Microsoft Partner - Channel Insider
Empowering the next generation Channel
 

Bull’s Eye Awards
Nominations Open for Channel Insider 2009 Bull’s Eye Awards
Nominations are now open for the Channel Insider 2009 Bull’s Eye Awards, which recognize excellence in customer service, technology prowess, business acumen, channel leadership, communications and community building, and innovation among vendors, solution providers, distributors and channel services companies.



Sponsored Links
  • Control VM Sprawl, What You Don’t Know Can Hurt You
  • FREE Sophos Encryption Tool: Encrypt, compress and share files easily
  • LSI 6Gb/s Portfolio Expands to Include SATA+SAS HBAs
  • Reduce the cost of managing your mobile workers.
  • Find out 7 Ways to Drive Data Center Efficiency
  • SonicWALL breaks through network and email gridlock
  • Save up to 40% on calling costs with Avaya Aura™



  •  

    Microsoft IE Patch Opens New Opportunities

    in Microsoft Partner


    Article Rating:starstarstarstarstar / 11
    Article Views: 6814

      Table of Contents:
    1. Microsoft IE Patch Opens New Opportunities
    2. Patch Opens New Engagement Opportunities

    Rate This Article:
    Add This Article To:
    Microsoft IE Patch Opens New Opportunities - Patch Opens New Engagement Opportunities
    ( Page 2 of 2 )

    The automated nature of this fix doesn’t means solution providers have to sit on the sidelines. Solution providers should be calling their customers to discuss the severity of the security flaw, discuss remediation options and validate whether or not a PC has been affected. With a security flaw this severe, due diligence is of the utmost importance.

    Once a customer understands the severity of the threat, it will be up to the solution provider to offer some advice and take some action. At the very least, automatic updating of the PC should be enabled, so this security patch and others are delivered automatically. Solution providers can use that as a catalyst to sell patch management solutions to their customers. Patch management solutions are available from vendors such as Shavlik, Ecora, Symantec, Numara, GFI and many others. Some solution providers can offer to go one step further and offer managed services to handle patching, removing all worry from the customer.

    Resource Library:

    Initial tests by Channel Insider have shown that Microsoft’s fix to the problem works reasonably well and doesn’t seem to break any other functionality in the browser. Patch management solutions usually validate patches before hand to make sure that a patch doesn’t damage any existing applications, which in this case would offer a welcome increase in comfort.

    Another opportunity for solution providers comes in the form of remediation. Being as it is quite difficult to determine if a PC has been compromised by the IE flaw, best practices dictate that a system should be tested for malware and then fixed if infected. Solution providers can use Microsoft’s own Windows Malicious Software Removal Tool as a starting point for system remediation.

    Although the Windows Malicious Software Removal Tool is a good starting point, it’s not the end all, be all of remediation. Here, solution providers should turn to advanced products such as those available from AVG, Symantec, McAfee, Trend Micro and others for complete anti-malware products. The real goal here should be to remediate the system and install a complete desktop security suite, which offers secure browsing and anti-phising protection.

    Solution providers can go one step further and offer up to their customers a hosted and managed security service, such as what is available from PureWire or Trend Micro. Those solutions incorporate inline scanning, along with anti-malware detection and prevention and can prevent exploits from impacting a customer, regardless of patch status.
     
    Solution providers will find some other tips for dealing with the problem quite useful and could lead to some networking integration work. For example, PCs that don’t allow users to have administrative privileges are less likely to be impacted. Here, solution providers can define policies to limit a user’s access on the PC, a good practice to implement regardless of the flaw.

    Solution providers will find that the news here isn’t all bad, many of the anti-malware companies have announced that their products have protected users from the IE flaw. Symantec, AVG, and a few others claim that their respective “safe browsing” technologies protect users from harm.

    The real lesson here for solution providers is to use this flaw as a method to offer services and enhance current security offerings. At the very least, solution providers should be calling their customers to either let them know not to worry (they are already protected) or to offer help to solve the potential problems caused by IE’s latest flaw and perhaps pitch improved security products and services.



     
     
    >>> More Microsoft Partner Articles          >>> More By Frank Ohlhorst
     


     


    [ci] feeds
    XML
    Add Channel News, Product Reviews, Trends and Analysis to your RSS newsreader or My Yahoo!


    HTML PLAIN TEXT

    Keep on top of news for VARs and Resellers with CI's Weekly Newsletter and Alerts.

     


    CHANNEL RESOURCE CENTER
     
     
    Enterprise Mobility Zone
    The Enterprise Mobility Zone (EMZ) blog is a tool designed to help senior IT executives discuss, create and deploy next-generation mobile strategies in their organizations.
    Go beyond yesterday's tactical approach to mobility!
     
    Build A More Efficient Data Center
    Demands are growing but budgets are not. Solve your pressing IT issues using the resources you already have. Determine which technologies can help you drive efficiencies and how they are applied. Gain a quick ROI on new initiatives
    Find out how
    Let Enterprise TechBrief do the work for you. Aggregated content, tech news, product reviews, vendor updates, how-to’s—all you need to boost your efficiencies and cut costs, all from one place.
    enterprisetechbrief.com