Home > Windows Security Tips > Patch Management Tips > Pros and cons of XP SP2's isolation and resiliency enhancements
Windows Security Tips:
EMAIL THIS
 TIPS & NEWSLETTERS TOPICS 

PATCH MANAGEMENT TIPS

Pros and cons of XP SP2's isolation and resiliency enhancements


Kevin Beaver
08.25.2004
Rating: -3.53- (out of 5)


Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us   


In part one of this series, Kevin Beaver provided a primer on Windows XP Service Pack 2 (SP2) security enhancements. Part two below discusses Microsoft's isolation and resiliency initiatives and what benefits they can offer you in proactively securing Windows.

Bill Gates sent out an e-mail in March 2004 outlining four major areas Microsoft intends to focus its research and development efforts:
1) isolation and resiliency
2) updating
3) quality
4) authentication and access control

Windows XP SP2 addresses most if not all of these areas. But while updating, quality, authentication and access control are relatively self-explanatory, how does isolation and resiliency relate to a service pack?

In a nutshell, isolation and resiliency means locking down the OS by default and making it less vulnerable to attack. At first glance, the isolation and resiliency improvements of SP2 appear to be merely layered patches on top of software development practices that have excluded security over the years. But it goes deeper than that. The focus is now more on proactive protection rather than the getting hacked, patch and hope everything still works -- a method we've all become used to up to this point.

One new concept brought forth by Microsoft's isolation and resiliency efforts is dynamic system protection. This service appears to bring a fresh solution to the age-old problem of computers being more vulnerable during certain events, such as a software installations or new network connections. Apparently, Microsoft software will have features that dynamically adjust the level of protection based on what's currently taking place in real time, such as booting, software installation, remote access, etc. Pretty neat.

Considering Windows XP was initially released with an "allow all" stance on security, users continually fail to enable even the most basic security settings and Microsoft tends to be reactive rather than proactive with its own XP security countermeasures, I've become quite the security pessimist. However, it appears that Microsoft released XP SP2 (and new strategies for all of its software) to take significant steps in defending systems from cyberthugs.

There is one potential side effect to dumbing down computer systems to protect them from their own users: commoditization of computer security expertise. This is not something I like to think about. However, if you look at it from a physical security perspective, newer and never before thought of computer security vulnerabilities will likely affect us in one way or another going forward.

I think the preventative hardening of software using Microsoft's isolation and resiliency tactics are well worth the hype. Enhanced software security, regardless of who is actually implementing it, can help us all in the long run.


About the author
Kevin Beaver is founder and principal consultant of Atlanta-based Principle Logic LLC, as well as a resident expert on SearchWindowsSecurity.com. He specializes in information security assessments and incident response and is the author of the new book "Hacking for dummies" by John Wiley and Sons. Kevin can be reached at kbeaver@principlelogic.com or ask him a question on Windows security threats today.

Rate this Tip
To rate tips, you must be a member of SearchWindowsSecurity.com.
Register now to start rating these tips. Log in if you are already a member.


Submit a Tip




Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us   


RELATED CONTENT
Patch Management Tips
How to install Windows Server 2003 patches when offline
Remote management for Windows system upgrades
How do I properly configure WSUS?
Have my Windows patches actually been installed?
Importance of managing unpatched third-party software
Critical September patch could hit Windows 2000 SP4 systems
What's hot in Microsoft security: Critical patches
Patch management; Windows Update for network security
Internet Explorer in Patch Tuesday limelight for August
One patch for Active Directory is a doozy

Patch Maintenance
DHCP Client Service error affects network security
Microsoft will release three critical patches in May
Critical patches for IE and Office released
Microsoft releases April trove of patches
PatchLink Update 6.4
What's hot in Microsoft Windows security
Importance of managing unpatched third-party software
Microsoft patch management policy
Microsoft patch maintenance and post-patch security
Patch management and Windows Update aid in network setup

RELATED RESOURCES
2020software.com, trial software downloads for accounting software, ERP software, CRM software and business software systems
Search Bitpipe.com for the latest white papers and business webcasts
Whatis.com, the online computer dictionary

DISCLAIMER: Our Tips Exchange is a forum for you to share technical advice and expertise with your peers and to learn from other enterprise IT professionals. TechTarget provides the infrastructure to facilitate this sharing of information. However, we cannot guarantee the accuracy or validity of the material submitted. You agree that your use of the Ask The Expert services and your reliance on any questions, answers, information or other materials received through this Web site is at your own risk.

HomeNewsTopicsITKnowledge ExchangeTipsAsk the ExpertsWebcastsWhite PapersIT DownloadsBlogs
About Us  |  Contact Us  |  For Advertisers  |  For Business Partners  |  Site Index  |  RSS
SEARCH 
TechTarget provides enterprise IT professionals with the information they need to perform their jobs - from developing strategy, to making cost-effective IT purchase decisions and managing their organizations' IT projects - with its network of technology-specific Web sites, events and magazines.

TechTarget Corporate Web Site  |  Media Kits  |  Reprints  |  Site Map




All Rights Reserved, Copyright 2004 - 2008, TechTarget | Read our Privacy Policy
  TechTarget - The IT Media ROI Experts