<?xml version="1.0" encoding="UTF-8"?><!-- generator="wordpress/2.2.3" -->
<rss version="2.0" 
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	>
<channel>
	<title>Comments on: Buying best of breed versus bundled services</title>
	<link>http://www.tssci-security.com/archives/2007/09/10/buying-best-of-breed-versus-bundled-services/</link>
	<description>top secret/secure computing information</description>
	<pubDate>Sat, 11 Oct 2008 12:50:37 +0000</pubDate>
	<generator>http://wordpress.org/?v=2.2.3</generator>

	<item>
		<title>By: dre</title>
		<link>http://www.tssci-security.com/archives/2007/09/10/buying-best-of-breed-versus-bundled-services/#comment-1648</link>
		<dc:creator>dre</dc:creator>
		<pubDate>Wed, 12 Sep 2007 15:20:47 +0000</pubDate>
		<guid>http://www.tssci-security.com/archives/2007/09/10/buying-best-of-breed-versus-bundled-services/#comment-1648</guid>
		<description>You setup two Windows domains: one for servers and one for clients.  Your server Windows domain gets BigFix. The client domain gets Symantec.  Then you follow the Matasano &lt;a href="http://www.matasano.com/log/646/matasano-security-recommendation-001-avoid-agents/" rel="nofollow"&gt;advice&lt;/a&gt;.

Marcin, I know that you and I have talked about DLP "soft" measures such as honeytokens, digital watermarking, and clipping services.  My primary "hard" answer to the DLP problem will continue to be "thin clients" (see: http://safebook.net for a laptoppy thin client), but other possible answers include "whole disk encryption" and "epoxy USB ports".

Make sure you tell your agent vendors that you are giving them the whole piece of the pie.  Make it look like you're bundling.  Consider other incentives as alternatives to bundling.

I describe a lot of how this works on the SecurityIncite blog &lt;a href="http://securityincite.com/blog/mike-rothman/2007-doi-day-1-get-with-the-program#comments" rel="nofollow"&gt;here&lt;/a&gt;.</description>
		<content:encoded><![CDATA[<p>You setup two Windows domains: one for servers and one for clients.  Your server Windows domain gets BigFix. The client domain gets Symantec.  Then you follow the Matasano <a href="http://www.matasano.com/log/646/matasano-security-recommendation-001-avoid-agents/"  onclick="javascript:urchinTracker ('/outbound/comment/www.matasano.com');">advice</a>.</p>
<p>Marcin, I know that you and I have talked about DLP &#8220;soft&#8221; measures such as honeytokens, digital watermarking, and clipping services.  My primary &#8220;hard&#8221; answer to the DLP problem will continue to be &#8220;thin clients&#8221; (see: <a href="http://safebook.net"  onclick="javascript:urchinTracker ('/outbound/comment/safebook.net');">http://safebook.net</a> for a laptoppy thin client), but other possible answers include &#8220;whole disk encryption&#8221; and &#8220;epoxy USB ports&#8221;.</p>
<p>Make sure you tell your agent vendors that you are giving them the whole piece of the pie.  Make it look like you&#8217;re bundling.  Consider other incentives as alternatives to bundling.</p>
<p>I describe a lot of how this works on the SecurityIncite blog <a href="http://securityincite.com/blog/mike-rothman/2007-doi-day-1-get-with-the-program#comments"  onclick="javascript:urchinTracker ('/outbound/comment/securityincite.com');">here</a>.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: LonerVamp</title>
		<link>http://www.tssci-security.com/archives/2007/09/10/buying-best-of-breed-versus-bundled-services/#comment-1643</link>
		<dc:creator>LonerVamp</dc:creator>
		<pubDate>Mon, 10 Sep 2007 20:01:58 +0000</pubDate>
		<guid>http://www.tssci-security.com/archives/2007/09/10/buying-best-of-breed-versus-bundled-services/#comment-1643</guid>
		<description>Probably want to rank those three items. I'd rank anti-spyware below the other two. I'd then say absence of one is cause for concern, and I'd still make AV a hair more important than PF. So I'd lean towards whatever does AV the best and PF second.

In more general terms, get the best for the most important tasks. I'd rather get a product that does AV/PF well and get something else for AS, as opposed to getting something that is pitiful with AS...

I dunno how to generalize that further without looking at the business in question, the risks, the current environment, and their budget. :(</description>
		<content:encoded><![CDATA[<p>Probably want to rank those three items. I&#8217;d rank anti-spyware below the other two. I&#8217;d then say absence of one is cause for concern, and I&#8217;d still make AV a hair more important than PF. So I&#8217;d lean towards whatever does AV the best and PF second.</p>
<p>In more general terms, get the best for the most important tasks. I&#8217;d rather get a product that does AV/PF well and get something else for AS, as opposed to getting something that is pitiful with AS&#8230;</p>
<p>I dunno how to generalize that further without looking at the business in question, the risks, the current environment, and their budget. :(</p>
]]></content:encoded>
	</item>
</channel>
</rss>

<!-- Dynamic Page Served (once) in 0.160 seconds -->
