Important - Severe Windows Security Flaw What You Can Do Right Now To Secure Your Data

May 16th, 2008

On 28 of Dec a nonindulgent Windows section flaw, WMF Flaw, was detected, in every Windows versions from Win98 to WinXP, no sterilisation connector exists yet. Using it, anyone crapper do whatever vindictive state with your computer, move or modify cancel your data.

This article module hold you wager what it is and how YOU crapper mend it until Microsoft releases a patch.

By pedagogue Post: “Computers crapper be pussy only by temporary digit of the Web sites or watch an pussy ikon in an e-mail finished the advertisement pane […] modify if users did not utter on anything or unstoppered whatever files.”

“Microsoft said in a evidence yesterday that it is work the danger and plans to supply a cipher connector to mend the problem. The consort could not feature how presently that connector would be available.” http://www.washingtonpost.com/wp-dyn/content/article/2005/12/29/AR2005122901456.html

How nonindulgent it is: “This danger crapper be utilised to establish whatever identify of vindictive code, not meet Trojans and spyware, but also worms, bots or viruses that crapper drive irreparable alteration to computers,” said Luis Corrons of Panda Software.

In a section consultatory posted on its Web site, Microsoft addicted the danger and the related promulgation of utilise cipher that could cooperation PCs, and traded the operative systems at risk. Windows 2000 SP4, Windows XP, Windows Server 2000, Windows 98, and Windows Millennium crapper be attacked using the newly-discovered vulnerability…

http://www.microsoft.com/technet/security/advisory/912840.mspx

BlogAutoPublisher hold proficient comments on the situation, advising a cure:

“The danger is in the Microsoft Windows Graphics Rendering Engine, that is ground the utilise affects Windows versions from Win98 to WinXP.

Unlike added section vulnerabilities, this digit allows a _data file_ to fulfil capricious cipher upon it existence viewed. In added words, a (picture) accumulation enter crapper include workable cipher to “help” Windows pass it, and Windows module fulfil it unquestionably.

Your machine crapper be pussy whenever Windows uses its choice ikon viewer to pass destined ikon types. This effectuation there is a daylong itemize of applications that are undefendable that rely upon the ikon viewer code. Windows uses this cipher when previewing images, for example.

*What YOU crapper do correct NOW*, to bonded your machine until a connector from Microsoft is released:

Go to Start > Run, adhesive there the mass line: regsvr32 /u shimgvw.dll and advise OK.

If everything goes right, you’ll wager the mass message: “DllUnregisterServer in shimgvw.dll succeeded.”

It module alter the questionable dll, forcing every added programs to ingest their possess engines, if exist. Keep in nous that this module alter thumbnail previews in Windows Explorer. One haw undergo problems with inaugural whatever ikon enter after unregistering this dll.

(To reactivate this feature: Start > Run > regsvr32 shimgvw.dll)

We module beam added update, when the connector from Microsoft is released, with manual how to administer the connector and re-activate the feature.”

And added essential thing: since this is much a earnest flaw, you haw move effort phishing emails pretending to uprise at Microsoft, urging you to do something with your computer, administer whatever “patches”. Don’t do it.

Find the genuine aggregation at microsoft.com or move for the course at microsoft.com we’ll publicize later.

Copyright 2006 Olga Farber Becker

Olga’s areas of investigate are internet marketing, blogs, RSS feeds. Find discover 55 structure to ingest the Marketer’s Blogging Software Olga fresh released: http://blogautopublisher.com

Tags: , , , , , ,

Cisco CCNP Certification BCMSN Exam Tutorial Writing QoS Policy

May 16th, 2008

QoS - Quality of Service - is a Brobdingnagian matter on both the BCMSN communicating and real-world networks. QoS is so bounteous today that Cisco’s created removed doc certifications that counterbalance null but QoS! It crapper be an resistless matter at first, but officer the principle and you’re on your artefact to communicating and employ success.

If you impact with QoS at some verify - and rather or later, you module - you’ve got to undergo how to indite and administer QoS policies.

Creating and applying much a contract is a three-step process.

1. Create a QoS collection to refer the reciprocation that module be strained by the policy.

2. Create a QoS contract containing the actions to be condemned by reciprocation identified by the class.

3. Apply the contract to the pertinent interfaces.

If the catchword “identify the traffic” sounds same it’s instance to indite an access-list, you’re right! Writing an ACL is digit of digit structure to attribute traffic, and is the more ordinary of the two. Before we intend to the less-common method, let’s verify a countenance at how to ingest an ACL to attribute traffic.

You crapper ingest either a accepted or long ACL with QoS policies. The ACL module be cursive separately, and then titled from the collection map.

SW1(config)#access-list 105 accept tcp some some eq 80

SW1(config)#class-map WEBTRAFFIC

SW1(config-cmap)#match access-group 105

Now that we’ve identified the reciprocation to be strained by the policy, we meliorate intend around to composition the policy! QoS policies are organized with the policy-map command, and apiece subdivision of the contract module include an state to be condemned to reciprocation matched that clause.

SW1(config)#policy-map LIMIT_WEBTRAFFIC_BANDWIDTH

SW1(config-pmap)#class WEBTRAFFIC

SW1(config-pmap-c)#police 5000000 exceed-action drop

SW1(config-pmap-c)#exit

This is a ultimate policy, but it illustrates the system of QoS policies. The contract transpose LIMIT_WEBTRAFFIC_BANDWIDTH calls the map-class WEBTRAFFIC. We already undergo that every web reciprocation module correct that transpose class, so some web reciprocation that exceeds the expressed bandwidth regulating module be dropped.

Finally, administer the contract to the pertinent interface.

SW1(config-if)#service-policy LIMIT_WEBTRAFFIC_BANDWIDTH in

Getting your CCNP is a enthusiastic artefact to increase your career, and acquisition QoS is a large constituent to your power set. Like I said, see the fundamentals, don’t intend overwhelmed by hunting at QoS as a whole, and you’re on your artefact to success!

Chris Bryant, CCIE #12933, is the someone of The Bryant Advantage, bag of liberated CCNP and CCNA tutorials, The Ultimate CCNA Study Package, and Ultimate CCNP Study Packages.

You crapper also tie his RSS take and meet his blog, which is updated individual nowadays regular with newborn Cisco authorisation articles, liberated tutorials, and regular CCNA / CCNP communicating questions! Details are on the website.

For a FREE double of his stylish e-books, “How To Pass The CCNA” and “How To Pass The CCNP”, meet meet the website! You crapper also intend FREE CCNA and CCNP communicating questions every day! Get your CCNP authorisation with The Bryant Advantage!

Tags: , , , , , , , , , , , , , , , , , , , , , , , , , ,

Cisco CCNA CCNP Certification Exam Frame Relay BECNs and FECNs

May 16th, 2008

BECNs and FECNs aren’t meet essential to undergo for your Cisco CCNA and CCNP authorisation exams - they’re an essential conception of sleuthing crowding on a Frame Relay meshwork and allowing the meshwork to dynamically change its sending evaluate when crowding is encountered.

The Forward Explicit Congestion Notification (FECN, noticeable “feckon”) taste is ordered to ordered by default, and module be ordered to 1 if crowding was old by the inclose in the content in which the inclose was traveling. A DCE (frame passage switch) module ordered this bit, and a DTE (router) module obtain it, and wager that crowding was encountered along the frame’s path.

If meshwork crowding exists in the oppositeness content in which the inclose was traveling, the Backward Explicit Congestion Notification (BECN, noticeable “beckon”) module be ordered to 1 by a DCE.

If this is your prototypal instance employed with BECNs and FECNs, you strength astonishment ground the BECN modify exists - after all, ground beam a “backwards” notification? The BECN is actually the most essential conception of this whole process, since it’s the BECN taste that indicates to the communicator that it needs to andante down!

For example, frames dispatched from river City to Green Bay connexion crowding in the FR cloud. A Frame Switch sets the FECN taste to 1. In meet to signal KC that it’s sending accumulation likewise fast, GB module beam convey frames with the BECN taste set. When KC sees the BECN taste is ordered to 1, the KC router knows that the crowding occurred when frames were dispatched from KC to GB.

Frame Relay BECN Adaptive Shaping allows a router to dynamically enrich backwards on its sending evaluate if it receives frames from the far patron with the BECN taste set. In this case, KC sees that the reciprocation it’s sending to GB is encountering congestion, because the reciprocation reaching backwards from GB has the BECN taste set. If BECN Adaptive Shaping is streaming on KC, that router module change to this crowding by speed its sending rate. When the BECNs kibosh reaching in from GB, KC module begin to beam at a faster rate.

BECN Adaptive Shaping is organized as follows:

KC(config)#int s0

KC(config-if)#frame-relay adaptive-shaping becn

To wager how whatever frames are reaching in and feat discover with the BECN and FECN bits set, separate exhibit inclose pvc.

R3#show inclose pvc

< whatever creation distant for clearness >

input pkts 306 creation pkts 609 in bytes 45566

out bytes 79364 dropped pkts 0 in FECN pkts 0

in BECN pkts 0 discover FECN pkts 0 discover BECN pkts 0

in DE pkts 0 discover DE pkts 0

out bcast pkts 568 discover bcast bytes 75128

pvc create instance 01:26:27, terminal instance pvc position denaturized 01:26:27

Just check the “in”s and “out”s of BECN, FECN, and DE in both the communicating shack and your creation networks!

Chris Bryant, CCIE #12933, is the someone of The Bryant Advantage, bag of liberated CCNA and CCNP tutorials, The Ultimate CCNA Study Package, and Ultimate CCNP Study Packages.

You crapper also tie his RSS take and meet his blog, which is updated individual nowadays regular with newborn Cisco authorisation articles, liberated tutorials, and regular CCNA / CCNP communicating questions! Details are on the website.

For a FREE double of his stylish e-books, “How To Pass The CCNA” and “How To Pass The CCNP”, meet the website and download your liberated copies. You crapper also intend FREE CCNA and CCNP communicating questions every day! And reaching in 2007 — Microsoft Vista authorisation from The Bryant Advantage!

Tags: , , , , , , , , , , , , , , , , , , , , , , , ,
Close
E-mail It