<?xml version='1.0' encoding='UTF-8'?><?xml-stylesheet href="http://www.blogger.com/styles/atom.css" type="text/css"?><feed xmlns='http://www.w3.org/2005/Atom' xmlns:openSearch='http://a9.com/-/spec/opensearchrss/1.0/' xmlns:georss='http://www.georss.org/georss' xmlns:gd='http://schemas.google.com/g/2005' xmlns:thr='http://purl.org/syndication/thread/1.0'><id>tag:blogger.com,1999:blog-8233773231533010691</id><updated>2011-04-21T14:05:57.413-07:00</updated><title type='text'>Eddie Aronovich blog</title><subtitle type='html'>Technological Blog about IT, IT management, Privacy, Grid, Security, networking and so on.....
טכנולוגיית גריד, מידע, אבטחת מידע (בעיקר נושאי פרטיות) ועוד ככל שיותר לי הזמן</subtitle><link rel='http://schemas.google.com/g/2005#feed' type='application/atom+xml' href='http://earonovich.blogspot.com/feeds/posts/default'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8233773231533010691/posts/default?max-results=100'/><link rel='alternate' type='text/html' href='http://earonovich.blogspot.com/'/><link rel='hub' href='http://pubsubhubbub.appspot.com/'/><author><name>Eddie Aronovch</name><uri>http://www.blogger.com/profile/02836945712863635077</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><generator version='7.00' uri='http://www.blogger.com'>Blogger</generator><openSearch:totalResults>10</openSearch:totalResults><openSearch:startIndex>1</openSearch:startIndex><openSearch:itemsPerPage>100</openSearch:itemsPerPage><entry><id>tag:blogger.com,1999:blog-8233773231533010691.post-4820291511173305855</id><published>2009-05-25T11:35:00.000-07:00</published><updated>2009-05-25T13:06:38.191-07:00</updated><title type='text'>From the bazaar to the online shop</title><content type='html'>One of the open source pillars is the Cathedral and the Bazaar by Eric Raymond. I do believe the open source is one of the best models for software development.&lt;br /&gt;&lt;br /&gt;Now, 12 years later is is still relevant ?&lt;br /&gt;&lt;br /&gt;In one word the answer is "yes" and obviously the long answer is "yes but in an other way". The "services" instead of software, makes some of the open source basics irrelevant.&lt;br /&gt;&lt;br /&gt;On one hand, the services are the ultimate stands in the Internet bazaar. You can use it, add capabilities and services, but usually one can not modify them or really see how they work. In this case you do not purchase a product, but hire a service.&lt;br /&gt;&lt;br /&gt;If a service is good it would attract many users and will either survive or some derivative will be implemented that will survive or will be improved later. If it is not of interest or badly applied, it will remain useless and be abandoned with time.&lt;br /&gt;&lt;br /&gt;Will the X in XaaS will make the open source ex ?&lt;br /&gt;Only time will tell.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8233773231533010691-4820291511173305855?l=earonovich.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://earonovich.blogspot.com/feeds/4820291511173305855/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8233773231533010691&amp;postID=4820291511173305855' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8233773231533010691/posts/default/4820291511173305855'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8233773231533010691/posts/default/4820291511173305855'/><link rel='alternate' type='text/html' href='http://earonovich.blogspot.com/2009/05/from-bazaar-to-online-shop.html' title='From the bazaar to the online shop'/><author><name>Eddie Aronovch</name><uri>http://www.blogger.com/profile/02836945712863635077</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8233773231533010691.post-7463271251575028048</id><published>2009-03-28T05:15:00.000-07:00</published><updated>2009-04-01T13:16:15.582-07:00</updated><title type='text'>The new trends in IT for the recession</title><content type='html'>&lt;div style="text-align: center;"&gt;Clearly recession is the time when changes are needed and there is higher probability that th change will happen. Obviously, the first driver is the need to cut expenses, however, there are additional aspects that need to be seen. The IT passed several recession periods and after all of them new technologies appeared. It will probably happen again, but only afterwards one can point out the successful new technologies that appeared.&lt;br /&gt;&lt;/div&gt;&lt;br /&gt;In this post, I would like to point some of the that I think will be strengthen during the current recession.&lt;br /&gt;&lt;br /&gt;Focusing on business targets - The IT looks like it has its own life. I have the feeling that technological companies develop new technologies and then look for needs. This is why probably some CFO's have feeling that the IT is unavoidable expenses rather than good investment.&lt;br /&gt;&lt;br /&gt;Switching from capabilities to services - Most of the products today are services. If you can charge back-to-back for what it costs you that is the best model.&lt;br /&gt;&lt;br /&gt;Change the IT into self sustained unit - At some point, the IT will have to get its budget (or at least most of it) from other units of the organization or the clients. Some of the services are already build that way, e.g. banking transactions in which the IT can calculate the cost of each transaction. More challenging and therefore later will be tasks like internal systems where the costs are hard to be estimated like applying CRM or ERP systems where the benefit is for all, but who should pay for it. One option is to offshore or outsource this operation and there the cost is clear and the boundaries are well defined. In this case, the management will decide where the budget will come from which is more or less the same.&lt;br /&gt;&lt;br /&gt;Offshoring and Outsourcing - This is an ongoing trend for more than a decade and will keep going. There are many benefits like having a small company, focusing, etc. The only drawback that I can see is the fact that some of the knowledge and capabilities are taken out of the company. It is bad, but so many information leaks that it becomes almost impossible to deal with it. If you can not trust your supplier - do not do it !&lt;br /&gt;&lt;br /&gt;Last issue that I want to bring up is the service level from enterprise. Some companies give just lousy service ! It makes the operation miserable and poeple that work on it un-happy. So consider to give your feedbacks for you, your family and your co-workers.&lt;br /&gt;&lt;br /&gt;Eddie&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8233773231533010691-7463271251575028048?l=earonovich.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://earonovich.blogspot.com/feeds/7463271251575028048/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8233773231533010691&amp;postID=7463271251575028048' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8233773231533010691/posts/default/7463271251575028048'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8233773231533010691/posts/default/7463271251575028048'/><link rel='alternate' type='text/html' href='http://earonovich.blogspot.com/2009/03/new-trends-in-it-for-recession.html' title='The new trends in IT for the recession'/><author><name>Eddie Aronovch</name><uri>http://www.blogger.com/profile/02836945712863635077</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8233773231533010691.post-8357158643089798729</id><published>2008-12-21T13:24:00.000-08:00</published><updated>2008-12-21T14:33:35.101-08:00</updated><title type='text'>Cloud - What is new, what is old and what is buzz</title><content type='html'>Cloud computing appeared in the mid of 2007 according to &lt;a href="http://www.google.com/trends?q=cloud+computing%2C+grid+computing&amp;amp;ctab=0&amp;amp;geo=all&amp;amp;date=all&amp;amp;sort=0"&gt;Google trends&lt;/a&gt;, which obviously is not the pure truth, but we can pretty much agree that during first half of 2007 the term started to be known.&lt;br /&gt;Cloud computing is the name of very old technology that allows getting services from a remote c0mputing centers. In the 60's the computers were attached with punch cards, cards readers and large rooms full of computers, while now it is virtual machine based operation.&lt;br /&gt;&lt;br /&gt;Two ideas are new after all and should pretty much be taken in account:&lt;br /&gt;- X-As-A-Service Users need services - So companies should offer the users services and not software. In most of fields we use services while in computers (due to some unclear reason), companies offer software. You do not ask a GSM software for your cellular and you should neither ask for word processor software. You might need a word processor - that is fine, but users do not need the software, but its functionality. X can be one or more of the following: software, platform, infrastructure, operation, etc. that is given as a service.&lt;br /&gt;&lt;br /&gt;- Decoupling between business and IT. This is (IMHO) the biggest change since the appearance of the PC. Companies should no longer look at the IT as wired department that do "some computer work that only they understand". The IT will have to look around and see how it can contribute to the business of the company.&lt;br /&gt;&lt;br /&gt;Approx 2 month ago, I asked on LinkedIn &lt;a href="http://www.linkedin.com/answers/management/planning/MGM_PLN/333783-579197"&gt;What is the "right" place of the IT in an organization&lt;/a&gt; ?  I wanted to get an estimation of how people see the IT now in order to compare it in the future. All the replies talk about the IT as very distanced from the business. This will change in the era of "cloud computing". If a company uses SaaS or PaaS, the IT will have to invent new roles and get into other business. More of the same is not an option. Given that most of the software can already be used on the net as Office (e.g. &lt;a href="http://docs.google.com"&gt;google docs&lt;/a&gt;), CRM (&lt;a href="http://salesforce.com"&gt;sales.com&lt;/a&gt;) and many others, obsoletes the routine installation and upgrade process that some IT departments spend most of the time on updates and alike.&lt;br /&gt;On one hand, the IT workers are skillful in implementing the same routine again and again and they will have to adapt to the new era. This time each IT worker will be required to have some understanging of the business they work for. If an IT worker in a bank will not be a mini-banker, his contribution to the organization will be less efficient.&lt;br /&gt;&lt;br /&gt;Not everything can be moved to cloud. I some cases it is due to technical problems (as the organizations can not allow all their information to be external) and in some cases the IT workers will make huge efforts to prevent it. In either cases, this cloud buzz will force them to learn new practicies. In the future, it might happen that someone will suggest to move the main compute power from the serivce centers to the users. It will not be a desktop but rahter some lite weight device (maybe the cellular successor) and the computers marker will continue to make money out of those transitions.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8233773231533010691-8357158643089798729?l=earonovich.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://earonovich.blogspot.com/feeds/8357158643089798729/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8233773231533010691&amp;postID=8357158643089798729' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8233773231533010691/posts/default/8357158643089798729'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8233773231533010691/posts/default/8357158643089798729'/><link rel='alternate' type='text/html' href='http://earonovich.blogspot.com/2008/12/cloud-what-is-new-what-is-old-and-what.html' title='Cloud - What is new, what is old and what is buzz'/><author><name>Eddie Aronovch</name><uri>http://www.blogger.com/profile/02836945712863635077</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8233773231533010691.post-974024531580295645</id><published>2008-07-22T13:19:00.000-07:00</published><updated>2008-07-22T14:25:59.961-07:00</updated><title type='text'>What missing in the gird world ?  - Applications!</title><content type='html'>If one wonders why the grid is not widely used,  the answer is trivial -    A p p l i c a t i o n s!&lt;br /&gt;Obvious - not ?&lt;br /&gt;&lt;br /&gt;Well not so obvious. There are many other issues that cause the application to be not present.&lt;br /&gt;&lt;br /&gt;First is the parallel thinking, most of us think serial, or at least not really parallel. It causes both, the application development and the user understanding more complicated. So it should be covered with a lot of abstraction layers that will give good feelig for the user.&lt;br /&gt;&lt;br /&gt;Developers, QA, trainers, etc. need to change the way they think. It is not easy to make this major change mainly since there is no methodologies and best practices. The lack of tools can be seen as great opportunity. There is much knowledge in this area, but it is concentrated within the universities and research institutes. Those organizaitons do not understand the industry needs nor the business models.&lt;br /&gt;&lt;br /&gt;What about the need?&lt;br /&gt;It is clear that more compute power can be used and contribute to any company, on the other side it is not clear what is the marginal contrubution. The right question qould be not what we gain from doing it but rather what we loose if we do not do it. That is the exact problem of the grid applications. There are many killer apps, but none of them was found yet....&lt;br /&gt;&lt;br /&gt;Developing the business model for grid application will probably make a difference. In the past, search engines did not had a common incoming model. Then came Google and the rest is history. SaaS, cloud, etc. are nice ideas, but they are not the business model that you will crash on.&lt;br /&gt;&lt;br /&gt;We wait very much for the Google of the Grid world.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8233773231533010691-974024531580295645?l=earonovich.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://earonovich.blogspot.com/feeds/974024531580295645/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8233773231533010691&amp;postID=974024531580295645' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8233773231533010691/posts/default/974024531580295645'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8233773231533010691/posts/default/974024531580295645'/><link rel='alternate' type='text/html' href='http://earonovich.blogspot.com/2008/07/what-missing-in-gird-world-applications.html' title='What missing in the gird world ?  - Applications!'/><author><name>Eddie Aronovch</name><uri>http://www.blogger.com/profile/02836945712863635077</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8233773231533010691.post-2571269389971305905</id><published>2008-07-04T15:06:00.000-07:00</published><updated>2008-07-06T09:05:02.451-07:00</updated><title type='text'>Middle-ware - the glue between companies</title><content type='html'>Now it is clear, the computer resources are relatively cheap when using it as part of the Terra-computing. If Amazon can offer storage and CPU time lower then the cost of disks and retail computer price while it includes installation and maintenance (for storage it probalby includes backup too), the "Cloud computing" is here.&lt;br /&gt;&lt;br /&gt;This architecture changes some of the concepts as can be see &lt;a href="http://earonovich.blogspot.com/2007/12/how-to-count-computers-or-what-is.html"&gt;here&lt;/a&gt;. This time, I want to focus on the meaning of the "middleware" and its role in this environment. According to &lt;a href="http://en.wikipedia.org/wiki/Middleware"&gt;Wikipedia&lt;/a&gt;, it can be seen as "services that allow multiple processes running on one or more machines to interact across a network". So in this case the middleware will connect between resources that are located in different autonomous systems. Wait a moment....that is one of the &lt;a href="http://www.globus.org/alliance/publications/papers/ogsa.pdf"&gt;grid definitions&lt;/a&gt;. So do we expect the middleware to connect storage from &lt;a href="http://www.amazon.com/gp/browse.html?node=16427261"&gt;S3 at Amazon&lt;/a&gt; with &lt;a href="http://code.google.com/appengine/"&gt;Google-App-Engine&lt;/a&gt; ?&lt;br /&gt;&lt;br /&gt;It is simple - YES !&lt;br /&gt;&lt;br /&gt;The middleware would need to allow creating collaboration over outsourced resources! In the future we might see the cloud computer providers as telephone companies. Huge companies that offer services cheap. But still the middleware will create different clouds for the programmers and will allow focusing on the business intelligence rather than on the maintenance. &lt;br /&gt;&lt;br /&gt;Will it be free ? - I hope not always!&lt;br /&gt;&lt;br /&gt;Since the commercial companies (and other users) might need a legal contract (that states privacy), this service should not be always free. On the other hand, and as always, new models will come up. Today the most ubiquitous model includes commercials. As in Hotmail. Gmail. etc. - you do not pay money, but you see our commercials. IMHO more models would be seen.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8233773231533010691-2571269389971305905?l=earonovich.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://earonovich.blogspot.com/feeds/2571269389971305905/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8233773231533010691&amp;postID=2571269389971305905' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8233773231533010691/posts/default/2571269389971305905'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8233773231533010691/posts/default/2571269389971305905'/><link rel='alternate' type='text/html' href='http://earonovich.blogspot.com/2008/07/middle-ware-glue-between-companies.html' title='Middle-ware - the glue between companies'/><author><name>Eddie Aronovch</name><uri>http://www.blogger.com/profile/02836945712863635077</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8233773231533010691.post-7183462859952609986</id><published>2007-12-24T09:12:00.000-08:00</published><updated>2007-12-24T10:08:33.741-08:00</updated><title type='text'>How to count computers (or what is a modern computer) ?</title><content type='html'>This emerging technology that is called Grid Computing allows (as I mentioned before) anyone to call his computer(s) grid. No one is restricted, in naming (thanks god), but it is confusing. "What do you mean when you say GRID?"&lt;br /&gt;&lt;br /&gt;A lot of Grid projects and software exists. Some of it SOA based and some not. This industry gives jobs to a lot of people, so it is probably a good thing. If grid is the up-to-date version of the MF computer, then Greg Matter was right - &lt;a href="http://blogs.sun.com/Gregp/entry/the_world_needs_only_five"&gt;&lt;b&gt;THE WORLD NEEDS ONLY FIVE COMPUTERS&lt;/b&gt;&lt;/a&gt; but somehow, I feel there are other ways to see things. If the famous Alice and Bob have an apple each they one can say "they have 2 apples", but one can imagine 3 groups that each one has apples:&lt;br /&gt;(1) Alice&lt;br /&gt;(2) Bob&lt;br /&gt;(3) "Alice and Bob".&lt;br /&gt;This example can be presented "intro to combinatorics" under grad course.&lt;br /&gt;&lt;br /&gt;Since each computer can be used for different tasks at the same time, it can be certainly be used for different projects. And if one can use the same computers for several tasks, the computer will be counted in several different projects. So the same as when we counted apples. There are as many as the number of sub-gorups and the same goes for computers.&lt;br /&gt;&lt;br /&gt;Long time ago computers had CPU(s), memory and peripherals. A modern computer is composed of network and interaction device (keyboard, mouse, screen). Thats it !&lt;br /&gt;&lt;br /&gt;The processor, memory, storage are not part of the  modern computer. Neither are the applications, and the peripherals. They or their functionality can be found out there. Most of the resources are free but cost a lot (I will explain it later). Network, applications, compute power and storage can be found for free by resource providers. "blogger.com" is an example of application provider and so does second life (that offers interactive TV for the first time in history). One can broadcast to (almost) all the world (NBC, BBC, CNN - be aware!). And the same when my computer is connected to youtube, I am part of the international cross boundary cinema.&lt;br /&gt;&lt;br /&gt;"But waht about business - they keep their computers restricted. You can never know what happens inside..." - Wrong again. When your application, calls Amazon to order books and software, they do some work for you.&lt;br /&gt;As a matter of fact, Grid and SOA is all about outsource your IT !&lt;br /&gt;&lt;br /&gt;"Does it mean fire my IT people in the long run ?" - Not at all. They will work on a different environment and provide different services. Any internet shop runs on part of Amazon, Google, Yahoo, etc. The business process (at last) is the main issue of the IT. No more self sustained systems.&lt;br /&gt;&lt;br /&gt;So how much it costs ?&lt;br /&gt;It costs in privacy! Visa probably knows better than the CEO of Internet based company how looks their cache flow! So does your telephony, electricity companies and your ISP. The post office and shipping companies knows almost everything about your business activity if you sell goods. They know when your business becomes bigger, when you have trouble, they even know when your company is on vacation (and only a few people left).&lt;br /&gt;&lt;br /&gt;So we pay with privacy to have an unlimited compute power, storage, network, etc. and have almost infinite computers to run your small business on.&lt;br /&gt;&lt;br /&gt;Is it for real ?&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8233773231533010691-7183462859952609986?l=earonovich.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://earonovich.blogspot.com/feeds/7183462859952609986/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8233773231533010691&amp;postID=7183462859952609986' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8233773231533010691/posts/default/7183462859952609986'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8233773231533010691/posts/default/7183462859952609986'/><link rel='alternate' type='text/html' href='http://earonovich.blogspot.com/2007/12/how-to-count-computers-or-what-is.html' title='How to count computers (or what is a modern computer) ?'/><author><name>Eddie Aronovch</name><uri>http://www.blogger.com/profile/02836945712863635077</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8233773231533010691.post-8478055259662826294</id><published>2007-03-05T05:35:00.001-08:00</published><updated>2007-03-05T07:53:13.541-08:00</updated><title type='text'>IPS/IDS and grid</title><content type='html'>Last week I sent an e-mail to one of the mailing lists that I am on about &lt;span class="blsp-spelling-error" id="SPELLING_ERROR_0"&gt;IPS&lt;/span&gt; and IDS systems. The difference is clear, &lt;span class="blsp-spelling-error" id="SPELLING_ERROR_1"&gt;IPS&lt;/span&gt; can prevent events that IDS detects. Those systems are in use for long time now. If I may add - unsuccessfully since after you have those systems installed you are not more secure.&lt;br /&gt;&lt;br /&gt;You can get information about some threats - but what is is good for ? Probably for some cases where you can get the info about an attacker. Actually you can get more information but it still does not make you or your site more secure.&lt;br /&gt;&lt;br /&gt;The problem is that they are not reliable. It is not due to programmer fault. It is the way those system works and the way of thinking! Up until now, the security personnel usually come from networking back ground. Since most of security threats come through the net, it is reasonably to ask the net people to take care of it.&lt;br /&gt;There are (2) problems that I find in this concept:&lt;br /&gt;&lt;br /&gt;- Network is only the medium and not the problem and if one agree to this statement, the medium can help to solve the problem but the problem should be found in an other place.&lt;br /&gt;&lt;br /&gt;- No reasonable solution can be found without understanding the application protocol. Since a crook does not look like one, and if he does, it would have been easy to detect them. This exactly the same here. The information that goes from one point to an other looks legitimate. There are just a few cases (usually they are already exist in various formats for &lt;span class="blsp-spelling-error" id="SPELLING_ERROR_2"&gt;FW&lt;/span&gt;) where one can define an exact format of an intrusion packet.&lt;br /&gt;&lt;br /&gt;&lt;span class="blsp-spelling-error" id="SPELLING_ERROR_3"&gt;IPS&lt;/span&gt;/IDS and grids&lt;br /&gt;&lt;br /&gt;Since the grid is based on external users that use local resources, access from the net is natural. But - Is there a way identify intrusion process ?&lt;br /&gt;&lt;br /&gt;Well - I think the answer is YES. It should be "Application based &lt;span class="blsp-spelling-error" id="SPELLING_ERROR_4"&gt;IPS&lt;/span&gt;/IDS". We are familiar with application firewalls which can (partially) analyze application data and block abnormal behaviour.&lt;br /&gt;&lt;br /&gt;For grids we will need a firewall that can check grid abnormalities. It will probably monitor the following components:&lt;br /&gt;&lt;br /&gt;- Compute Element - to check that the jobs submitted are valid. We may soon find out that a wrapper is needed protect the system.&lt;br /&gt;&lt;br /&gt;- &lt;span class="blsp-spelling-error" id="SPELLING_ERROR_5"&gt;WMS&lt;/span&gt; (or RB) - the components that are looking for best matching sites for a job to run in and submit it to that site. There are additional functionality like "rewriting" &lt;span class="blsp-spelling-error" id="SPELLING_ERROR_6"&gt;jdl&lt;/span&gt; (which is the general job description language to the local batch queue system). In those cases it can start with a wrapper that can check that no harm will be caused.&lt;br /&gt;&lt;br /&gt;Now it is time to design such system....&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8233773231533010691-8478055259662826294?l=earonovich.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://earonovich.blogspot.com/feeds/8478055259662826294/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8233773231533010691&amp;postID=8478055259662826294' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8233773231533010691/posts/default/8478055259662826294'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8233773231533010691/posts/default/8478055259662826294'/><link rel='alternate' type='text/html' href='http://earonovich.blogspot.com/2007/03/last-week-i-sent-e-mail-to-one-of.html' title='IPS/IDS and grid'/><author><name>Eddie Aronovch</name><uri>http://www.blogger.com/profile/02836945712863635077</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8233773231533010691.post-2925126749975743562</id><published>2007-02-25T12:36:00.000-08:00</published><updated>2007-02-25T12:56:41.446-08:00</updated><title type='text'>What makes a Grid ?</title><content type='html'>Once in a while, the question of what is a grid is raised. One attitude is that if you can sell it as grid - then it is a grid. This is done by some of the software companies. In fact, it does not matter at all what is a grid.&lt;br /&gt;But since mathematicians (and computer scientists) need definitions, I prefer to use Ian Fosters definition taken from &lt;a href="www-fp.mcs.anl.gov/%7Efoster/Articles/WhatIsTheGrid.pdf" class="l"&gt;What is the Grid&lt;/a&gt; ? :&lt;br /&gt;&lt;br /&gt;(1) Coordinates resources that are not subject to centralized control&lt;br /&gt;(2) Using standard, open, general-purpose protocols and interfaces&lt;br /&gt;(3) Delivers nontrivial qualities of service&lt;br /&gt;&lt;br /&gt;This definition actually requests a group of clusters that each belong to an other sys-admin (that are not under the same management to achieve non centralized control) that share resources based on open-standard protocols (as &lt;a href="http://www.ogf.org" class="l"&gt;Open Grid Forum&lt;/a&gt;).&lt;br /&gt;&lt;br /&gt;One of the implementation based on &lt;a href="http://www.globus.org/"&gt;Globus&lt;/a&gt; is the EU project named &lt;a href="http://www.eu-egee.org/"&gt;EGEE-II&lt;/a&gt;. The project added or designed some of the components different of the original GGf (ancestor of OGF) like Resource Broker (RB) which is the node that gets the job and looks for the most appropriate site to send the job to. After it finds a site, the job is translated for the site queuing system (which is called LRMS).&lt;br /&gt;&lt;br /&gt;In order to submit a job, one has to have X.509 certificate approved by a known CA. The user ID is translated in each site according to the local gridmap file (where each certificate DN appears). There is a pool of users that each user is mapped into according to users virtual organization belonging. A dynamic system named Virtual Organization Management System (VOMS) was developed that brings (2) main benefits:&lt;br /&gt;(1) Users can have roles in the VO (opposed to flat mapping in the gridmap file).&lt;br /&gt;(2) same certificate DN can belong to more than one VO. Especially in the academic environment, a user mighr work in more than one project that share different resources.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8233773231533010691-2925126749975743562?l=earonovich.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://earonovich.blogspot.com/feeds/2925126749975743562/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8233773231533010691&amp;postID=2925126749975743562' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8233773231533010691/posts/default/2925126749975743562'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8233773231533010691/posts/default/2925126749975743562'/><link rel='alternate' type='text/html' href='http://earonovich.blogspot.com/2007/02/what-makes-grid.html' title='What makes a Grid ?'/><author><name>Eddie Aronovch</name><uri>http://www.blogger.com/profile/02836945712863635077</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8233773231533010691.post-5422137081928453398</id><published>2007-02-22T20:05:00.000-08:00</published><updated>2007-02-22T21:01:29.969-08:00</updated><title type='text'>What makes a new technology ready for implementation ?</title><content type='html'>Both technologies that I deal with those days - grids and IPv6 are not young (more than ten years), have clear benefit for the users, are supported and implemented by the major manufactures in that field, but still failed to be adopted in large scale. I wonder what makes a technology "ready to be adopted" and how it can be identified.&lt;br /&gt;&lt;br /&gt;There are several aspects of readiness. The first one would be "How it can be done (based on existing tools) ?".&lt;br /&gt;The DoD published the &lt;a href="http://www.defenselink.mil/ddre/doc/tra_deskbook_2005.pdf"&gt;Technology Readiness Assessment (TRA) Deskbook&lt;/a&gt; that deals with technology maturity estimation based on analytical measurements of applying those technologies. So if the different components that are needed exist or can be developed with existing technology, that makes it ready. It is probably correct from the technical point of view even though not all connections and dependencies between components can be identified.&lt;br /&gt;&lt;br /&gt;Next one would probably be the rentability  of  a technology. Its actual  cost vs. profit it can give. If it costs more than its revenue - no one would implement it,  but if it offers significant benefit compared to the cost, then implementing it would contribute to whom adopts the technology. Since the cost and revenue measurements are not global terms (it can give different revenue for different people) same technology might be good for one and not good enough for others.&lt;br /&gt;&lt;br /&gt;But I was looking for something else that I might call it "coolness" or the trendiness of a technology. When a technology become trendy ? It is clear that first a technology has to exist, which means it passed the initial vision, brainstorming, planning, etc. stages. Then it has to have some prototype and from this stage it can become a trend if it has a specific property. I am not sure if there is one property or several properties and weather the properties have to exist all together or a sub-set of them are enough.&lt;br /&gt;&lt;br /&gt;Assuming there are some properties that are needed, how can a good technology can be given those properties in order to make it happen. What comes first the technology worthiness or the properties that makes it worthy?&lt;br /&gt;On the other hand are there technologies that can not become trendy ? It is clear to me that it is not about being useful, not about being cheap and not about being user friendly it is about something else that I try to find out.&lt;br /&gt;&lt;br /&gt;What is that property and how can it be identified ?&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8233773231533010691-5422137081928453398?l=earonovich.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://earonovich.blogspot.com/feeds/5422137081928453398/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8233773231533010691&amp;postID=5422137081928453398' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8233773231533010691/posts/default/5422137081928453398'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8233773231533010691/posts/default/5422137081928453398'/><link rel='alternate' type='text/html' href='http://earonovich.blogspot.com/2007/02/what-makes-new-technology-ready-for.html' title='What makes a new technology ready for implementation ?'/><author><name>Eddie Aronovch</name><uri>http://www.blogger.com/profile/02836945712863635077</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8233773231533010691.post-2691133321128130975</id><published>2007-02-21T04:26:00.000-08:00</published><updated>2007-02-21T04:53:37.455-08:00</updated><title type='text'>First post</title><content type='html'>After several people asked me too many times, I decided to do it too - Wrting a blog.&lt;br /&gt;&lt;br /&gt;This week was a very interesting week from the professional point of view.&lt;br /&gt;&lt;br /&gt;On Sunday, I wasn invited by local branch of MS to see the new Compute Cluster Server (CCS).  Since I lead the technical effort of the Grid in Israel, they wanted very much that I will see and express my opinion in that area.&lt;br /&gt;&lt;br /&gt;Well - I am happy to see that parallel computing arrived to MS platform at last. It is clear that since there are multi core CPUs that become ubiquitous, it is  unavoidable that it will be used by the general public and not only in the exact science dept at Universities. This service is just the first step and I am sure that MS push it to show they are interested in this field. It lacks most of the up-to-date technology as check-pointing, DAG process dependencies, advanced scripting options, etc. It will certainly make this field interesting in the coming years. I hope that it will not produce two parallel universes that never meet.&lt;br /&gt;&lt;br /&gt;On Monday I gave a lecture about Grid security in the ISOC-IL annual conference. There were a lot of people there. Most of them were interested in community services. It is about time that the internet activity will be dominated by the people who use it and not by the technical staff that maintain it.&lt;br /&gt;&lt;br /&gt;An interesting session was about IPv6. Yes - that old protocol that is still looking for a way to the real world.  It is definitely  the right direction. For long time a lot of talking and ink was spent on this protocol and now it is time to use it.&lt;br /&gt;&lt;br /&gt;More to be followed&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8233773231533010691-2691133321128130975?l=earonovich.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://earonovich.blogspot.com/feeds/2691133321128130975/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8233773231533010691&amp;postID=2691133321128130975' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8233773231533010691/posts/default/2691133321128130975'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8233773231533010691/posts/default/2691133321128130975'/><link rel='alternate' type='text/html' href='http://earonovich.blogspot.com/2007/02/first-post.html' title='First post'/><author><name>Eddie Aronovch</name><uri>http://www.blogger.com/profile/02836945712863635077</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry></feed>
