domingo, 27 de janeiro de 2008
Exames de certificação Microsoft retirados a 31 de Março de 2008
chamo a atenção para o anuncio da retirada de alguns exames de certificação Microsoft a 31 de Março de 2008.
Os exames de Windows 2000 talvez sejam aqueles que devam ter menor procura, mas os exames 70-292 e 70-296 respeitantes a exames de core upgrade da certificação MCSA 2000 e MCSE 2000 para MCSA 2003 e MCSE 2003 talvez ainda revelem bastante interesse, especialmente para aqueles que à sua boa maneira Portuguesa vão adiando e deixam tudo para a última hora.
Talvez seja pancada minha, mas antes do terminus do prazo ainda vou fazer o 70-214 e 70-225 para fechar as certificações de MCSE Security e Messaging 2000. Paranóias é o que é! :p
Link de referência:
Exams Scheduled for Discontinuation
http://www.microsoft.com/learning/mcpexams/status/examstoretire.mspx
Windows Server 2000 exams retiring March 31, 2008
•Exam 70-292: Managing and Maintaining a Microsoft Windows Server 2003 Environment for an MCSA Certified on Windows 2000
•Exam 70-296: Planning, Implementing, and Maintaining a Microsoft Windows Server 2003 Environment for an MCSE Certified on Windows 2000
•Exam 70-232: Implementing and Maintaining Highly Available Web Solutions with Microsoft Windows 2000 Server Technologies and Microsoft Application Center 2000
•Exam 70-210: Installing, Configuring, and Administering Microsoft Windows 2000 Professional
•Exam 70-214: Implementing and Managing Security in a Windows 2000 Network Infrastructure
•Exam 70-215: Installing, Configuring, and Administering Microsoft Windows 2000 Server
•Exam 70-216: Implementing and Administering a Microsoft Windows 2000 Network Infrastructure
•Exam 70-217: Implementing and Administering a Microsoft Windows 2000 Directory Services Infrastructure
•Exam 70-218: Managing a Windows 2000 Network Environment
•Exam 70-219: Designing a Microsoft Windows 2000 Directory Services Infrastructure
•Exam 70-220: Designing Security for a Microsoft Windows 2000 Network
•Exam 70-221: Designing a Microsoft Windows 2000 Network Infrastructure
•Exam 70-226: Designing Highly Available Web Solutions with Microsoft Windows 2000 Server Technologies
Windows NT 4.0 exams retiring March 31, 2008
•Exam 70-222: Migrating from Microsoft Windows NT 4.0 to Microsoft Windows 2000
•Exam 70-244: Supporting and Maintaining a Microsoft Windows NT Server 4.0 Network
Exchange Server 2000 exams retiring March 31, 2008
•Exam 70-224: Installing, Configuring, and Administering Microsoft Exchange 2000 Server
•Exam 70-225: Designing and Deploying a Messaging Infrastructure with Microsoft Exchange 2000 Server
Other exams retiring March 31, 2008
•Exam 70-223: Installing, Configuring, and Administering Microsoft Clustering Services by Using Microsoft Windows 2000 Advanced Server
•Exam 70-234: Designing and Implementing Solutions with Microsoft Commerce Server 2000
•Exam 70-230: Designing and Implementing Solutions with Microsoft BizTalk Server 2000, Enterprise Edition
•Exam 70-227: Installing, Configuring, and Administering Microsoft Internet Security and Acceleration (ISA) Server 2000, Enterprise Edition
•Exam 70-086: Implementing and Supporting Microsoft Systems Management Server 2.0
R-Tape Loading error,
Luís Rato
sábado, 26 de janeiro de 2008
Exchange 2007 - Deploying Server roles in a nut shell
para os entendidos em Exchange 2007 já não é novidade que o Exchange 2007 é composto por diversos papéis, nomeadamente:
Client Access
Edge Transport
Hub Transport
Mailbox
Unified Messaging
Existem diversas instalações possíveis, como por exemplo, com excepção do Edge Transport, todos os outros podem ser instalados num só servidor (non-clustered), ou então por outro lado podem ser todos distribuídos por servidores independentes.
O desenho e implementação de uma arquitectura de Exchange 2007, pode levantar uma série de questões e obedece até a alguns critérios rigorosos, um exemplo disso, é o facto de quando é disponibilizado um Mailbox server é obrigatória a disponibilização do Client Access e Hub Transport no mesmo site AD.
Quando se começa avançar mais nesta matéria, podem ser levantadas questões do tipo:
Questão 1: Numa situação em que distribuo os papéis de Exchange por várias máquinas, há alguma recomendação em relação à ordem de instalação de cada papel?
Resposta 1: Sim. Na realidade há uma recomendação em relação à ordem de instalação dos diferentes papeis de Exchange, quando separados por diversas máquinas. O critério é o seguinte:
1.) CAS
2.) Hub Transport
3.) Mailbox
4.) UM
Questão 2: No Exchange 2003 havia uma recomendação em relação a upgrades de service Pack de Exchange ou hotfixes, em que primeiro eram actualizados os Front-end servers e só por fim os Back-ends. No Exchange 2007 também há algum tipo de recomendação em relação à ordem de upgrades nos diferentes papéis?
Resposta 2: Sim, eu até nem diria recomendação, neste caso particular prefiro chamar-lhe mais uma obrigação, em que updates e Service Packs devem seguir a mesma ordem referida anteriormente.
1.) CAS
2.) Hub Transport
3.) Mailbox
4.) UM
Deixo aqui a recomendação para a leitura de um artigo Technet, uma espécie de Deploying Exchange 2007 Server roles in a nut shell. Muito útil para quem quer tirar aquelas dúvidas existenciais sem ter que ler uma espécie de ebook das páginas amarelas.
Deploying Server Roles
http://technet.microsoft.com/en-us/library/aa997610.aspx
R-Tape Loading Error,
Luís Rato
quarta-feira, 23 de janeiro de 2008
MS08-001 - Proof of concept with Attack code for critical Windows flaw - Crashes systems with DoS
prometido é devido e eis o primeiro post em Português.
O tema de hoje está relacionado com o boletim de segurança Microsoft MS08-001: Vulnerability in TCP/IP could allow remote code execution (http://support.microsoft.com/kb/941644/en-us).
De acordo com o artigo do site infoworld http://www.infoworld.com/article/08/01/17/Attack-code-released-for-critical-Windows-flaw_1.html, investigadores de segurança desenvolveram código para ataque a sistemas, a ser usado por profissionais de segurança que usam o software de testes de segurança Immunity's Canvas (http://www.immunitysec.com/products-canvas.shtml).
Este código de prova de conceito provoca crashes em máquinas Windows que estão susceptíveis à vulnerabilidade descrita no MS08-001 / kb 941644.
Em referência no artigo – “It reliably crashes Windows machines," disse Dave Aitel, CTO da Immunity. "In fact, it blue-screened our print server by accident -- this is a broadcast attack, after all.”
Caracteristicas técnicas da vulnerabilidade:
O Internet Control Message Protocol (ICMP) router discovery é usado nas mensagens ICMP para descobrir a default gateway num segmento de rede, quando a default gateway não está definida manualmente e não está assignada aquando a utilização de DHCP.
O ICMP router discovery consiste em duas mensagens ICMP: A 'router solicitation' e a 'router advertisement'. A router solicitation é enviada por um host para descobrir routers na rede. A router advertisement é enviada pelo router em resposta a uma solicitação e periodicamente notificar hosts na rede sobre o facto do router ainda estar disponível.
O Windows TCP/IP lida incorrectamente com mensagens fragmentadas de ICMP router advertisement. (Quando a mensagem é muito grande para ser enviada num só chunk, o protocolo IP permite que seja fragmentada em várias partes, a máquina que a recepciona é responsável por voltar a agrupar a mensagem original). Mensagens de router advertisement fragmentadas podem fazer com que o sistema leia memória inválida, levando a um crash no sistema. Visto que por este motivo a máquina tem um crash e não é possível executar código, estamos perante um tipo de ataque denial-of-service (DoS).
Notas importantes:
[WINDOWS 2000]
· O Windows 2000 não é afectado pela vulnerabilidade Windows Kernel TCP/IP/IGMPv3 e MLDv2 (CVE-2007-0069), pelo facto de usar IGMP v2 a qual não é afectada.
Para maior detalhe técnico sobre os detalhes da vulnerabilidade ao nível do sistema Windows 2000 visite o link em baixo:
MS08-001 (part 2) – The case of the Moderate ICMP mitigations
[WINDOWS 2003]· O Windows Server 2003 não tem activo por defeito o UPnP - Universal Plug and Play (*) nem outro tipo de serviços que usem endereços multicast, como tal pode não ser afectado por esta vulnerabilidade. Contudo, ao activar manualmente o UPnP ou instalar aplicações 3rd-party que usem IP multicasting, pode expor o sistema operativo a esta vulnerabilidade.
(*) UPnP: É um serviço de rede que assenta sobre IP multicast, estando activo por defeito apenas no Windows XP e Vista.
Recomendo ainda a leitura do post referido em baixo do site da equipa Microsoft Security Vulnerability & Defense, onde são respondidas diversas questões sobre a incidência desta vulnerabilidade no Windows 2003.
Link: MS08-001 - The case of the missing Windows Server 2003 attack vector
Um dos aspectos importantes a registar, é que o Windows 2003 se estiver adicionado ao grupo IGMP por defeito que é o 224.0.0.1 não está vulnerável. A razão para tal é porque o Windows ignora quaisquer queries IGMP para esse endereço.
Para analisar qual a configuração por defeito no Win2k3 Server execute na linha de comandos:
>netsh int ip show joins
Output esperado:
Interface Addr Multicast Group
--------------- ---------------
10.1.1.1 224.0.0.1
Se o servidor Windows 2003 tiver sido juntado a qualquer outro grupo multicast que não o 224.0.0.1, está vulnerável ao ataque IGMP.
Mais uma vez se executarem o comando netsh é possível identificar quais os grupos multicast a que a máquina pertence.
>netsh int ip show joins
Para ilustrar um caso de vulnerabilidade ao IGMP, se uma máquina Win2K3 Server tiver o componente WINS activo ao executar o comando netsh vão obter o seguinte output:
Interface Addr Multicast Group
--------------- ---------------
10.1.1.1 224.0.0.1
10.1.1.1 224.0.1.24
224.0.1.24 é o grupo IP multicast para o WINS. Num caso como estes, se o servidor não tiver sido actualizado está vulnerável ao ataque IGMP.
[WINDOWS XP e VISTA]
Se os sistemas descritos em baixo estão simplesmente alcançáveis e a vulnerabilidade é explorada, podem ficar comprometidos sem que para tal seja necessária a intervenção do lado do utilizador. O vector de ataque passa por criar pacotes de rede formatados de forma especial e enviá-los para o sistema que está vulnerável. Visto que se trata de um problema ao nível do TCP/IP, o sistema é afectado assim que recebe a comunicação.· Windows XP Service Pack 2, Windows XP Professional x64 Edition, Windows XP Professional x64 Edition Service Pack 2, Windows Vista e Windows Vista x64 Edition são afectados de forma crítica quando ligados em rede.
Para obter maior detalhe técnico sobre o impacto desta vulnerabilidade ao nível do Windows XP e Vista visite o link MS08-001 (part 3) – The case of the IGMP network critical.
Recomendo também a leitura do artigo technet relacionado:
Microsoft Security Bulletin MS08-001 – Critical
Vulnerabilities in Windows TCP/IP Could Allow Remote Code Execution (941644)
A imagem em baixo ilustra de forma mais clara o impacto da vulnerabilidade em cada um dos produtos:

R-Tape Loading Error,
Luís Rato
segunda-feira, 21 de janeiro de 2008
New year, new thoughts
this is my first post of the year and I´ll take the moment to wish you the best for 2K8.
New year, new thoughts, this blog is on the same wave and for now on I will do some posts in Portuguese.
The main reasons to shift the blog to a more Portuguese version are:
First - I work with Portuguese customers and a blog may be a nice tool to show them information.
Second - There's tons of information around the cloud with English articles, I cannot say the same about Portuguese content.
Note: If you think that would be of your interest that some of my posts should be either published in English or Portuguese, just let me know. Depending on the request I might consider to do it.
R-Tape Loading Error,
Luís Rato
terça-feira, 11 de dezembro de 2007
The 2007 Microsoft Office System Service Pack 1 is now available
as announced a few days ago the 2007 Microsoft Office System Service Pack 1 is available today for download. I am already downloading the SP1 which means that all the links are already working.
Take a look on the additional information and resources below.
Links for Download:
2007 Microsoft Office Suite Service Pack 1 (SP1)
Microsoft Office Visio 2007 Service Pack 1 (SP1)
Microsoft Office Project 2007 Service Pack 1 (SP1)
Microsoft Office Language Pack 2007 Service Pack 1 (SP1)
Microsoft Office SharePoint Designer 2007 Service Pack 1 (SP1)
Overview:
By deploying the 2007 Office system SP1, home users and businesses can quickly reap benefits in the following areas:
- Stability Using data from the Dr. Watson bug-reporting system, Microsoft fixed, at minimum, the five software bugs that most frequently caused each application in the 2007 Office system to crash. The 2007 Office system SP1 also improves the stability of server components in the 2007 Office system and compatibility with Windows Server® 2008, so companies can more confidently move forward with upgrade plans.
- Performance The 2007 Office system SP1 improves performance in applications that are pervasive in modern offices, most notably: Microsoft Office Excel® 2007, Microsoft Office Outlook® 2007, Microsoft Office PowerPoint® 2007, and Microsoft Office SharePoint® Server 2007.
- Security By incorporating incremental advances in security and results from application testing, the 2007 Office system SP1 offers home and office users better protection against malicious software and potential threats to privacy.
Resources
See the links below for more detailed resources about the 2007 Microsoft® Office system Service Pack 1 (SP1).
Office 2007 Resource Kit
The 2007 Microsoft Office system resource kit includes detailed information that is useful for IT administrators. To read more, please visit http://technet2.microsoft.com/Office/en-us/library/9df1c7d2-30a9-47bb-a3b2-5166b394fbf51033.mspx.
Applications Issues Fixed in the 2007 Office System SP1
2007 Office System SP1 Knowledge Base Articles
Updating and Deployment Resources
R-Tape Loading error,
Luís Rato
quinta-feira, 6 de dezembro de 2007
Windows Server 2008 RC1 available for download
As we are getting more closure to the final release this is a good opportunity for enterprise customers and 3rd party developers to evaluate potential bugs and issues with the product and compatibility with their applications.
Windows Server 2008 Release Candidate Evaluation Software
http://www.microsoft.com/windowsserver2008/audsel.mspx
Overview
This time-limited release of Windows Server® 2008 Release Candidate will expire on June 30, 2008. After this time, you will need to uninstall the software or upgrade to a later release or a fully-licensed version of Windows Server® 2008.This product requires a valid product key for activation within 30 days of installation..If you have received a product key via email confirmation, you may use the key with the software you download from this site or with a DVD containing Windows Server® 2008 Release Candidate.
If you have not received a product key, you can obtain one by visiting one of the following sites:
Developers
IT Professionals
Some copies of this pre-release software do not include an updated "Privacy Information for Installation Features" document. The correct document can be read online here.
You can download each version of the Windows Server 2008 RC1 on the links below:
- Windows Server 2008 Standard RC1 (x86 and x64)
- Windows Server 2008 Enterprise RC1 (x86 and x64)
- Windows Server 2008 Datacenter RC1 (x86 and x64)
- Windows Web Server 2008 RC1 (x86 and x64)
- Windows Server 2008 for Itanium-Based Systems RC1
R-Tape Loading error,
Luís Rato
segunda-feira, 3 de dezembro de 2007
Exchange 2007 Service Pack 1 has been released
on 29th of November Microsoft released a most waited Service Pack, Exchange 2007 Service Pack 1. There's a lot of new features and improvements for every server role, support for a new continuous replication model (SCR), suppport for IPv6, more rich GUI management tools and much more. This is one of those Service Packs that everyone must have.
Exchange 2007 SP1 Overview:
Microsoft Exchange Server 2007 Service Pack 1 (SP1) has been designed specifically to help meet the challenges of any business and the needs of all the different groups with a stake in the messaging system. Exchange Server 2007 SP1 is a mission-critical communications tool that enables employees to be more productive and access their information anywhere and anytime while providing a messaging system that enables rich, efficient access to e-mail, calendar items, voice mail, and contacts. For the administrator, Exchange Server 2007 SP1 provides advanced protection options against e-mail security threats, such as spam and viruses, as well as the tools to help manage internal compliance and high availability needs.
In Exchange Server 2007 SP1, several new features and improvements will extend the Anywhere Access capabilities of Exchange Server 2007 to help make employees more productive on whatever device they’re using, provide additional Operational Efficiency tools for administrators seeking a streamlined management and deployment experience, and enable advanced Built-in Protection for more robust high availability and compliance scenarios.
Improvements in Exchange Server 2007 SP1 include:
Anywhere Access
• Integrated Exchange Unified Messaging functionality with Microsoft Office Communicator 2007 and Microsoft Office Communications Server 2007.
• Outlook Web Access additions, including public folder access, S/MIME support, personal distribution lists, and mailbox rules editor.
• Webready document viewer supports Microsoft Office 2007 documents in addition to Microsoft Office 2003 documents.
• Extended language support in Outlook Web Access with Arabic and Korean spell checking.
Operational Efficiency
• Support for Windows Server 2008 deployments, including benefits in flexible clustering, native virtualization, advanced networking, and simplified management.
• Additional tools in the Exchange Management Console, including public folder management and configuration options for clustering and POP/IMAP access.
• Improvements to the Exchange Management Shell syntax and import-export PST in the move-mailbox command.
• Wider variety of web services for application development, including public folder access, delegate management, and folder level permissions.
Built-in Protection
• Addition of Standby Continuous Replication (SCR) for site resilient high availability deployments.
• Extended Exchange ActiveSync policies for mobile policy enforcement.
• Information rights management pre-licensing by the Hub Transport role.
• Secure Real Time Protocol (SRTP) support in the Unified Messaging role.
• Support for IPv6 when using Windows Server 2008.
You can find all the Exchange 2007 SP1 documentation and resources on the following links:
- Exchange 2007 Service Pack 1 Download
- What's New in Exchange Server 2007 Service Pack 1
- Exchange 2007 Service Pack 1 Release Notes
- Exchange 2007 Service Pack 1 UM Language Packs
- Exchange 2007 Service Pack 1 SDK
- Exchange 2007 Service Pack 1 documentation
- How to Upgrade to Exchange 2007 SP1
- Upgrading Clustered Mailbox Servers to Exchange 2007 SP1
[KEY NOTES]
1. Need to Upgrade Forefront Security for Exchange to SP1 before installing the Exchange 2007 SP1
Do bear in mind that the Exchange 2007 Service Pack 1 release notes mention that you cannot use the Exchange 2007 SP1 with the product Forefront Security for Exchange RTM. You should upgrade the ForeFront Security for Exchange to SP1 before upgrading Exchange 2007 to SP1.
The Exchange 2007 SP1 pre-installation check will verify this and stop the installation process if the Forefront Security for Exchange RTM is found.
Forefront Security for Exchange SP1 is available on the link below:
Microsoft Forefront Security for Exchange Server with Service Pack 1
Microsoft Forefront Security for Exchange Server with Service Pack 1 Release Notes
2. You cannot manage Exchange 2007 Clustered Mailbox Servers from Windows Vista RTM
At the moment, Exchange 2007 SP1 adds support to use the Exchange 2007 Management Tools on Windows 2008 RTM and Windows Vista RTM with one exception, you will not be able to manage Exchange 2007 Clustered Mailbox Servers from Windows Vista RTM machines.
It is expected that in a forthcoming Administration Tools for Windows Vista (I believe that it will be included in Windows Vista SP1) you will be able to manage Exchange 2007 Clustered Mailbox Servers (Failover Clustering: RSAT-Clustering).
You can check this information on the technet article Upgrading Clustered Mailbox Servers to Exchange 2007 SP1.
Managing Clustered Mailbox Servers Running Exchange 2007 RTM or Exchange 2007 SP1
You can use the Exchange 2007 RTM version of the Exchange management tools (the Exchange Management Console and the Exchange Management Shell) to manage clustered mailbox servers running Exchange 2007 RTM from a computer running Windows Server 2003 or Windows XP.
You can use the Exchange 2007 SP1 version of the Exchange management tools to manage clustered mailbox servers running Exchange 2007 SP1 from a computer running Windows Server 2008, Windows Server 2003, or Windows XP. Remote management of clustered mailbox servers using Windows Vista is currently not possible. Remote management from Windows Vista may be possible in a forthcoming Administration Tools Pack for Windows Vista. You can manage stand-alone computers running Exchange 2007 SP1 from Windows Vista.
Because the Cluster service does not allow you to use the cluster management tools for remote administration of failover clusters across different operating systems, you can't use the Exchange management tools for remote administration of failover clusters across different operating systems. For example, you cannot:
- Manage a clustered mailbox server running on Windows Server 2008 from a computer running Windows Server 2003 or Windows XP.
- Manage a clustered mailbox server running on Windows Server 2003 from a computer running Windows Server 2008.
Luís Rato
