<?xml version="1.0" encoding="UTF-8" ?>
<?xml-stylesheet type="text/xsl" href="http://msmvps.com/utility/FeedStylesheets/rss.xsl" media="screen"?><rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:wfw="http://wellformedweb.org/CommentAPI/" xmlns:itunes="http://www.itunes.com/dtds/podcast-1.0.dtd"><channel><title>The perfect gift for Christmas</title><link>http://msmvps.com/blogs/bradley/archive/2004/11/28/21290.aspx</link><description>Want to give the perfect gift for Christmas? XP sp2 that's what. So what are you missing out on if you don't have SP2? You don't have the full protection of group policy features that sp 2 has You don't have the built in IFrame protection and all the</description><dc:language>en</dc:language><generator>CommunityServer 2008.5 SP2 (Build: 40407.4157)</generator><item><title>re: The perfect gift for Christmas</title><link>http://msmvps.com/blogs/bradley/archive/2004/11/28/21290.aspx#75135</link><pubDate>Fri, 11 Nov 2005 01:31:00 GMT</pubDate><guid isPermaLink="false">d67277c4-116b-43f1-b688-e9ef184ea916:75135</guid><dc:creator>bradley</dc:creator><description>The good thing about IE and SP2 is their automatic upgrades as long as you keep in touch things just keep getting better. lets face it the other platforms are just to hard for us simple folk.&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://msmvps.com/aggbug.aspx?PostID=75135" width="1" height="1"&gt;</description></item><item><title>re: The perfect gift for Christmas</title><link>http://msmvps.com/blogs/bradley/archive/2004/11/28/21290.aspx#21334</link><pubDate>Mon, 29 Nov 2004 13:25:00 GMT</pubDate><guid isPermaLink="false">d67277c4-116b-43f1-b688-e9ef184ea916:21334</guid><dc:creator>bradley</dc:creator><description>Messenger service is disabled in Sp2, there are changes to the OS such that IE is not vulnerable to IFrame [and dude, read the Full disclosure listserve ... all browsers are evil and have unpatched vulns]... I have defense in depth because I 'DON'T' just have a firewall on the &amp;quot;outside&amp;quot;, I have it inside as well so I don't have to worry about a SQL slammer anymore on the inside of my network because 1434 is a closed port.&lt;br&gt;&lt;br&gt;If you just depend on the firewall on the outside [insert any flavor of OS] then you are missing where your real attack surfaces are.&lt;br&gt;&lt;br&gt;Sorry but XP is &amp;quot;not&amp;quot; buggy and I pushed out via www.shavlik.com sp2 to all my machines and only hade video card issues with 2.&lt;br&gt;&lt;br&gt;Those same patches in my network took 5 minutes.  www.shavlik.com is free to 1 servers and 10 workstations and patches Windows and Office.  The power of group policy my friend.  If it took you 5 hours, you are stil sneakernetting.&lt;br&gt;&lt;br&gt;Work smarter not harders dude.&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://msmvps.com/aggbug.aspx?PostID=21334" width="1" height="1"&gt;</description></item><item><title>re: The perfect gift for Christmas</title><link>http://msmvps.com/blogs/bradley/archive/2004/11/28/21290.aspx#21298</link><pubDate>Mon, 29 Nov 2004 09:23:00 GMT</pubDate><guid isPermaLink="false">d67277c4-116b-43f1-b688-e9ef184ea916:21298</guid><dc:creator>bradley</dc:creator><description>last post - promise!&lt;br&gt;all my machines use nvidia cards (bar 1 laptop) and i have already experienced &amp;lt;a href=&amp;quot;&lt;a target="_new" href="http://www.spyjournal.biz/techtips/2004/11/directx-9c-problems.html&amp;quot;&amp;gt;issues"&gt;http://www.spyjournal.biz/techtips/2004/11/directx-9c-problems.html&amp;quot;&amp;gt;issues&lt;/a&gt; &amp;lt;/a&amp;gt;with the forced upgrade to directX 9c &lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://msmvps.com/aggbug.aspx?PostID=21298" width="1" height="1"&gt;</description></item><item><title>re: The perfect gift for Christmas</title><link>http://msmvps.com/blogs/bradley/archive/2004/11/28/21290.aspx#21297</link><pubDate>Mon, 29 Nov 2004 09:20:00 GMT</pubDate><guid isPermaLink="false">d67277c4-116b-43f1-b688-e9ef184ea916:21297</guid><dc:creator>bradley</dc:creator><description>oh and i dont use IE except when absolutely bloody necessary because some people cant write w3c compliant websites&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://msmvps.com/aggbug.aspx?PostID=21297" width="1" height="1"&gt;</description></item><item><title>re: The perfect gift for Christmas</title><link>http://msmvps.com/blogs/bradley/archive/2004/11/28/21290.aspx#21296</link><pubDate>Mon, 29 Nov 2004 09:19:00 GMT</pubDate><guid isPermaLink="false">d67277c4-116b-43f1-b688-e9ef184ea916:21296</guid><dc:creator>bradley</dc:creator><description>Thanks susan for the advice&lt;br&gt;i have however got my 6 machines safely running on xp sp1 behind a linux firewall, have no need of group policies and use realvnc to remotely manage my machines.&lt;br&gt;i do a custom install of win xp (removing lookout express windows messenger and other security holes left open such as plug n pray messenger service (See grc.com)&lt;br&gt;i then use the freed cd microsoft sent me to update the pateches as much as possible before turning auto update from the net. (then install nortons and spybot and adaware)&lt;br&gt;total build time is about 4 hours including partitioning and formatting hard drives.&lt;br&gt;i have deliberately run the dont deploy sp2 patch&lt;br&gt;i will probably get around to trying it out on a non critical machine in the xmas break and if it goes painlessly then will attempt the rest.&lt;br&gt;in contrawst to the pain installing xp is linux installs in 30 mintues and is remotely configured ina nother 30 minutes. It is stable, inherently more secure and  free! I pay a professional a nominal fee for his time to mainain it remotely and deploy upgrades as necessary.&lt;br&gt;i cannot afford the cost of shifting to a windows based client server model and the effort to keep a server running windows software (targeted  by hackers) u tpo date constantly.&lt;br&gt;for example the 22 odd critical patches released in sept / oct by ms including patches to office xp and other apps took me a combined 4-5 hours to downloand and deploy just on my workstations. this is just non recoverable time to a small business (but must be done all the same)&lt;br&gt;&lt;br&gt;Not wanting to gripe and don't want this to appear to be a whingefest, but my experience with ms os is that they are inherently buggy and insecure, and do not work conssitently across differnt hardware. hence the reluctance to upgrade to sp2 when even the main MS website recognises it is a difficult thing to install and there will be problems.&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://msmvps.com/aggbug.aspx?PostID=21296" width="1" height="1"&gt;</description></item></channel></rss>