
Security tweaks 'to take years to complete', it says...
By Joris Evers
Published: 23 October 2006 08:45 BST
Antitrust related changes to security in Windows Vista 64-bit will take years to complete and will cause compatibility trouble in the interim, according to Gartner.
Users of security technologies such as host intrusion-prevention systems, or Hips, should postpone buying 64-bit versions of Vista, Gartner analyst Neil MacDonald wrote in a research note published last week. MacDonald also noted many integrated security products today include Hips functionality.
He wrote: "Recognise that many of these products will not deliver full functionality using 64-bit Vista. Do not plan for initial use of 64-bit Vista if you are using incompatible products for which no suitable alternative exists." People should ask their security vendor for Vista compatibility guarantees, he suggested.
In response to antitrust concerns from the European Commission, Microsoft last week said third-party security software will be able to interact with the kernel of 64-bit versions of Vista. Security companies had requested that capability but Microsoft had denied it until it capitulated under pressure from regulators.
Security companies now have unfettered access to the core of 32-bit versions of Windows. But they complained that a kernel shield called PatchGuard in 64-bit versions of Vista, which is intended to stop hackers, blocks security products too (64-bit Windows is expected to eventually supplant 32-bit versions).
While Microsoft has promised to give its security rivals controlled access to the Vista kernel, the programming interfaces to do so still need to be developed.
Ben Fathi, the outgoing corporate vice president of Microsoft’s Security Technology Unit said in a statement: "Our goal is to provide an initial set of documented, supported kernel interfaces in the Windows Vista SP1 [Service Pack 1] timeframe, recognising that this will require collaboration from our industry partners."
Gartner expects SP1 to be released in early 2008 and predicts that more programming interfaces related to the kernel will be delivered with SP2 or later. All these changes could have a negative effect on Vista, MacDonald wrote.
He said: "Any kernel changes may have a 'ripple effect' up the software stack and will require retesting of all of Windows Vista applications."
The timing is much to the dismay of some security companies, including McAfee. Christopher Thomas, a partner at McAfee's Brussels-based law firm Lovells, said in a statement: "Microsoft has not lived up, either in detail or in spirit, to the hollow assurances offered by their top management last week." Vista is scheduled for release to manufacturers in November and for sale to the public in January.
Access to the Vista kernel is one of two concessions Microsoft made. The software behemoth has already provided security companies with a way to disable alerts sent out by the Windows Security Center, if their third-party protective software is installed.
Joris Evers writes for CNET News.com
Microsoft puts XP update on back burner
Vista security powwow lined up
Idle Vista PCs 'to send themselves to sleep'
Vista to get transfer limits to combat piracy
Vista: we're keeping an eye on it, says EC
Microsoft backs down over rivals' Vista access
Vista: Redmond still tweaking Korea versions
Game Developer needed in London to implementation of game designs on our proprietary terminal operating system as well as giving first line technical ...
An IT Support Engineer who will be responsible for supporting Windows Vista is required for an SME in Central London. Windows Vista and Office 2007 ...
You will also need to have some SAP SD and MM experience as well as experience of IDOCS and management of interfaces in to SAP FICO. The ...
CIO50 2008
The silicon.com CIO50 2008 profiles the most influential and innovative tech chiefs in the UK across all industries and organisation size, from the biggest FTSE100 companies to high growth dot-com start ups and the public sector. The list was voted on by the UK CIO community and a panel of experts. Find out more in our latest special report.
Stories from the web...
Copyright ©1995-2008 CNET Networks, Inc. All rights reserved. Top of page
Peter Cochrane Peter Cochrane's Blog: Is convergence a fiction? Or could it finally be happening…
Clive Longbottom Quocirca's Straight Talking: A game of two halves Microsoft Virtualisation scores while its SOA bores...