<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Sekiur My Thoughts &#187; microsoft</title>
	<atom:link href="http://blog.sekiur.com/tag/microsoft/feed/" rel="self" type="application/rss+xml" />
	<link>http://blog.sekiur.com</link>
	<description>VoIP, Mobility, Security, Open Source, Science, Politics, and Technology.</description>
	<lastBuildDate>Wed, 24 Aug 2011 19:46:24 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=</generator>
		<item>
		<title>Conficker Gets Ready To Strike</title>
		<link>http://blog.sekiur.com/2009/03/conficker-gets-ready-to-strike/</link>
		<comments>http://blog.sekiur.com/2009/03/conficker-gets-ready-to-strike/#comments</comments>
		<pubDate>Tue, 31 Mar 2009 19:37:25 +0000</pubDate>
		<dc:creator>Jose Vicente Ortega</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[conficker]]></category>
		<category><![CDATA[downandup]]></category>
		<category><![CDATA[hack]]></category>
		<category><![CDATA[microsoft]]></category>
		<category><![CDATA[ms08-067]]></category>
		<category><![CDATA[patch]]></category>
		<category><![CDATA[trojan]]></category>
		<category><![CDATA[virus]]></category>
		<category><![CDATA[vulnerability]]></category>
		<category><![CDATA[worm]]></category>

		<guid isPermaLink="false">http://blog.sekiur.com/?p=758</guid>
		<description><![CDATA[<p><a href="http://blog.sekiur.com/wp-content/uploads/2009/03/24hours_day0.jpg"></a>Without a doubt the whole security professional community have their eyes on the Conficker.C variant which is designed to do something on April 1st.</p> <p>So what is that something? We&#8217;ll find out within 24 hours.</p> <p>What we do know is that this variant of Conficker has become better at preventing removal and others from [...]]]></description>
			<content:encoded><![CDATA[<p><a href="http://blog.sekiur.com/wp-content/uploads/2009/03/24hours_day0.jpg"><img class="alignleft size-full wp-image-759" title="24hours_day0" src="http://blog.sekiur.com/wp-content/uploads/2009/03/24hours_day0.jpg" alt="" width="120" height="107" /></a>Without a doubt the whole security professional community have their eyes on the Conficker.C variant which is designed to do something on April 1st.</p>
<p>So what is that something? We&#8217;ll find out within 24 hours.</p>
<p>What we do know is that this variant of Conficker has become better at preventing removal and others from taking control of the network of worm infected computers.</p>
<p>The Conficker worm will begin to poll 500 different domain names every day looking for updates to download doubling its current rate.</p>
<p>Interestingly enough one of my most popular posts is on the removal of the Conficker worm from a network environment <a href="http://blog.sekiur.com/2009/02/step-by-step-in-dealing-with-conficker/" target="_self">here</a> and over the last couple of days visitors have exploded exponentially.</p>
<p>In my two other posts in which I talk about the <a href="http://blog.sekiur.com/2008/10/worm-takes-advantage-of-microsoft-flaw/" target="_self">Microsoft flaw</a> and the <a href="http://blog.sekiur.com/2009/01/worm-uses-social-engineering/" target="_self">Social Engineering</a> components of the worm, I take a rather passive approach to the problem which is based on having contingency plans to prevent, contain and remove the worm from infected computers.</p>
<p>A more pro-active approach would be to look for infected machines without waiting for the symptons to appear by actively scanning the network for computers which have been infected.</p>
<p>Locating computers which have been infected with Conficker using a network scan has kept me up multiple nights, until the guys at <a href="http://honeynet.org/" target="_self">Honeynet.org</a> came up with the <a href="http://honeynet.org/node/388" target="_self">tool here</a>. Thanks to <a href="http://www.dshield.org/" target="_self">DShield.org</a> for linking to it in their article on <a href="http://www.dshield.org/diary.html?storyid=6097" target="_self">locating Conficker</a>.<a href="http://blog.sekiur.com/2009/01/worm-uses-social-engineering/" target="_self"><br />
</a></p>
<p style="text-align: center;"><script type="text/javascript"><!--
google_ad_client = "pub-3340920433757461";
google_ui_features = "rc:10";
google_ad_width = 468;
google_ad_height = 60;
google_ad_format = "468x60_as";
google_ad_type = "text_image";
google_color_border = "FFFFFF";
google_color_bg = "FFFFFF";
google_color_link = "0000FF";
google_color_text = "000000";
google_color_url = "008000";

//--></script>
<script type="text/javascript" src="http://pagead2.googlesyndication.com/pagead/show_ads.js"></script>
</p>
<p><a href="http://blog.sekiur.com/2009/02/step-by-step-in-dealing-with-conficker/" target="_self">http://blog.sekiur.com/2009/02/step-by-step-in-dealing-with-conficker/</a><br />
<a href="http://blog.sekiur.com/2008/10/worm-takes-advantage-of-microsoft-flaw/" target="_self">http://blog.sekiur.com/2008/10/worm-takes-advantage-of-microsoft-flaw/</a><br />
<a href="http://blog.sekiur.com/2009/01/worm-uses-social-engineering/" target="_self">http://blog.sekiur.com/2009/01/worm-uses-social-engineering/</a></p>
<h6 class="zemanta-related-title" style="font-size: 1em;">Related articles by Zemanta</h6>
<ul class="zemanta-article-ul">
<li class="zemanta-article-ul-li"><a href="http://www.shankrila.com/tech-stuff/how-to-remove-conficker-worm/">Your Quick Guide to the Conficker Worm</a> (shankrila.com)</li>
<li class="zemanta-article-ul-li"><a href="http://r.zemanta.com/?u=http%3A//www.infoworld.com/article/09/02/13/With_global_effort_a_new_type_of_worm_is_slowed_1.html&amp;a=3158865&amp;rid=54f79576-6273-4d40-8fb9-001ff817cc48&amp;e=3bc0e6cf396bcb6a07b7981582904fa2">With global effort, a new type of worm is slowed</a> (infoworld.com)</li>
<li class="zemanta-article-ul-li"><a href="http://www.idiomag.com/peek/72863/crap">My Top Security and Maintenance Tools</a> (idiomag.com)</li>
<li class="zemanta-article-ul-li"><a href="http://blogs.technet.com/msrc/archive/2009/02/06/new-information-pages-on-conficker.aspx">New Information Pages on Conficker</a> (blogs.technet.com)</li>
<li class="zemanta-article-ul-li"><a href="http://littlegreenfootballs.com/article/33216_Windows_PC_Worm_Set_to_Activate_on_April_1st">Windows PC Worm Set to Activate on April 1st</a> (littlegreenfootballs.com)</li>
</ul>
<div class="zemanta-pixie" style="margin-top: 10px; height: 15px;"><a class="zemanta-pixie-a" title="Zemified by Zemanta" href="http://reblog.zemanta.com/zemified/54f79576-6273-4d40-8fb9-001ff817cc48/"><img class="zemanta-pixie-img" style="border: medium none; float: right;" src="http://img.zemanta.com/reblog_e.png?x-id=54f79576-6273-4d40-8fb9-001ff817cc48" alt="Reblog this post [with Zemanta]" /></a><span class="zem-script more-related"><script src="http://static.zemanta.com/readside/loader.js" type="text/javascript"></script></span></div>
]]></content:encoded>
			<wfw:commentRss>http://blog.sekiur.com/2009/03/conficker-gets-ready-to-strike/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Step by Step In Dealing With Conficker</title>
		<link>http://blog.sekiur.com/2009/02/step-by-step-in-dealing-with-conficker/</link>
		<comments>http://blog.sekiur.com/2009/02/step-by-step-in-dealing-with-conficker/#comments</comments>
		<pubDate>Tue, 03 Feb 2009 23:03:35 +0000</pubDate>
		<dc:creator>Jose Vicente Ortega</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[conficker]]></category>
		<category><![CDATA[downandup]]></category>
		<category><![CDATA[hack]]></category>
		<category><![CDATA[microsoft]]></category>
		<category><![CDATA[ms08-067]]></category>
		<category><![CDATA[patch]]></category>
		<category><![CDATA[trojan]]></category>
		<category><![CDATA[virus]]></category>
		<category><![CDATA[vulnerability]]></category>
		<category><![CDATA[worm]]></category>

		<guid isPermaLink="false">http://blog.sekiur.com/?p=722</guid>
		<description><![CDATA[<p>This will turn out to be a &#8220;trojan horse&#8221; literally if actions are not taken to prevent it from spreading within the corporate network.</p> <p>Below are step by step instructions on mitigating the risk of the threat that &#8220;Conficker&#8221;/&#8221;Downandup&#8221; poses.</p> <p><a href="http://blog.sekiur.com/wp-content/uploads/2009/02/binary.jpg"></a></p> <p>Symptoms</p> <p>============</p> <p>Symptoms to help you determine if you are infected</p> Account lockout [...]]]></description>
			<content:encoded><![CDATA[<p>This will turn out to be a &#8220;trojan horse&#8221; literally if actions are not taken to prevent it from spreading within the corporate network.</p>
<p>Below are step by step instructions on mitigating the risk of the threat that &#8220;Conficker&#8221;/&#8221;Downandup&#8221; poses.</p>
<p><a href="http://blog.sekiur.com/wp-content/uploads/2009/02/binary.jpg"><img class="aligncenter size-medium wp-image-724" title="binary" src="http://blog.sekiur.com/wp-content/uploads/2009/02/binary-300x225.jpg" alt="" width="300" height="225" /></a></p>
<p><strong>Symptoms</strong></p>
<p>============</p>
<p>Symptoms to help you determine if you are infected</p>
<ul>
<li>Account lockout policies are being tripped</li>
<li>Automatic Updates, Background Intelligent Transfer Service, Windows Defender and Error Reporting Server Services are disabled</li>
<li>Errors related to SVCHOST</li>
<li>Domain Controllers are slow to respond to client requests</li>
<li> Network congestion</li>
<li> Various security related websites are not accessible including Windows Update.</li>
</ul>
<p><span style="font-size: 11pt; font-family: 'Calibri','sans-serif'; color: #000000;">For  further details see the Microsoft Malware Protection Center write up for <a href="http://www.microsoft.com/security/portal/Entry.aspx?Name=Worm%3aWin32%2fConficker.B">Win32/Conficker.b</a>. or the Sekiur writeup </span><a title="Sekiur" href="http://blog.sekiur.com/2009/01/worm-uses-social-engineering/" target="_blank">here</a>.</p>
<p><strong>Solution</strong></p>
<p>=========</p>
<p>Ideally you want to not only automate the removal of the &#8220;Conficker&#8221;/&#8221;Downandup&#8221; worm from a large number of computers but also take steps to minimize the risk of them being infected again.</p>
<p>The following script will attempt to remove the &#8220;Conficker&#8221;/&#8221;Downandup&#8221;  worm and prevent further infection by taking the following steps:</p>
<ol>
<li>Install patch <a href="http://support.microsoft.com/kb/958644" target="_blank">KB958644</a> for <a href="http://www.microsoft.com/technet/security/bulletin/MS08-067.mspx" target="_blank">MS08-067</a> if not installed</li>
<li>Attempt to remove the &#8220;Conficker&#8221;/&#8221;Downandup&#8221;  worm</li>
<li>Enable Hidden Setting</li>
<li>Delete all scheduled tasks</li>
<li>Stop and disable services. (lanmanserver, schedule)</li>
<li>Run MSRT &#8211; Malicious Software Removal Tool</li>
<li>Install Autorun hotfix if not installed</li>
<li>Install <a href="http://support.microsoft.com/kb/950582" target="_blank">KB950582</a> for vulnerability <a href="http://www.microsoft.com/technet/security/bulletin/ms08-038.mspx" target="_blank">MS08-038</a></li>
<li>Re-enable TCP Receive Window Auto-tuning on Windows Vista and Windows Server 2008</li>
<li>Remove Hidden Setting</li>
<li>Enable Automatic Updates, Background Intelligent Transfer and Error Reporting Services</li>
<li>Restart</li>
<li>Install patch <a href="http://support.microsoft.com/kb/958644" target="_blank">KB958644</a> for <a href="http://www.microsoft.com/technet/security/bulletin/MS08-067.mspx" target="_blank">MS08-067</a> and restart</li>
</ol>
<p>You will need to download the following files and batch script and drop them into the NetLogon share.</p>
<ul>
<li> Getver.exe &#8211; contained in ConfickerClean-v10.3.zip here ==> [Download not found] and script to remove &#8220;Conficker&#8221;/&#8221;Downandup&#8221;  locally here ==> [Download not found].</li>
<li>SC.EXE &#8211; contained in ConfickerClean-v10.3.zip</li>
<li>REG.exe &#8211; contained in ConfickerClean-v10.3.zip</li>
<li>windows-kb890830-v2.6.exe &#8211; x86 version of MSRT, available <a href="http://www.microsoft.com/downloads/details.aspx?FamilyId=AD724AE0-E72D-4F54-9AB3-75B8EB148356&amp;displaylang=en" target="_blank">here</a>.</li>
<li>windows-kb890830-x64-v2.6.exe &#8211; x64 version of MSRT, available <a href="http://www.microsoft.com/downloads/details.aspx?FamilyId=585D2BDE-367F-495E-94E7-6349F4EFFC74&amp;displaylang=en" target="_blank">here</a>.</li>
<li> sleep.exe &#8211; contained in ConfickerClean-v10.3.zip</li>
<li>Hotfix update for Windows 2000, Windows XP and Windows 2003, download all updates listed in <a href="http://support.microsoft.com/kb/953252" target="_blank">http://support.microsoft.com/kb/953252</a>, except the Itanium update as this script does not support Itanium.</li>
<li>Place all 3 updates in the Netlogon directory.</li>
<li>Security update MS08-038 for Windows Vista and Windows Server 2008 &#8211; <a href="http://www.microsoft.com/technet/security/Bulletin/MS08-038.mspx" target="_blank">http://www.microsoft.com/technet/security/Bulletin/MS08-038.mspx</a><br />
This vulnerability is not being exploited, however, to disable Autorun properly this needs to be applied as it contains a fix related to autorun, same as the one listed above in <a href="http://support.microsoft.com/kb/953252" target="_blank">KB953252</a>.</li>
</ul>
<p>Now you will proceed to create and push a Group Policy to the domain.</p>
<ol>
<li>Edit the &lt;domain.com&gt; values in the script.</li>
<li>Rename it to .BAT and drop it in the \\%windir%\sysvol\sysvol\\scriptsfolder (aka, Netlogon share).</li>
<li> Create a Startup Script policy and reference this batch file.  This needs to be a Startup Script and not a Logon script, so that the script runs under the machine account.</li>
<li>Link the GPO with the Startup Script to the OU and Groups where you want it to apply.</li>
</ol>
<p><strong>Note:</strong></p>
<p><strong>Its not recommend you use this on DC&#8217;s or critical servers, those should be cleaned manually so that the services disabled below do not need to be left disabled for an extended period of time.</strong></p>
<p><strong>FAQ:</strong></p>
<p><strong>Why disable the Server service? </strong></p>
<p>This is due to Weak Passwords which the malware attempts to exploit. The password change will need to be accomplished via password policy for the domain, resetting any local and domain admin password to a complex password which includes at least 10 characters and contains, alpha-numeric characters and extended characters such as a question mark or exclamation point.</p>
<p><strong>Why disable the Task Scheduler service? </strong></p>
<p>This is because the malware creates several AT jobs that run every hour to reinfect the system.</p>
<p><strong>Why install MS08-067?</strong></p>
<p>This is the main attack vector of the malware.</p>
<p><strong>Why disable Autorun?</strong></p>
<p>This is because the malware drops a binary file called Autorun.inf on all removable drives.</p>
<p style="text-align: center;"><script type="text/javascript"><!--
google_ad_client = "pub-3340920433757461";
google_ui_features = "rc:10";
google_ad_width = 468;
google_ad_height = 60;
google_ad_format = "468x60_as";
google_ad_type = "text_image";
google_color_border = "FFFFFF";
google_color_bg = "FFFFFF";
google_color_link = "0000FF";
google_color_text = "000000";
google_color_url = "008000";

//--></script>
<script type="text/javascript" src="http://pagead2.googlesyndication.com/pagead/show_ads.js"></script>
</p>
<p>Sources:</p>
<p>All credit to Microsoft Support Engineering</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.sekiur.com/2009/02/step-by-step-in-dealing-with-conficker/feed/</wfw:commentRss>
		<slash:comments>8</slash:comments>
		</item>
		<item>
		<title>Worm Uses Social Engineering</title>
		<link>http://blog.sekiur.com/2009/01/worm-uses-social-engineering/</link>
		<comments>http://blog.sekiur.com/2009/01/worm-uses-social-engineering/#comments</comments>
		<pubDate>Thu, 22 Jan 2009 19:27:27 +0000</pubDate>
		<dc:creator>Jose Vicente Ortega</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[hack]]></category>
		<category><![CDATA[microsoft]]></category>
		<category><![CDATA[ms08-067]]></category>
		<category><![CDATA[patch]]></category>
		<category><![CDATA[virus]]></category>
		<category><![CDATA[vulnera]]></category>
		<category><![CDATA[worm]]></category>

		<guid isPermaLink="false">http://blog.sekiur.com/?p=704</guid>
		<description><![CDATA[<p>A new worm has hit the Internet and its taking its toll on computers worldwide. It has been reported that over 9 million computers have already been infected.</p> <p>The worm called &#8220;Downandup&#8221;, &#8220;Conficker&#8221; or &#8220;Kido&#8221; by different anti-virus vendors uses the Microsoft vulnerability which I blogged about here (<a rel="bookmark" href="../2008/10/worm-takes-advantage-of-microsoft-flaw/">Worm Takes Advantage Of Microsoft [...]]]></description>
			<content:encoded><![CDATA[<p>A new worm has hit the Internet and its taking its toll on computers worldwide. It has been reported that over 9 million computers have already been infected.</p>
<p>The worm called &#8220;Downandup&#8221;, &#8220;Conficker&#8221; or &#8220;Kido&#8221; by different anti-virus vendors uses the Microsoft vulnerability which I blogged about here (<a rel="bookmark" href="../2008/10/worm-takes-advantage-of-microsoft-flaw/">Worm Takes Advantage Of Microsoft Flaw</a>) and here (<a rel="bookmark" href="../2008/10/microsoft-releases-emergency-patch/">Microsoft Releases Emergency Patch</a>).</p>
<p>The worm mostly spreads across networks, turning off the system restore and deleting the restore points, blocks access to security website, download additional malware from the author, attempts to infect other computers by scanning network shares and scheduled a task to re-infect the computer if removed.</p>
<p>What is interesting is that it can also spread by USB memory keys or devices making use of <a href="http://en.wikipedia.org/wiki/Social_engineering_(security)" target="_blank">social engineering</a> which makes it more dangerous to the untrained eye. When a USB drive is inserted it shows a modified AutoPlay screen seen below which will install the worm when the users inadvertently clicks on it.</p>
<p><a href="http://blog.sekiur.com/wp-content/uploads/2009/01/windows_vista_open_folder_to_view_files.png"><img class="aligncenter size-full wp-image-705" title="windows_vista_open_folder_to_view_files" src="http://blog.sekiur.com/wp-content/uploads/2009/01/windows_vista_open_folder_to_view_files.png" alt="" width="400" height="550" /></a></p>
<p>According to <a title="SANS ISC" href="http://isc.sans.org/" target="_blank">SANS Internet Storm Center</a>, one of the reasons the worm is infecting so many machines is that &#8220;Conficker&#8221; uses multiple infection vectors:</p>
<ol>
<li>It exploits the MS08-067 vulnerability,</li>
<li>It brute forces Administrator passwords on local networks and spreads through ADMIN$ shares and finally</li>
<li>It infects removable devices and network shares by creating a special autorun.inf file and dropping its own DLL on the device.</li>
</ol>
<h4 class="tabsection-title">Characteristics -</h4>
<p>When executed, the worm copies itself using a random name to the %Sysdir% folder.</p>
<p><em>(Where %Sysdir% is the Windows system folder; e.g. C:\Windows\System32)</em></p>
<p>It modifies the following registry key to create a randomly-named service on the affected syetem:</p>
<ul>
<li>HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\{random}\Parameters\&#8221;ServiceDll&#8221; = &#8220;Path to worm&#8221;</li>
<li>HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\{random}\&#8221;ImagePath&#8221; = %SystemRoot%\system32\svchost.exe -k netsvcs</li>
</ul>
<p>Attempts connections to one or more of the following websites to obtain the public ip address of the affected computer.</p>
<ul>
<li>hxxp://www.getmyip.org</li>
<li>hxxp://getmyip.co.uk</li>
<li>hxxp://checkip.dyndns.org</li>
<li>hxxp://whatsmyipaddress.com</li>
</ul>
<p>Attempts to download a malware file from the remote website: (Rogue Russian site is up but not serving file anymore)</p>
<ul>
<li> hxxp://trafficconverter.biz/[Removed]antispyware/[Removed].exe</li>
</ul>
<p>Starts a HTTP server on a random port on the infected machine to host a copy of the worm.</p>
<p>Continuously scans the subnet of the infected host for vulnerable machines and executes the exploit. If the exploit is successful, the remote computer will then connect back to the http server and download a copy of the worm.</p>
<p>Later variants of w32/Conficker.worm are using scheduled tasks and Autorun.inf file to replicate on to non vulnerable systems or to reinfect previously infected systems after they have been cleaned.</p>
<h4 class="tabsection-title">Suggestions -</h4>
<ol>
<li>Disable AutoPlay in your environment.</li>
<li>Run a good security suite.</li>
<li>Keep your computer updated with the latest patches.</li>
<li>Be <strong>PROACTIVE</strong> and look for the worm in your environment.</li>
</ol>
<p>Sources:</p>
<p>http://www.nai.com</p>
<p>http://www.symantec.com</p>
<p>http://www.f-secure.com</p>
<p>http://isc.sans.org</p>
<ul></ul>
<p style="text-align: center;"><script type="text/javascript"><!--
google_ad_client = "pub-3340920433757461";
google_ui_features = "rc:10";
google_ad_width = 468;
google_ad_height = 60;
google_ad_format = "468x60_as";
google_ad_type = "text_image";
google_color_border = "FFFFFF";
google_color_bg = "FFFFFF";
google_color_link = "0000FF";
google_color_text = "000000";
google_color_url = "008000";

//--></script>
<script type="text/javascript" src="http://pagead2.googlesyndication.com/pagead/show_ads.js"></script>
</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.sekiur.com/2009/01/worm-uses-social-engineering/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>VoIP Phone Systems for Small Businesses</title>
		<link>http://blog.sekiur.com/2008/12/voip-phone-systems-for-small-businesses/</link>
		<comments>http://blog.sekiur.com/2008/12/voip-phone-systems-for-small-businesses/#comments</comments>
		<pubDate>Tue, 30 Dec 2008 05:10:33 +0000</pubDate>
		<dc:creator>Jose Vicente Ortega</dc:creator>
				<category><![CDATA[Business]]></category>
		<category><![CDATA[Technology]]></category>
		<category><![CDATA[asterisk]]></category>
		<category><![CDATA[digium]]></category>
		<category><![CDATA[fonality]]></category>
		<category><![CDATA[grandstream]]></category>
		<category><![CDATA[jazinga]]></category>
		<category><![CDATA[microsoft]]></category>
		<category><![CDATA[response point]]></category>
		<category><![CDATA[rochbochs]]></category>
		<category><![CDATA[small business]]></category>
		<category><![CDATA[switchvox]]></category>
		<category><![CDATA[talkswitch]]></category>
		<category><![CDATA[trixbox]]></category>
		<category><![CDATA[voip]]></category>

		<guid isPermaLink="false">http://blog.sekiur.com/?p=666</guid>
		<description><![CDATA[<p><a href="http://blog.sekiur.com/wp-content/uploads/2008/12/voip-4d-primer-cover_en.jpg"></a>The more I research on the potential and possibilities of VoIP phone systems, the more companies I see trying to get a piece of the market.</p> <p>Reminds me of a blog entry I read recently &#8220;<a href="http://blogs.zappos.com/blogs/ceo-and-coo-blog/2008/12/27/everything-i-know-about-business-i-learned-from-poker" target="_self">Everything I Know About Business I Learned From Poker</a>&#8221; and more specifically the quote: &#8220;If there are [...]]]></description>
			<content:encoded><![CDATA[<p><a href="http://blog.sekiur.com/wp-content/uploads/2008/12/voip-4d-primer-cover_en.jpg"><img class="alignleft size-medium wp-image-667" title="voip-4d-primer-cover_en" src="http://blog.sekiur.com/wp-content/uploads/2008/12/voip-4d-primer-cover_en-300x252.jpg" alt="" width="300" height="252" /></a>The more I research on the potential and possibilities of VoIP phone systems, the more companies I see trying to get a piece of the market.</p>
<p>Reminds me of a blog entry I read recently &#8220;<a href="http://blogs.zappos.com/blogs/ceo-and-coo-blog/2008/12/27/everything-i-know-about-business-i-learned-from-poker" target="_self">Everything I Know About Business I Learned From Poker</a>&#8221; and more specifically the quote: &#8220;If there are too many competitors (some irrational or inexperienced), even if you&#8217;re the best it&#8217;s a lot harder to win.&#8221; which definitely rings true here.</p>
<p>Below is a partial list of VoIP phone systems geared towards small businesses, meaning deployments of less than 50 phones. Although several of these systems can easily scale into the hundreds of phones.</p>
<ol>
<li><a href="http://www.rockbochs.com/products.php#phonebochs" target="_blank">PhoneBochs</a> from <a href="http://www.rockbochs.com/" target="_blank">Rochbochs</a>, Inc. (Duluth, MN based Rochbochs builds appliances based on Linux ranging from firewalls, asterisk telephony, Zimbra Email Collaboration and Fax over IP.)</li>
<li><a href="http://www.grandstream.com/gxe502x.html" target="_blank">GXE502X</a> from <a href="http://www.grandstream.com" target="_blank">Grandstream</a>. (<span class="style1">Brookline, MA based Grandstream builds </span>the GXE502x appliance, a powerful all-in-one voice + video + fax + data communication solution for the small to medium sized business)</li>
<li>Jazinga PBX from <a href="http://www.jazinga.com/" target="_blank">Jazinga</a>. (Toronto based Jazinga integrates data networking, traditional telephone service and low-cost    Voice-over-IP (VoIP) service into one simple solution for small business and    homes)</li>
<li><a href="http://www.microsoft.com/responsepoint/default.aspx" target="_blank">Response Point</a> from <a href="http://www.microsoft.com" target="_blank">Microsoft</a>. (Redmond, WA based Microsoft could not miss the action and introduced their next generation phone system for small businesses.)</li>
<li><a href="http://www.trixbox.com" target="_blank">Trixbox</a> from <a href="http://www.fonality.com/" target="_blank">Fonality</a>. (Los Angeles, CA based Fonality who acquired Trixbox which itself was re-branded from the open source project Asterisk @Home brings both software and appliance offerings to the table going beyond the small business market.)</li>
<li><a href="http://www.digium.com/en/products/switchvox/" target="_blank">Switchvox</a> IP PBX from <a href="http://www.digium.com/en/" target="_blank">Digium</a>. (Huntsville, AL based Digium and the cradle of Asterisk brings forth their flagship product Switchvox which is probably one of the most popular offerings out there today.)</li>
<li><a href="http://www.talkswitch.com/" target="_blank">TalkSwitch</a> from Centrepoint Technologies. (Canada based Centrepoint, now TalkSwitch provides telecommunications solutions ideal for small and multi-location businesses with up to 32 telephone users per office.)</li>
<li><a href="http://www.pikatechnologies.com/english/View.asp?x=652" target="_blank">PIKA WARP</a> by <a href="http://www.pikatechnologies.com" target="_blank">PIKA Technologies</a>. (Ontario, Canada based PIKA builds appliances focused on Asterisk and Linux solutions for small businesses.)</li>
<li>BYOB by yourself. (Locally based, you can &#8220;Build Your Own Box&#8221; using Sangoma or Digium hardware for POTS landlines and build your own VoIP phone system using any Asterisk distribution, including Trixbox®, Elastix, AsteriskNOW, Elastix, CentPBX, and PBX-in-a-Flash, or FreeSWITCH, or YATE.</li>
</ol>
<p>Amongst the other options available are the hosted solution where you pay a fixed cost per device, and then there&#8217;s the Colo solution where you would have one of the options above hosted by someone else.</p>
<p>There are many variables that need to be taken into account and every business is different.</p>
<p>Small businesses are likely to have some type of broadband connectivity to the Internet, whether cable or DSL and not the more reliable T1 circuit. Although I have not had any problems with my broadband connection for over 3 years, I have seen businesses add redundant cable and/or DSL because they have to stay up when their service gets interrupted occasionally during a storm.</p>
<p>The amount of simultanous calls at any one time and the codec used will also play a role in deciding if the hosted solution is viable, since most broadband providers do not offer symmetrical upload and download speeds but rather assimetrical where the upload is usually much lower than the download speeds.</p>
<p>My rule of thumb for a business with more than 10 phones and 3 lines with heavy phone usage is to stay with the premises PBX and only use VoIP trunks as secondary circuits for savings.</p>
<p style="text-align: center;"><script type="text/javascript"><!--
google_ad_client = "pub-3340920433757461";
google_ui_features = "rc:10";
google_ad_width = 468;
google_ad_height = 60;
google_ad_format = "468x60_as";
google_ad_type = "text_image";
google_color_border = "FFFFFF";
google_color_bg = "FFFFFF";
google_color_link = "0000FF";
google_color_text = "000000";
google_color_url = "008000";

//--></script>
<script type="text/javascript" src="http://pagead2.googlesyndication.com/pagead/show_ads.js"></script>
</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.sekiur.com/2008/12/voip-phone-systems-for-small-businesses/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Secure Internet Browsing</title>
		<link>http://blog.sekiur.com/2008/12/secure-internet-browsing/</link>
		<comments>http://blog.sekiur.com/2008/12/secure-internet-browsing/#comments</comments>
		<pubDate>Mon, 15 Dec 2008 15:02:12 +0000</pubDate>
		<dc:creator>Jose Vicente Ortega</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[anonymity]]></category>
		<category><![CDATA[browsing]]></category>
		<category><![CDATA[firefox]]></category>
		<category><![CDATA[microsoft]]></category>
		<category><![CDATA[privacy]]></category>

		<guid isPermaLink="false">http://blog.sekiur.com/?p=589</guid>
		<description><![CDATA[<p><a href="http://blog.sekiur.com/wp-content/uploads/2008/12/browsing_mobile.jpg"></a>Just read an article over at Internet News &#8211; <a href="http://www.internetnews.com/security/article.php/3790691" target="_self">Which Top Apps Have the Most Security Holes?</a> and to my surprise Firefox was right up there on first place.</p> <p>I consider myself a pretty safe Internet surfer, doing the obvious and making sure that I do not visit a website that could [...]]]></description>
			<content:encoded><![CDATA[<p><a href="http://blog.sekiur.com/wp-content/uploads/2008/12/browsing_mobile.jpg"><img class="alignleft size-medium wp-image-590" title="browsing_mobile" src="http://blog.sekiur.com/wp-content/uploads/2008/12/browsing_mobile-300x226.jpg" alt="" width="300" height="226" /></a>Just read an article over at Internet News &#8211; <a href="http://www.internetnews.com/security/article.php/3790691" target="_self"><span class="headline">Which Top Apps Have the Most Security Holes?</span></a><span class="headline"> and to my surprise Firefox was right up there on first place.</span></p>
<p>I consider myself a pretty safe Internet surfer, doing the obvious and making sure that I do not visit a website that could put my PC at risk.</p>
<p>A long time ago when I started to use Firefox and became a fan hooked on add-ins and tabbed browsing, I decided to continue to use Internet Explorer exclusively for banking. On the Firefox side I also take preventative measures including a couple of add-ins which I think are critical. The first is Adblock Plus and the second is NoScript.</p>
<p>This practice makes even more sense now, although I constantly make sure that I keep up with security updates.</p>
<blockquote><p>For enterprises, the fact spells trouble &#8212; especially since many of these apps slip in without IT knowing. Additionally, the news comes as businesses face growing security threats, punctuated by a slew of recent data breaches, while also contending sharply reduced spending on IT projects.</p></blockquote>
<p>What is surprising is that Microsoft showed up at number 10 with only Microsoft Windows Live Messenger. I have to say that Microsoft has done a superb job and mastered patch deployment and as long as you have an Internet connection and automatic updates turned on you&#8217;re half way there.</p>
<p>Additional measures I have decided not to take is to privatize my Internet browsing. A couple of popular practices are to tunnel your browsing through your home Internet connection in order to prevent your employer from snooping or blocking web traffic and the other is to anonymize the traffic either by going through a proxy or using a product that will rotate source IP addresses every time a connection is made (<a href="http://en.wikipedia.org/wiki/Onion_routing" target="_self">onion routing</a>), making it virtually impossible to analyze the traffic.</p>
<p>Unfortunately I believe that once you get online, there is really no way to cover your tracks. There is nothing that isn&#8217;t traceable and if someone wants to find you bad enough they will so keep it legal.</p>
<p style="text-align: center;"><script type="text/javascript"><!--
google_ad_client = "pub-3340920433757461";
google_ui_features = "rc:10";
google_ad_width = 468;
google_ad_height = 60;
google_ad_format = "468x60_as";
google_ad_type = "text_image";
google_color_border = "FFFFFF";
google_color_bg = "FFFFFF";
google_color_link = "0000FF";
google_color_text = "000000";
google_color_url = "008000";

//--></script>
<script type="text/javascript" src="http://pagead2.googlesyndication.com/pagead/show_ads.js"></script>
</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.sekiur.com/2008/12/secure-internet-browsing/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Configuring Microsoft Windows Live Exchange Labs</title>
		<link>http://blog.sekiur.com/2008/12/configuring-microsoft-windows-live-exchange-labs/</link>
		<comments>http://blog.sekiur.com/2008/12/configuring-microsoft-windows-live-exchange-labs/#comments</comments>
		<pubDate>Tue, 09 Dec 2008 17:23:14 +0000</pubDate>
		<dc:creator>Jose Vicente Ortega</dc:creator>
				<category><![CDATA[Technology]]></category>
		<category><![CDATA[bind]]></category>
		<category><![CDATA[dns]]></category>
		<category><![CDATA[e-mail]]></category>
		<category><![CDATA[hosted]]></category>
		<category><![CDATA[microsoft]]></category>

		<guid isPermaLink="false">http://blog.sekiur.com/?p=571</guid>
		<description><![CDATA[<p><a href="http://blog.sekiur.com/wp-content/uploads/2008/12/windows_live.jpg"></a>When it comes to decision making having data to make the right choice is paramount.</p> <p>Creating a pilot program provides invaluable feedback from users as to the functionalities that a specific product provides and making them part of the selection process improves the success of a project greatly.</p> <p>Today we will be looking at [...]]]></description>
			<content:encoded><![CDATA[<p><a href="http://blog.sekiur.com/wp-content/uploads/2008/12/windows_live.jpg"><img class="alignleft size-medium wp-image-574" title="windows_live" src="http://blog.sekiur.com/wp-content/uploads/2008/12/windows_live-300x177.jpg" alt="" width="300" height="177" /></a>When it comes to decision making having data to make the right choice is paramount.</p>
<p>Creating a pilot program provides invaluable feedback from users as to the functionalities that a specific product provides and making them part of the selection process improves the success of a project greatly.</p>
<p>Today we will be looking at Microsoft&#8217;s e-mail hosted solution, more specifically Exchange Labs which is described in detail in a previous post <a href="http://blog.sekiur.com/2008/11/outsourcing-e-mail/" target="_self">here</a>.</p>
<p>Once you get an invitation from Microsoft which you have to request, you will go to their administrative console <a href="http://domains.live.com" target="_blank">http://domains.live.com</a>. After the domain is created, the game beings and we start playing with DNS records. We will address BIND specific configurations, but these same settings will apply to other DNS servers.</p>
<p>The easiest way to begin is to setup a new zone named live.your-domain.com.</p>
<p>An MX record will need to be created pointing to the exchangelabs.com domain and the specific entry will be provided by the administrator console.</p>
<ul class="configList">
<li>DNS Record Type: MX</li>
<li>Host: live.your-domain.com</li>
<li>MX server: <strong><span id="requiredMxRecord">number_provided.mail.exchangelabs.com</span></strong></li>
<li>TTL: 3600 or 1 hour</li>
<li>Priority: 0 (or High priority)</li>
</ul>
<p>Create a CNAME entry to allow Outlook 2007 client to connect to Exchange Labs.</p>
<ul class="configList">
<li>DNS Record Type: CNAME</li>
<li>Host: autodiscover</li>
<li>Value: autodiscover.exchangelabs.com</li>
</ul>
<p>Configure Sender ID to allowing destination mail servers to trust mail originating from your domain using  the Sender Policy Framework (SPF).</p>
<ul class="configList">
<li>DNS Record Type: TXT</li>
<li>Host: live.your-domain.com</li>
<li>Value: <span id="Span2">v=spf1 include:exchangelabs.com  ~all</span></li>
<li>TTL: 3600 or 1 hour (if requested)</li>
</ul>
<p>Finally if you want to have federated Windows Live Messenger access, you will need to create a SRV record.</p>
<ul class="configList">
<li>DNS Record Type: SRV</li>
<li>Host: <span id="srvHost">_sipfederationtls._tcp.live.txwes.edu</span></li>
<li>Value: <span id="srvValue">10 2 5061 federation.messenger.msn.com</span></li>
</ul>
<p>Now to test the configuration you can use <a href="http://www.dnswatch.info/" target="_blank">DNSWatch</a> to test your records to see how the world sees your servers. Keep in mind that it could take hours for your records to propagate throughout the Internet.</p>
<p>Finally there are several options for you to customize the look and feel of your hosted e-mail.</p>
<p>You will be able to reach the site by going to http://autodiscover.live.your-domain.com or you can enter an additional CNAME entry in your DNS which is more significant to you and point it to autodiscover.exchangelabs.com</p>
<p>Apparently creating multiple administrator accounts cannot be done easily on the administrative website, but rather using a tool called PowerShell and promoting existing user accounts. Further limitations include that PowerShell will only run on Vista SP1 and Windows Server 2008.</p>
<p>Instructions on doing this are <a href="http://technet.microsoft.com/en-us/exchangelabshelp/cc546279.aspx" target="_self">here</a> and <a href="http://technet.microsoft.com/en-us/exchangelabshelp/cc546278.aspx" target="_self">here</a>.</p>
<p style="text-align: center;"><script type="text/javascript"><!--
google_ad_client = "pub-3340920433757461";
google_ui_features = "rc:10";
google_ad_width = 468;
google_ad_height = 60;
google_ad_format = "468x60_as";
google_ad_type = "text_image";
google_color_border = "FFFFFF";
google_color_bg = "FFFFFF";
google_color_link = "0000FF";
google_color_text = "000000";
google_color_url = "008000";

//--></script>
<script type="text/javascript" src="http://pagead2.googlesyndication.com/pagead/show_ads.js"></script>
</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.sekiur.com/2008/12/configuring-microsoft-windows-live-exchange-labs/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Asterisk Success Story</title>
		<link>http://blog.sekiur.com/2008/11/asterisk-success-story/</link>
		<comments>http://blog.sekiur.com/2008/11/asterisk-success-story/#comments</comments>
		<pubDate>Fri, 14 Nov 2008 19:13:20 +0000</pubDate>
		<dc:creator>Jose Vicente Ortega</dc:creator>
				<category><![CDATA[Technology]]></category>
		<category><![CDATA[asterisk]]></category>
		<category><![CDATA[microsoft]]></category>
		<category><![CDATA[sucess]]></category>
		<category><![CDATA[trixbox]]></category>
		<category><![CDATA[voip]]></category>

		<guid isPermaLink="false">http://blog.sekiur.com/?p=537</guid>
		<description><![CDATA[<p>Just had to pass on what transpired today. I started a Tech Support call to Microsoft Partner Support at 9:05 this morning. The call was initially answered in Redmond by the Partner Group. It was then transferred (via IP) to India for First Level Support &#8211; this lasted for two hours, when it was kicked [...]]]></description>
			<content:encoded><![CDATA[<blockquote><p>Just had to pass on what transpired today. I started a Tech Support call to Microsoft Partner Support at 9:05 this morning. The call was initially answered in Redmond by the Partner Group. It was then transferred (via IP) to India for First Level Support &#8211; this lasted for two hours, when it was kicked up to another level in tech support, and transferred (Again, via IP) to Montreal, CA. After another half hour, I had to attend a meeting, so the call was transferred (in house) to one of my Techs. He stayed on the line for another 1.5 hours, and then transferred the call back to me.</p>
<p><a href="http://blog.sekiur.com/wp-content/uploads/2008/11/sucess.jpg"><img class="aligncenter size-full wp-image-545" title="sucess" src="http://blog.sekiur.com/wp-content/uploads/2008/11/sucess.jpg" alt="" width="425" height="214" /></a></p>
<p>So at this point, I have had a live call that has been bounced over two continents, and in house over three extensions &#8211; this is at the 4-Hour point in the call.</p>
<p>The tech from M$FT then says that he needs a disk placed in the server &#8211; I place him on hold and call my contact, who is not there, so I transfer the call to my cel phone, and jump in the car and drive 15 minutes to the customer site. Stick the disk in, and resume troubleshooting on site and on the Cel, which has the call bridged through our Trixbox and out to my cel phone.</p>
<p>Two hours and 48 minutes later, and the M$FT guy is still not done, and my cell phone is going dead. Remote over to my desk at the office, call one of the people at my office and tell them I am giving them the call back, and to transfer it to a desk phone back where I am. I then bring up Flash Operator Panel, and put the call on his desk.</p>
<p>He then does a screened transfer to me, hits the receptionist at the school I am working at, asks for the server room, and when the phone rings and I answer, releases the call back to me!!!</p>
<p>Now, I am back talking to the M$FT guy, with no interruption WHATSOEVER and the call goes on for another 2 hours and 20 minutes!!!! He finally finishes what he was doing, and I sat back and looked at the statistics for the call:</p>
<p>9 Hours, 10 Minutes and 56 Seconds (I looked in the Log)<br />
Three Locations and Two Continents (On the M$FT side)<br />
Three internal Transfers, Two Offsite Transfers, and one Flash Operator Panel Call retrieval from an offsite location!!!!!!</p>
<p>And at no point did the call quality suffer &#8211; and all of this on a standard production Trixbox system!</p>
<p>Name me a system you could have done this on this easily!!!!</p></blockquote>
<p style="text-align: center;"><script type="text/javascript"><!--
google_ad_client = "pub-3340920433757461";
google_ui_features = "rc:10";
google_ad_width = 468;
google_ad_height = 60;
google_ad_format = "468x60_as";
google_ad_type = "text_image";
google_color_border = "FFFFFF";
google_color_bg = "FFFFFF";
google_color_link = "0000FF";
google_color_text = "000000";
google_color_url = "008000";

//--></script>
<script type="text/javascript" src="http://pagead2.googlesyndication.com/pagead/show_ads.js"></script>
</p>
<p>Source: Trixbox Forums (GSnover)</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.sekiur.com/2008/11/asterisk-success-story/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Outsourcing E-mail</title>
		<link>http://blog.sekiur.com/2008/11/outsourcing-e-mail/</link>
		<comments>http://blog.sekiur.com/2008/11/outsourcing-e-mail/#comments</comments>
		<pubDate>Wed, 12 Nov 2008 18:26:09 +0000</pubDate>
		<dc:creator>Jose Vicente Ortega</dc:creator>
				<category><![CDATA[Technology]]></category>
		<category><![CDATA[e-mail]]></category>
		<category><![CDATA[education]]></category>
		<category><![CDATA[gmail]]></category>
		<category><![CDATA[google]]></category>
		<category><![CDATA[HiEd]]></category>
		<category><![CDATA[higher education]]></category>
		<category><![CDATA[k-12]]></category>
		<category><![CDATA[live]]></category>
		<category><![CDATA[microsoft]]></category>
		<category><![CDATA[outsource]]></category>
		<category><![CDATA[outsourcing]]></category>
		<category><![CDATA[yahoo]]></category>
		<category><![CDATA[zimbra]]></category>

		<guid isPermaLink="false">http://blog.sekiur.com/?p=205</guid>
		<description><![CDATA[<p><a href="http://blog.sekiur.com/wp-content/uploads/2008/11/email-at1.gif"></a>Higher Education and K-12 institutions have always either lead in the IT field with innovative solutions or been way behind in technology to the point of not having any.</p> <p>Open source has always been an option, although generally for the technically inclined but several years ago the big guys (Google and Microsoft), brought hosted [...]]]></description>
			<content:encoded><![CDATA[<p><a href="http://blog.sekiur.com/wp-content/uploads/2008/11/email-at1.gif"><img class="alignleft size-medium wp-image-527" title="email-at1" src="http://blog.sekiur.com/wp-content/uploads/2008/11/email-at1-300x211.gif" alt="" width="300" height="211" /></a>Higher Education and K-12 institutions have always either lead in the IT field with innovative solutions or been way behind in technology to the point of not having any.</p>
<p>Open source has always been an option, although generally for the technically inclined but several years ago the big guys (Google and Microsoft), brought hosted E-mail offerings to the table that would out perform any locally installed solution and without a price tag associated with it.</p>
<p>A new player recently entered the market with their very attractive offering. ZCS from Zimbra.</p>
<blockquote><p><strong>Zimbra Collaboration Suite</strong> (<strong>ZCS</strong>) is a <a class="mw-redirect" title="Groupware" href="http://en.wikipedia.org/wiki/Groupware">groupware</a> product created by Zimbra Inc., located in <a title="San Mateo, California" href="http://en.wikipedia.org/wiki/San_Mateo,_California">San Mateo, California</a>, USA. The company was purchased by <a title="Yahoo!" href="http://en.wikipedia.org/wiki/Yahoo%21">Yahoo!</a> in September 2007.<a class="external autonumber" title="http://www.zimbra.com/about/yahoo_acquires_zimbra.html" rel="nofollow" href="http://www.zimbra.com/about/yahoo_acquires_zimbra.html">[1]</a>. The software consists of both <a title="Client (computing)" href="http://en.wikipedia.org/wiki/Client_%28computing%29">client</a> and <a title="Server (computing)" href="http://en.wikipedia.org/wiki/Server_%28computing%29">server</a> components. Two versions of Zimbra are available: an <a title="Open source" href="http://en.wikipedia.org/wiki/Open_source">open-source</a> version, and a commercially supported version (&#8220;Zimbra Network&#8221;) with <a class="mw-redirect" title="Closed-source" href="http://en.wikipedia.org/wiki/Closed-source">closed-source</a> components. These software versions are available from Zimbra for download and independent use, from Zimbra-authorized partners, and included with service from a Zimbra-authorized hosting provider.</p></blockquote>
<p><strong>So what are the options?</strong></p>
<ol>
<li>Outsource
<ol>
<li>Google Apps for Education</li>
<li>Microsoft&#8217;s Live@edu Service</li>
<li>Zimbra&#8217;s Hosted Collaboration Suite</li>
</ol>
</li>
<li>Maintain/deploy in-house</li>
</ol>
<p>Even thought there are legitimate issues with outsourcing, like privacy of e-mails, loosing control over the capability to access logs in case of an incident and ads displayed to the constituents amongst others; the option to provide this same level of service in-house is not economically feasible.</p>
<p>Lets take a look what these services offer:</p>
<table style="border-collapse: collapse; height: 600px;" border="0" cellspacing="0" cellpadding="0" width="700">
<col style="width: 227pt;" width="303"></col>
<col style="width: 123pt;" width="164"></col>
<col style="width: 182pt;" width="242"></col>
<col style="width: 135pt;" width="180"></col>
<tbody>
<tr style="height: 12.75pt;" height="17">
<td class="xl24" style="height: 12.75pt; width: 227pt;" width="303" height="17"><strong>Features</strong></td>
<td class="xl24" style="width: 123pt;" width="164"><strong>Google Apps</strong></td>
<td class="xl24" style="width: 182pt;" width="242"><strong>Microsoft Live@edu</strong></td>
<td class="xl24" style="width: 135pt;" width="180"><strong>Zimbra</strong></td>
</tr>
<tr style="height: 12.75pt;" height="17">
<td style="height: 12.75pt;" height="17"></td>
<td></td>
<td></td>
<td></td>
</tr>
<tr style="height: 12.75pt;" height="17">
<td style="height: 12.75pt;" height="17">Mailbox size</td>
<td>7.1Gb</td>
<td>10Gb</td>
<td>7Gb</td>
</tr>
<tr style="height: 12.75pt;" height="17">
<td style="height: 12.75pt;" height="17">Attachment size</td>
<td>20Mb</td>
<td>20Mb</td>
<td>25Mb</td>
</tr>
<tr style="height: 12.75pt;" height="17">
<td style="height: 12.75pt;" height="17">Calendar (Private)</td>
<td>Yes</td>
<td>Yes</td>
<td>Yes</td>
</tr>
<tr style="height: 12.75pt;" height="17">
<td style="height: 12.75pt;" height="17">Calendar (Public)</td>
<td>Yes</td>
<td>Yes</td>
<td>No</td>
</tr>
<tr style="height: 12.75pt;" height="17">
<td style="height: 12.75pt;" height="17">CalDav compliant calendaring</td>
<td>Yes</td>
<td>No</td>
<td>Yes</td>
</tr>
<tr style="height: 12.75pt;" height="17">
<td style="height: 12.75pt;" height="17">Docs</td>
<td>Yes</td>
<td>Yes</td>
<td>Yes</td>
</tr>
<tr style="height: 12.75pt;" height="17">
<td style="height: 12.75pt;" height="17">Spreadsheet</td>
<td>Yes</td>
<td>Yes</td>
<td>No</td>
</tr>
<tr style="height: 12.75pt;" height="17">
<td style="height: 12.75pt;" height="17">Presentation</td>
<td>Yes</td>
<td>No</td>
<td>No</td>
</tr>
<tr style="height: 12.75pt;" height="17">
<td style="height: 12.75pt;" height="17">Forms</td>
<td>Yes</td>
<td>No</td>
<td>No</td>
</tr>
<tr style="height: 12.75pt;" height="17">
<td style="height: 12.75pt;" height="17">Messaging/Chat</td>
<td>Yes</td>
<td>No</td>
<td>Yes</td>
</tr>
<tr style="height: 12.75pt;" height="17">
<td style="height: 12.75pt;" height="17">Offline Feature</td>
<td>Yes</td>
<td>No</td>
<td>No</td>
</tr>
<tr style="height: 12.75pt;" height="17">
<td style="height: 12.75pt;" height="17">Workplace</td>
<td>No</td>
<td>Yes</td>
<td>No</td>
</tr>
<tr style="height: 12.75pt;" height="17">
<td style="height: 12.75pt;" height="17">Shared Drive</td>
<td>No</td>
<td>5Gb</td>
<td>No</td>
</tr>
<tr style="height: 12.75pt;" height="17">
<td style="height: 12.75pt;" height="17">SMS Scheduling</td>
<td>Yes</td>
<td>No</td>
<td>No</td>
</tr>
<tr style="height: 12.75pt;" height="17">
<td style="height: 12.75pt;" height="17">SMS Notification</td>
<td>Yes</td>
<td>Yes</td>
<td>No</td>
</tr>
<tr style="height: 12.75pt;" height="17">
<td style="height: 12.75pt;" height="17">POP3</td>
<td>Yes</td>
<td>Yes</td>
<td>Yes</td>
</tr>
<tr style="height: 12.75pt;" height="17">
<td style="height: 12.75pt;" height="17">IMAP</td>
<td>Yes</td>
<td>Yes</td>
<td>Yes</td>
</tr>
<tr style="height: 12.75pt;" height="17">
<td style="height: 12.75pt;" height="17">Access other accounts</td>
<td>Yes</td>
<td>N/A</td>
<td>Yes</td>
</tr>
<tr style="height: 12.75pt;" height="17">
<td style="height: 12.75pt;" height="17">Folders</td>
<td>No</td>
<td>Yes</td>
<td>Yes</td>
</tr>
<tr style="height: 12.75pt;" height="17">
<td style="height: 12.75pt;" height="17">Labels</td>
<td>Yes</td>
<td>No</td>
<td>No</td>
</tr>
<tr style="height: 12.75pt;" height="17">
<td style="height: 12.75pt;" height="17">Threaded conversations</td>
<td>Yes</td>
<td>No</td>
<td>Yes</td>
</tr>
<tr style="height: 12.75pt;" height="17">
<td style="height: 12.75pt;" height="17">Rules and filters</td>
<td>Yes</td>
<td>Yes</td>
<td>Yes</td>
</tr>
<tr style="height: 12.75pt;" height="17">
<td style="height: 12.75pt;" height="17">Built-In protection (Legal)</td>
<td>N/A</td>
<td>Yes</td>
<td>N/A</td>
</tr>
<tr style="height: 12.75pt;" height="17">
<td style="height: 12.75pt;" height="17">Apple Support</td>
<td>Yes</td>
<td>No</td>
<td>No</td>
</tr>
<tr style="height: 12.75pt;" height="17">
<td style="height: 12.75pt;" height="17">Spam Rating</td>
<td class="xl25">10</td>
<td class="xl25">7</td>
<td class="xl25">7</td>
</tr>
<tr style="height: 12.75pt;" height="17">
<td style="height: 12.75pt;" height="17">Integration Rating</td>
<td class="xl25">10</td>
<td class="xl25">7</td>
<td class="xl25">8</td>
</tr>
<tr style="height: 12.75pt;" height="17">
<td style="height: 12.75pt;" height="17">Site Management</td>
<td class="xl25">9</td>
<td class="xl25">8</td>
<td class="xl25">8</td>
</tr>
<tr style="height: 12.75pt;" height="17">
<td style="height: 12.75pt;" height="17">Widgets/Web 2.0 Mash-up framework</td>
<td>Yes</td>
<td>No</td>
<td>Planned</td>
</tr>
<tr style="height: 12.75pt;" height="17">
<td style="height: 12.75pt;" height="17">Mobile Apps (BB, iPhone, etc.)</td>
<td>Yes</td>
<td>No</td>
<td>No</td>
</tr>
<tr style="height: 12.75pt;" height="17">
<td style="height: 12.75pt;" height="17">Data Portability (move you data to   another solution)</td>
<td>Yes</td>
<td>Limited</td>
<td>Yes</td>
</tr>
<tr style="height: 12.75pt;" height="17">
<td style="height: 12.75pt;" height="17">Backups</td>
<td>No</td>
<td>Optional</td>
<td>Optional</td>
</tr>
<tr style="height: 12.75pt;" height="17">
<td style="height: 12.75pt;" height="17">Web Site/Portal</td>
<td>Yes</td>
<td>Yes</td>
<td>No</td>
</tr>
<tr style="height: 12.75pt;" height="17">
<td style="height: 12.75pt;" height="17">University Domain</td>
<td>Yes</td>
<td>Yes</td>
<td>Yes</td>
</tr>
</tbody>
</table>
<p>Microsoft and Google are free provided that they can display ads for alumni and Zimbra costs $2 per year per student.</p>
<p><strong>Resources:</strong></p>
<p><strong>Microsoft Live@edu:</strong></p>
<p>Microsoft Live@edu <a title="Live@edu" href="http://global.msads.net/ads/pronws/education/videos/Overview.wmv" target="_blank">video<br />
</a><a href="https://www.livemeeting.com/cc/mseventsnew/view?id=2932&amp;role=attend&amp;pw=FGF0981" target="_blank">Live@edu with Exchange Labs<br />
</a><a href="https://www.livemeeting.com/cc/mseventsnew/view?id=2878&amp;role=attend&amp;pw=FGF786" target="_blank">Web Collaboration</a><a href="https://www.livemeeting.com/cc/mseventsnew/view?id=2932&amp;role=attend&amp;pw=FGF0981" target="_blank"><br />
</a></p>
<p><strong>Google Apps for Education:</strong></p>
<p>Google Apps <a href="http://www.google.com/a/help/intl/en/edu/customers.html#whygoogleapps" target="_blank">video</a></p>
<p><strong>Zimbra:</strong></p>
<p><a href="http://www.zimbra.com/products/hosted_zimbra/compare.html" target="_self">Compare Hosted EDU Products</a></p>
<p style="text-align: center;"><script type="text/javascript"><!--
google_ad_client = "pub-3340920433757461";
google_ui_features = "rc:10";
google_ad_width = 468;
google_ad_height = 60;
google_ad_format = "468x60_as";
google_ad_type = "text_image";
google_color_border = "FFFFFF";
google_color_bg = "FFFFFF";
google_color_link = "0000FF";
google_color_text = "000000";
google_color_url = "008000";

//--></script>
<script type="text/javascript" src="http://pagead2.googlesyndication.com/pagead/show_ads.js"></script>
</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.sekiur.com/2008/11/outsourcing-e-mail/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
<enclosure url="http://global.msads.net/ads/pronws/education/videos/Overview.wmv" length="29950939" type="video/x-ms-wmv" />
		</item>
	</channel>
</rss>

