The Mac Observer

A Network Administrator Responds to Winn Schwartau’s ‘Mad as Hell’ Declaration

TMO Talk (0)

When computer security expert Winn Schwartau declared he was "mad as hell" and switching his company to Macs, many in the IT sector sat up and took notice. One of those people was Rich Rumble, a security administrator and network engineer for a large dot-com with over 3,000 employees worldwide and more than 700 servers in use.

In an interview with The Mac Observer conducted by e-mail, Mr. Rumble, who has little experience with Macs, said: "I think Winn has his finger on the pulse with most of these topics. Keep it simple, stupid (KISS) is a mantra recited over and over in the security field, especially in IT. I also think that Windows would be better off streamlining the kernel and cutting out the bloat with respect to the tasks you ask it to do, and the amount of code required to do them."

Unfortunately, he doesnit see Microsoftis upcoming OS upgrade, which is code-named Longhorn and will ship late in 2006 or early in 2007, changing that situation. "Thatis to be expected," he explained, "as they need to have interoperability with past Microsoft products, so it stands to reason that they will simply build off the predecessors. Reinventing the wheel would cost much more in every respect.

"Would a inew wheeli from Microsoft solve its problems?" Mr. Rumble asked. "Only if they did it right, whatever that may be. I do feel you can secure a Microsoft OS, without a doubt, but secure out of the box is still a ways off for them. It still astounds me that it took them 10+ years to add a firewall to the OS itself by default."

In addition to the lack of a firewall turned on by default for all Windows users, save those who have XP Service Pack 2 installed, Mr. Rumble cites several other problems with the OS, including: "Inherently insecure applications, such as ActiveX controls and Internet Explorer security settings and scripting set to a very low level by default. Antiquated authentication protocols: Microsoft is still using LanManager Hashes by default to authenticate connections to shares, Web sites and outside of AD domain credentials.

"Administrator by default," he added. "When you set up Windows, your account is placed in the administrators group by default, with no warning of the implications and/or security risks that having such an elevated privilege may have."

Pitfalls For the Average User

Mr. Rumble feels that corporate environments are now better equipped to secure their Windows usersi machines, but "the home user may not know what security risks theyire faced with. Windows, and third party vendors in my opinion, seem to apply band-aids on a cancer, rather than attack and remedy the issues at their root. Windows can be implemented and used securely, but that requires a level of knowledge that the average user may never have at his disposal, or level of comfort."

Among the security measures he thinks home users should implement are a firewall (assuming they donit have the latest version of Windows XP), anti-virus software and automatic downloading and installation of Windows patches. In addition, they should turn off system restore because anti-virus software canit clean its folder -- thus causing viruses to reappear upon reboot -- and they should turn off ActiveX controls and scripting, if possible. He also recommends using another Web browser, such as Firefox, and turning to Internet Explorer only when a Web page requires ActiveX.

He puts some responsibility on Microsoft, too, noting that the company "can educate users about the risks better and build off their MBSA products to walk users through some of the most critical security settings, such as the firewall and scripting level."

Overall, heis happy with the reliability of Windows, and, even though he estimates he uses Linux 80% of the time at work, he prefers that OS for most tasks. However, he said: "I feel Linux is going to catch up fast in the next few years, if they can keep improving the UI [user interface] and interoperability like they have so far. If the OS remains free, and if it can improve to the point that the average user will have little problem getting around and using the OS, Microsoft will suffer the most. Microsoft should find a way to KISS, and they would be able to benefit."

As for the vaunted "halo effect" caused by the iPod, Mr. Rumble believes "itis real, and has been for a long time. Iim sure it will get people into the Apple stores, or make them curious enough about Apple to try their other products."

As an analogy, he offers up an experience buying a car: "My brother bought a used Honda the same year I bought a new Ford. The Honda was four years older and had high mileage, but he only had to do regular maintenance to it, while I was replacing alternators and spark plugs and getting new header seals. I know my way around a car, so I wasnit snowed into those repairs; they were needed. Now the whole family is Honda owners, and we donit look back."

Post A Comment or Log-in. Need an account? Register here.
 

Recent Headlines - Updated May 25th

Fri, 8:58 AM
News - TSA Ready to Spend $3M on Apple Gear
8:25 AM
TMO Quick Tip - Mac OS X: Getting the Most Out of the Fonts Window
Thu, 7:56 PM
News - Jonathan Ive Tells BBC He Wants to Stay at Apple
7:44 PM
News - Apple’s European Head Departs
6:01 PM
News - Apple Pulls Rogue Amoeba’s Airfoil Speakers Touch from App Store
5:33 PM
Product News - Apple Updates Aperture for External Editors, Snow Leopard
5:23 PM
Mac Geek Gab Premium Podcast - MGG 399: Five Questions from Three Scotts
5:16 PM
News - Apple & Others Settle Mobile Lawsuit With Patent Firm SimpleAir
4:44 PM
Editorial - How the Ripples in Apple’s TechSphere Will Influence Us
4:02 PM
News - Microsoft Wins Motorola Android Device Ban in Germany
3:14 PM
News - Jury: Google’s Android Doesn’t Infringe on Oracle’s Java Patents
2:41 PM
Quick Look Review - Casellet: iPhone 4S Case and Wallet Combined
 

The Mac Observer Reader Specials

  • Macsales.com for the Right Mac Memory. Most Popular: 16GB from $128; 8GB from $50. MacBook Pro & Mac mini Kits up to 16GB. iMac up to 32GB & Mac Pro now up to 128GB. - Macsales.com
  • Mac RAM Upgrades: MacBook Pro 16GB kits $475, 8GB Kits for $119.99! iMac 16GB RAM Kits (4x 4GB) for $229.99! Mac Pro Memory 32GB Kit for $399.99, 64GB Kit for $889.99! Mac Hard Drives 2TB Seagate SATA II for $249.99! Click Here!
  • Macpokeronline.com If you're using a Mac, then you've gotta check out PokerOnAMac.com. Online casinos and poker rooms are literally giving away cash and the casino sites at Poker on a Mac do the unthinkable, they actually reward! Join today, the download is free!
  •  Looking to find online casinos for mac? We can help you find the best real money casino sites where you can play your favorite casino games including blackjack and slots.

Apple Stock Quote (AAPL)

Loading...

Hot Topics

TMO Express

Join the TMO Express Daily Newsletter to get the latest Mac headlines in your e-mail every weekday. Find out more!

Top Deals From DealBrothers.com

Recent Features

Support The Mac Observer

We noticed you may be running AdBlock on your computer. It takes real money to run this site and to deliver the news, tips, and opinions you love to read.

If you wish to block the ads that pay for the creation of our content, we ask that you instead support TMO Directly, either with a $5 monthly recurring contribution, or a one-time donation of any amount of your choice. Thanks!

Subscribe with Paypal Donate with Paypal