Feeds

* Posts by El Andy

432 posts • joined 7 Jul 2011

Page:

When will Microsoft next run out of US IPv4 addresses for Azure?

El Andy
Bronze badge

Azure is dependent upon IPv4 addresses for external facing, because you cannot talk to IPv4 parts of the internet with only an IPv6 address and, sadly, that's still the vast majority of it. Until people start to take the IPv4 problem seriously, this is going to be increasingly common (as is getting stuck behind double-NAT'd ISP addresses, with all the headaches that causes)

1
0

Alienware says it WILL ship a Steam Machine in 2014 – running Windows

El Andy
Bronze badge

Re: Whats wrong with...

Well for one thing, SteamOS doesn't let you play as many games. Kind of crucial for a games machine.

0
0

Microsoft poised to take Web server crown from Apache

El Andy
Bronze badge

Don't forget that Apache is Windows as well!

You can install WordPress, Magento and even Ghost on Windows just as easily as Linux. So this actually says nothing at all about Linux usage.

4
0

Redmond is patching Windows 8 but NOT Windows 7, say security bods

El Andy
Bronze badge

The way modern Windows development works is that when changed code is checked in it has to meet certain security gateways, which prevent the use of things like older "unsafe" C functions. So if a developer has to do some work in a library to add new functionality, they'll also replace older function calls with their safe replacements at the same time.

That doesn't necessarily equate to the old code path having a definite vulnerability, but does mean that going forward the potential for unnoticed issues should go down. These sort of preventative changes won't necessarily be backported to previous versions though, because there is a higher risk of some weird application compatibility issue that could arise from the change. Once the OS has shipped and people are relying upon the fact their apps work on it, there is a much higher bar to be met to ensure on going compatibility.

0
0

Patch NOW: Six new bugs found in OpenSSL – including spying hole

El Andy
Bronze badge

Re: All this tells me is

@Rick Giles: The OpenSSL guys are now dependent upon handouts from the likes of Microsoft. Hardly "coming of age" is it?

0
2

Rich bitch sorority girls actually more likely to put out than low-class 'sluts': Study

El Andy
Bronze badge
Joke

Is this the result of realising you have to submit a research paper, when you've just spent the afternoon watching Mean Girls instead of doing research?

0
0

New 'Windows-8.1-with-Bing': How's it different from Windows 8.1?

El Andy
Bronze badge

"Come on EU on making Microsoft put a search engine select screen in. Wouldn't that be a kicker? Lower cost version of Windows but the user will get a screen when powering it on for the first time asking what search engine they would like to use."

The EU required changes around search engine defaults were introduced in Vista SP1 and mostly stemmed around third parties being able to completely replace the built in search engine (which, AFAIK, none of them subsequently did). Suggestions that there needed to be any kind of ballot for that were dismissed at the time, so don't hold your breath.

0
0

'Microsoft Research slides' show touch-enabled Office - report

El Andy
Bronze badge

Re: I'm guessing whomever came up with this....

@Steven Raith: Office has supported Ink and touch input for years, but this is about making it work better. If you actually watch the presentation it is very explicitly NOT about replacing the keyboard and mouse, but augmenting them in scenarios where it is suitable to do so.

2
0

Charity: Ta for the free Win 8.1, Microsoft – we'll use it to install Win 7

El Andy
Bronze badge

Re: Two weeks

@keithpeter: http://www.microsoft.com/about/corporatecitizenship/en-us/nonprofits/whos-eligible/

0
1

Cortana, remind me to patch Windows, IE, and Adobe gear next Tues

El Andy
Bronze badge

The IE lifecycle is inherently tied to the version of Windows it is running on (because it's classified as an OS component), so IE anything on XP was and still is out-of-support when that emergency fix was released.

0
0

How Google's Android Silver could become 'Wintel for phones'

El Andy
Bronze badge

Is it just me or does "Silver Standard" kind of sound like the lower quality option?

2
0

Atom, GitHub's code editor based on web tech, goes open source

El Andy
Bronze badge
Joke

"As Emacs and Vim have demonstrated over the past three decades, if you want to build a thriving, long-lasting community around a text editor..."

.. you should probably get out more.

3
0

Apple tips Shiraz down all its techies' throats (that's the rumoured name for OS X 10.10)

El Andy
Bronze badge

Re: Worked great for Windows 8, right?

Apple took out the Apple Menu (which the Windows 95 Start Menu was pretty much based on) in 10.0, the same time they added the dock (a weird Windows taskbar hybrid that didn't settle down to even vaguely consistent for at least three releases) and they seem to change the way Finder works in every version. Not to mention completely reversing mouse scroll direction for no apparent reason.

They're hardly the proponents for keeping things the same you seem to suggest.

3
1

OUCH... right in the Androids! Google hit by another antitrust sueball

El Andy
Bronze badge

To get the Play store you have to default search to Google. Sure OEMs could also bundle another non default search app, but then OEMs were also free to bundle a non default web browser on PCs and that didn't stop Microsoft getting sued. And neither did the existence and continued development of a mainstream competitor, Mac OS, stop them being declared a desktop monopoly.

Google has had this coming for a long time, they're so like 90's Microsoft in their arrogance and general disregard for consumers that it's hard to believe it has taken this long.

0
3

Watch out, Yahoo! EFF looses BADGER on sites that ignore Do Not Track

El Andy
Bronze badge

Re: Well that's all well and good, but...

Don't kid yourself, the ad companies have always wanted DNT to default off and be hard to change so they can claim everyone is opting in. And that includes Google.

4
0

Windows Phone: Just as well Microsoft bought an Android maker, RIGHT?

El Andy
Bronze badge

"If you shop in the Google Play store, and don't side-load apps from random internet websites (after disabling the huge malware warning that Google present you), then you are just fine."

You are aware that numerous apps in the Google Play store have been found to contain malware, right?

http://www.pcworld.com/article/2099421/report-malwareinfected-android-apps-spike-in-the-google-play-store.html

And that is what people mean when they describe Android as having security problems.

4
4

Google's self-driving car breakthrough: Stop sign no longer a problem

El Andy
Bronze badge
Joke

Re: But I wonder

Where I grew up we couldn't afford soccer balls and had to run out into the road to fetch our plastic bags instead. Casualties were high....

4
0

Friends don't let friends use Internet Explorer – advice from US, UK, EU

El Andy
Bronze badge

Re: So is XP OK?

XP is mentioned because it's no longer supported, same reason it doesn't mention whether Windows 2000 is vulnerable. It's a reasonably safe bet however, given that Server 2003 is vulnerable, that XP is also vulnerable.

0
0

Microsoft reissues Windows 8.1 Update for enterprise customers

El Andy
Bronze badge

Re: Well that's all well and good, but...

Typically with major updates like Service Packs and IE versions they'll roll them out as optional for everyone then gradually move them over to automatic installs in a staged process so as not to overload the servers and to give them a way out of issues start to arise.

1
0

Revoke, reissue, invalidate: Stat! Security bods scramble to plug up Heartbleed

El Andy
Bronze badge

It's not TDD they've used, which could easily be lacking. It's a formal mathematical proof, which is a lot harder to do, but a solid guarantee that it works. I would suspect the F# code isn't necessarily that performant, but that's a better problem to need to solve, IMO.

0
0
El Andy
Bronze badge

This highlights two issues with Open Source software

1) The whole "many eyes" things is just a complete myth. And worryingly the sheer belief that code is somehow under constant auditing is making developers complacent.

2) Because the nature of O.S. code is to share widely, vulnerable code can end up in lots of places and actually tracking them all down becomes a lot harder. We really need automated tools to scan open source codebases to find places where bits of open ssl code might well have ended up copy-pasted.

The real take away though is how poor the overall quality of a lot of security critical code is becoming these days. I notice that Microsoft have a TLS reference implementation written in F# that has been mathematically verified. Maybe applying formal proofs to key open source codebases, such as OpenSSL, is what really needs to start happening. As well as not using languages like C for this sort of thing, which we all know just carry far too many risks of introducing subtle bugs.

0
1

Uh oh! Here comes the first bug in the Windows 8.1 Update

El Andy
Bronze badge

Re: Not just enterprise customers

Why is your friend using WSUS with Windows 8 Home. I mean i assume he must be since that's not only the only way he could possibly be affected by this bug, but also the only way he could have noticed that the client had stopped reporting in to WSUS.

1
1

Not just websites hit by OpenSSL's Heartbleed – PCs, phones and more under threat

El Andy
Bronze badge

Not all clients are browers

There are a whole bunch of client applications out there that aren't web browsers. So the browser you're using might not be vulnerable, but the mail client, IM client, game with internet connectivity etc might well be exploitable. And unless you're prepared and able to check that every one has no OpenSSL dependency (or if it has, that it's been fixed), knowing that you're vulnerable is actually quite hard.

Still, can we at least declare this the end of the nonsensical "many eyes make all bugs shallow" meme that FOSS advocates have been touting for years?

4
1

Win XP usage down but not out as support cutoff deadline looms

El Andy
Bronze badge

Re: MIcrosoft+Evil Greed

@Nigel 11:"Are similar deals in place with other governments and huge customers? "

Yes. In fact anyone can buy additional support and the bigger you are, the more clout you'll have to negotiate a bigger discount too.

2
0

Windows Phone 8.1: Like WinPho 8, but BETTER

El Andy
Bronze badge

Re: Free?

@Ledswinger: "Bur Microsoft, make money from "free"? How?"

From apps sold in the Store, Xbox Music etc. Not to mention sales of full Windows 8 devices, given the whole Universal Apps thing.

0
0

Microsoft in OPEN-SOURCE .Net love-in with new foundation

El Andy
Bronze badge

@Lapun Mankimasta: "I'd still like to see Microsoft release most of its obsolete OSes and software development environments and productivity software under the GPL v3"

Even if they wanted to, they couldn't, because the GPLv3 places a number of restrictions on what you can do in source code that are incompatible with existing software bases.

4
1

Back off, Siri! Microsoft debuts Halo beauty Cortana

El Andy
Bronze badge

Re: Microsoft FAIL

Um, you may have missed it but Siri also uses Bing. HTH.

1
1

How Microsoft can keep Win XP alive – and WHY: A real-world example

El Andy
Bronze badge

It's not just Microsoft who end up supporting XP

As a third party software developer, customers running XP is an additional expense for us. It means extra testing, having to find workarounds for APIs and technologies not supported by XP and adds a significant extra cost to doing business. However we can't really do much about that whilst Microsoft holds back the industry by propping up customers running an old PS. We essentially have to support XP at least as long as Microsoft do (and probably about a year or so later)

It's time has passed. Move on and let the world get better for it.

2
5

Microsoft issues less-than-helpful tips to XP holdouts

El Andy
Bronze badge

Re: Linux?

@Mark Simon: "Linux, on the other hand, powers the majority of web servers and routers, which is why the Web is still working. Definitely worth targeting, I should have thought."

There are plenty of compromised Linux webservers on the internet.

3
11
El Andy
Bronze badge

Re: Linux? @AC

@rm -rf/

"Linux does not log you in as root, which effectively is what Windows does by setting you up by default as administrator rather than a standard user."

For one thing, modern versions of Windows don't even act as "root" when you are logged in with an Administrator account, everything you run runs as a standard user unless you elect to do otherwise via a UAC prompt.

Furthermore, the issue most people actually face isn't "running as root". If you have a computer with a single user account, being root isn't really a big advantage. Most malware is perfectly capable of stealing data and doing whatever it feels like under a standard user account. And, for the record, Linux isn't really much better at protecting a user from applications/scripts they choose to run under their account, although it does make doing so marginally more difficult (which is akin to security through obscurity)

"And another windows howler is that it allows you to download and run an exe while in guest mode."

And Linux allows anyone to chmod +x anything in their home directory and run it. Your point is?

6
19

This changes everything: Microsoft slips WinXP holdouts $100 to buy new Windows 8 PCs

El Andy
Bronze badge

Re: More effective.

@Vociferous: "I don't understand why Microsoft isn't offering a special "Upgrade From XP" version of Windows 8, with an instance of XP running in a secured hyper-v virtual machine."

They did that for Windows 7 (so called XP Mode), if the XP users didn't migrate then, why would they now?

2
0

Win XP holdouts storm eBay and licence brokers, hiss: Give us all your Windows 7

El Andy
Bronze badge

Re: Maybe I'm missing something here...

@AC: "At the customer where this plant is operating a lot of the staff use Windows 8 displaying on 23in+ monitors. These are all recent graduates with 20/20 (or as near as) vision yet they insist in opening everything full screen. If gets really tedious to have to switch through 10+ apps to get to something that you want to refer to in another window when running decently sized windows (i.e. not full screen), for example a PDF manual. The moan like hell if they leave me alone at one of their desktop because I'll usually leave it with most of their full screen apps decently sized."

So Windows 8 is crap because it opens apps full screen, which the staff at the company all seem to prefer? Do you even realise how dumb that sounds?

In my experience, most non technical people use their computers with apps maximised. They always have done and generally always will. And I don't believe apps being full screen is nearly as problematic for the average user and some of the other interface changes have proven to be, despite what some of the internet rants would have you believe.

0
0
El Andy
Bronze badge

Re: Viruses and malware

@Hairy Spod: "Fact of the matter is that the UI used by XP and many of the non Unity/Gnome3 Linux desktop environments are pretty much close to the optimal"

That's what people used to say about DOS. And then Windows 3....

0
3

Microsoft to push out penultimate XP patch on March Patch Tuesday

El Andy
Bronze badge

Re: Is it done?

"Does this fix it? Is XP now of merchantable quality, after more than a decade of fixes?"

Security is a journey, not a destination, regardless of which OS you use.

1
0
El Andy
Bronze badge

Re: Critical Internet Explorer vulnerability ..

Notepad could be uninstalled easily from XP. Internet Explorer, on the other hand...

Mostly because the Add/Remove Programs dialog box (amongst other things) is actually written in HTML on XP and rendered using IE.

1
1

Fee fie Firefox: Mozilla's lawyers probe Dell over browser install charge

El Andy
Bronze badge

Re: Mozillidiots

@AC: "Their Firefox trademark is not free and they can choose to do what they want with it, charges or distribution."

Irrelevant. Trademark protection doesn't work like that, you can't just add arbitrary rules and assume they're legal requirements. In exactly the same way Coca-Cola can't insist that shopkeepers selling their product have to paint the walls blue.

3
0

Windows 8.1 becomes world's fourth-most-popular desktop OS

El Andy
Bronze badge

Re: MS took that to heart and people still complain.

Because most of XPs problems stem from user mode and not the kernel (specifically the fact that, by default, users run with unrestricted Administrator tokens which bypass much of the OS security) and that's where many of the changes in Vista and beyond were.

It gets worse post-EOL, because an unpatched OS is always vulnerable to whatever the patch was for, regardless of how "secure" it is otherwise.

1
0

UK picks Open Document Format for all government files

El Andy
Bronze badge

Re: Important change

Except that ODF has always been vague on numerous parts of the specification, leading to the exciting prospect of "standards compliant" documents that can only be reliably opened in whatever version of whatever software originally created them.

Yay?

0
7

Fine! We'll keep updating WinXP's malware sniffer after April, says Microsoft

El Andy
Bronze badge

Re: Will XP really "never be updated"?

Experience shows that the companies paying thousands of dollars for Microsoft to hotfix issues after extended support don't tend to leak them (try finding one for NT4 or Windows 2000 for example, it just doesn't happen). And they will only be paying for specific fixes to specific issues they encounter, not necessarily everything if they can mitigate it in other ways.

Remember, everyone said *exactly* the same thing about NT4 which loads of businesses were running past the end of support, often because they were assuming the same thing you are - that Microsoft would somehow have a last minute change of heart and extend support further. And Microsoft duly stopped providing updates, exactly as had always been claimed.

If you're running XP past the first patch Tuesday after EOL, I really hope you have it very much isolated from the internet, because it's going to be open season.

0
4

Italy's 'Google tax law' could fall foul of EU discrimination rules

El Andy
Bronze badge

Re: Hmm

"Even if it were not found illegal under EU law (as I've been predicting it would be) all Google would need to do is appoint an agent in Rome, give him a 0.5% margin on all sales and still send all the cash to Ireland."

The way these avoidance scams work at the moment is that an Italian company, wanting to advertise on Italian websites go speak to an agent of Google in Italy. That agent negotiates prices etc and then, for no logical reason, the "sale" is completed in Ireland by someone the Italian company have probably never dealt with in any way shape or form, and Google get to pay Irish tax only.

What this law is, rather clumsily, attempting to do is force that final step to count as a sale in Italy - which 99% of people would probably agree it should be - and thus be subject to Italian taxation. This way big multinationals have to compete on a level playing field with smaller local companies who aren't in a position to play the system in the same way.

This particular implementation may be wrong and almost certainly tramples over a bunch of EU rules, but it's hard to disagree with the principles behind it, that companies should be subject to the tax laws in the countries they do business and not be able to simply divert profits to anywhere they like without consequence.

1
1

Microsoft now using next-gen Roslyn C#, Visual Basic compilers in house

El Andy
Bronze badge

Of course it did, things like that end up being awfully bloated and slow with pretty much any kind of framework - because it isn't the kind of thing the framework is built to support. For more realistic apps, the difference drops significantly.

But since Rosyln can compile C# right down to native code (even as far as stripping out dependencies on the .NET framework libraries) and does things like whole program optimization (something the existing JIT compilers don't), you may well find it reduces your "Hello World" to something surprisingly small.

0
0

No anon pr0n for you: BT's network-level 'smut' filters will catch proxy servers too

El Andy
Bronze badge
Joke

Re: Censorship is alive and well in Britian

"What will be blocked next?"

Any site carrying Nickleback music?

Well someone has got to hope for a silver lining to this cloud....

5
2

Microsoft's licence riddles give Linux and pals a free ride to virtual domination

El Andy
Bronze badge

Microsoft's VDI licensing is unbelievably complex and has a tendency to eradicate the cost savings that VDI is supposed to bring. Straight up server virtualisation, on the other hand, is relatively simple and hardly the realm of rocket science. And Hyper-V is largely covered by licensing the OS itself, as well as offering the benefits of sliding straight into an existing management structure,

If you're looking for the utterly retarded end of virtualisation licensing, look no further than VMWare, where it actually gets more expensive the more densely you consolidate VMs. On what planet is that still a sane choice?

0
1

Julie Larson-Green: Yes, MICROSOFT is going to KILL WINDOWS

El Andy
Bronze badge

Re: Moronic Idiocy

@Darryl: "Actually, the kernels are called NT and CE"

Actually the kernel (singular) is called NT. CE is an ex-OS, it's dead, it is pushing up the proverbial daisies.

As to all this "Microsoft is losing it's way, merging OSs is crazy" talk, those of us old enough to remember the comments when NT first came to light have seen this all before. The haters weren't right then either.

2
4

Firefox reveals new look: rounded rectangles

El Andy
Bronze badge

IE's autozoom is based on your display's DPI setting. So you can make it default to 100% by setting your DPI accordingly.

1
0

Google WILL wriggle away from Euro probe... but THEN what?

El Andy
Bronze badge

Re: Is it just me?

And I don't want Opera to appear in the Browser Ballot on Windows, but that's not the way the choice works (nor should it be).

I don't see why the EU can't apply *exactly* the same rules as they're applying to Windows. Namely that, provided sufficient criteria are matched for inclusion, each vertical provider (including Google) must be given equal prominence in a random ordering.

Why isn't what is "good enough" for Microsoft, good enough for Google?

1
2

FREEZE, GLASSHOLE! California cops bust Google Glass driver

El Andy
Bronze badge

Re: Two things...

The HUD in a car has already passed various industry safety tests, a third party add-on like Google Glass hasn't. And likely never would given it's ability to display "information" other than what a driver needs

2
1

Google tired of endless AGONY over alleged EU search biz abuse

El Andy
Bronze badge

Because Google Maps are great and one of the top brands.

Now try with "car insurance", not something Google are renowned for and yet their "sponsored" result for their comparison service comes top of the list, above big names like MoneySupermarket, Compare The Market etc.

It even lets you start a quote in the results page.

This is what people are complaining about. Not that Google are successful. Nor that Google services should always be secondary.

0
0
El Andy
Bronze badge

Re: Yawn.....

*sigh* You're missing the point.

Imagine you sell widgets, they're really popular and after lots of time, effort and money you've got the start of a thriving business online. You're #1 in Google search and more people are finding your site every day.

Then Google decide they want a piece of that action. They start selling widgets and your page suddenly languishes on Page 195 of Google's results. No more customers come your way. Even old customers who go searching for widgets just see that your page has disappeared, assume you've gone bust and buy from Google instead.

That's an *enormous* amount of power and it's incredibly hard to argue that Google does not have the power to wield it, should they so choose. Now, as it stands today I doubt they've *explicitly* set out to do exactly that (arguably some PageRank changes were designed to push competitors rankings down) but they're certainly using their position to promote their own services way above anything else.

Google is really the ideal example of where splitting the business off is the only real way to prevent abuse. Put the "search" business into a separate company, funded purely by ad sales and force every other service to buy ads in a way consistent with any other company. If those services really are the best, it won't affect them at all.

1
0

Want to keep the users happy? Don't call them users for a start

El Andy
Bronze badge

Re: Do not trust but don't dismiss either

I think "Never trust the user" is more in the context of "Don't trust the user's description of a problem" rather than assume they're outright lying. So when they say "My PC isn't getting email", the problem may just as likely be "Nobody in the office has any networking at all". Without being intentionally misleading, they often describe only part of a symptom and could send you off on a wild goose chase.

Of course there are certain questions that you can absolutely guarantee users will lie about, "Have you changed anything recently?" and "Have you checked it's plugged in?" are classic examples because nobody wants to think they broke something or that they've asked a dumb question. That's why good IT folk sometimes suggest "remove the plug, waiting a few seconds, then plug it back in" - because 99% of the time that's the moment when the user spots their mistake but allows them to resolve the issue without seeming foolish.

5
0

Page: