the-windows-launch-event-today.aspx#7578</link><pubDate>Wed, 02 Apr 2008 04:37:53 GMT</pubDate><guid isPermaLink="false">91db4bc3-5a69-4a9f-94bf-eedb569902ab:7578</guid><dc:creator>Robert</dc:creator><description>&lt;p&gt;Don&amp;#39;t forget Hyper-V which is one of the big selling points of Windows 2008 which was initially released as a Beta with the RTM Win 2008 and had a significiant redesign with RC0 (released last week). &amp;nbsp;Brings new meaning to &amp;quot;We are all beta testers&amp;quot; if you are a Microsoft user...&lt;/p&gt;
&lt;p&gt;And there was the one presenter that has been using SQL 2008 in a PRODUCTION environment for 6 months now - WTF!!!&lt;/p&gt;
&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://msinfluentials.com/aggbug.aspx?PostID=7578" width="1" height="1"&gt;</description></item></channel></rss>