Re: Advantages of 2005

Tech-Archive recommends: Speed Up your PC by fixing your registry



Hi Gerry,

I am not sure yet about Windows Vista security but they have had about four 
years to think it right :-)

Basically you have:

- users at a company
- users at home

and:

- users who care and know about security
- users who don´t care and know about security

so you have four quadrants and the trick is to find something that it is 
easy and secure for all. I started developing as non-admin two years ago or 
so, it was painful, and I have to had a second admin account to do RunAs 
with some things, which is somewhat annoying or fully logon with that 
account, which is even more annoying. But I do care about security, so I do 
it. On the other hand my sister runs with admin privs, although she'd rather 
run with non-admin and type a password for certain things from time to time, 
even if she has the password on their monitor, and Windows Vista will allow 
this. On a corporate environment I'm sure that users won´t have that option 
if admins don´t want to.

-- 

Best regards,

Carlos J. Quintero

MZ-Tools: Productivity add-ins for Visual Studio
You can code, design and document much faster:
http://www.mztools.com





"Gerry Hickman" <gerry666uk@xxxxxxxxxxx> escribió en el mensaje 
news:OqiuybfJGHA.3260@xxxxxxxxxxxxxxxxxxxxxxx
> Hi Carlos,
>
> Yes I also saw the hype about Vista in this regard but do you think they 
> know what they're doing? I mean it appears their "solution" is privilege 
> elevation as opposed to a proper log on! That's home-user nonsense; it's 
> not the real thing. Check out how MSI and InstallShield work behind the 
> scenes if you don't see what I mean.
>
> To be fair, I guess it's still better than what they did in XP which was 
> completely dumb, but I fail to see how it will help. Home users will 
> simply have a password taped to their monitors and enter it every time it 
> tells them to, and (unless there's an over-ride) it will be a disaster in 
> a corporate environment.


.



Relevant Pages

  • Re: Vistas Security Rendered Completely Useless by New Exploit
    ... in different versions of Windows XP and Windows Vista. ... So, in a stroke, two security researchers (Mark Dowd of IBM ... So how does defense in depth work? ... Dowd is Address Space Layout Randomization (ASLR). ...
    (microsoft.public.windows.vista.general)
  • Re: Vistas Security Rendered Completely Useless by New Exploit
    ... introduced in different versions of Windows XP and Windows Vista. ... So, in a stroke, two security researchers (Mark Dowd of IBM ... The best defense against this type of vulnerability is to ... Dowd is Address Space Layout Randomization (ASLR). ...
    (microsoft.public.windows.vista.general)
  • Re: Confusion over IO (Inherit Only) ACE on Vista
    ... Each Security Descriptor has a set of control flags that determine things like inheritance from the parent. ... changed in Windows Vista. ... Microsoft Online Community Support ...
    (microsoft.public.platformsdk.security)
  • Re: "VISTA more secure than OSX" (lol)
    ... "Windows Vista has an improved security vulnerability profile over its ... Very credible study fabricated by a director in the Microsoft ... Proof of concept and "a number of holes that could have been ...
    (comp.sys.mac.advocacy)
  • (no subject)
    ... Look at the Navy-Marine Corps Internet, a contract ... Security is secuirty and penetration means exactly that. ... You just hit a sore spot w/ me...the CSI/FBI survey. ... it's probably an admin who has ...
    (comp.security.misc)