<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Practical Issues in InfoSec &#187; Uncategorized</title>
	<atom:link href="http://www.dlstrom.com/category/uncategorized/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.dlstrom.com</link>
	<description>... putting information security within reach of everyone!</description>
	<lastBuildDate>Tue, 20 Dec 2011 17:00:00 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
		<item>
		<title>What I&#8217;ve Been Reading &#8211; August 21, 2011</title>
		<link>http://www.dlstrom.com/2011/08/21/what-ive-been-reading-august-21-2011/</link>
		<comments>http://www.dlstrom.com/2011/08/21/what-ive-been-reading-august-21-2011/#comments</comments>
		<pubDate>Sun, 21 Aug 2011 18:00:37 +0000</pubDate>
		<dc:creator>Dan Strom</dc:creator>
				<category><![CDATA[Uncategorized]]></category>

		<guid isPermaLink="false">http://www.dlstrom.com/?p=473</guid>
		<description><![CDATA[Last week&#8217;s list was short due to being out of town. Here&#8217;s this week&#8217;s list o&#8217; links I found interesting&#8230; Monday, August 15, 2011 I remember way too many of these things &#8211; 30 years of PCs (slideshow) pentestmonkey.net had a post pointing me to A Sysadmin&#8217;s Unixersal Translator. It&#8217;s useful&#8230; It will be interesting [...]]]></description>
			<content:encoded><![CDATA[<p></p><div class="socialize-in-content" style="float:right;"><div class="socialize-in-button socialize-in-button-right"><a href="http://twitter.com/share" class="twitter-share-button" data-url="http://www.dlstrom.com/2011/08/21/what-ive-been-reading-august-21-2011/" data-text="What I&#8217;ve Been Reading &#8211; August 21, 2011" data-count="none" data-via="danstrom" data-related="danstrom"><!--Tweetter--></a></div><div class="socialize-in-button socialize-in-button-right"><iframe src="http://www.facebook.com/plugins/like.php?href=http://www.dlstrom.com/2011/08/21/what-ive-been-reading-august-21-2011/&amp;layout=standard&amp;show_faces=false&amp;width=50&amp;action=like&amp;font=arial&amp;colorscheme=light&amp;height=65" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width:50px !important; height:65px;" allowTransparency="true"></iframe></div></div><p>Last week&#8217;s list was short due to being out of town.</p>
<p>Here&#8217;s this week&#8217;s list o&#8217; links I found interesting&#8230;</p>
<p><strong>Monday, August 15, 2011</strong></p>
<p>I remember way too many of these things &#8211; <a href="http://www.extremetech.com/computing/92640-ibm-personal-computer-its-30-year-legacy-slideshow">30 years of PCs (slideshow)</a></p>
<p><a href="http://pentestmonkey.net/">pentestmonkey.net</a> had a post pointing me to <a href="http://bhami.com/rosetta.html">A Sysadmin&#8217;s Unixersal Translator.</a> It&#8217;s useful&#8230;</p>
<p>It will be interesting to see how this affects other manufacturers of Android devices &#8211; <a href="http://googleblog.blogspot.com/2011/08/supercharging-android-google-to-acquire.html">Supercharging Android: Google to Acquire Motorola Mobility</a></p>
<p>And if you cannot get enough of K-State sports, we&#8217;ve now got this &#8211; <a href="http://kstatesports.cstv.com/genrel/081511aaa.html">K-State Announces Ground-Breaking Launch of K-StateHD.TV</a></p>
<p>Note the subtle jab at Microsoft &#8211; <a href="http://daringfireball.net/linked/2011/08/11/china-apple-stores">Chinese Authorities Find 22 More Fake Apple Stores</a></p>
<p><strong>Tuesday, August 16, 2011</strong></p>
<p>I like this &#8211; inside information on Windows 8 as it is being developed. &#8211; <a href="http://blogs.msdn.com/b/b8/">Welcome to Building Windows 8</a></p>
<p><strong>Wednesday, August 17, 2011</strong></p>
<p>This interesting. It makes me wonder how this can be applied to companies&#8230; &#8211; <a href="http://mashable.com/2011/08/17/music-location/">How Musicians Are Engaging Fans With Location Tech</a></p>
<p>Yeah. I get tired of replacing batteries in my keyboard. May have to get one of these &#8211; <a href="http://www.logitech.com/keyboards/keyboard/devices/wireless-solar-keyboard-k750-mac">Logitech Wireless Solar Keyboard K750 for Mac®</a></p>
<p>No real surprises in this report, but just a reminder of what still needs to be done &#8211; <a href="http://www.csoonline.com/article/688128/2011-state-of-the-cso">2011 State of the CSO</a></p>
<p><strong>Thursday, August 18, 2011</strong></p>
<p>Could this be why Google bought Motorola? (from @martynasn on twitter)<br />
- Larry, you&#8217;ve asked to buy Motorola. It&#8217;s done.<br />
- Which model?<br />
- Model?!</p>
<p>We&#8217;re all concerned about social media usage in schools. &#8220;Here are some guidelines for educators using social media effectively while maintaining professional boundaries.&#8221; &#8211; <a href="http://mashable.com/2011/08/18/social-media-students/">3 Tips for Teachers Using Social Media in the Classroom</a></p>
<p>It&#8217;s not unusual for OS patches to cause problems. That is why many companies have policy that OS or program updates should be tested thoroughly before installing on production systems. &#8211; <a href="http://isc.sans.edu/diary.html?storyid=11401">When Good Patches go Bad &#8211; a DNS tale that didn&#8217;t start out that way</a></p>
<p>You&#8217;ve seen it in the store and been curious about this&#8230; &#8211; <a href="http://electronics.howstuffworks.com/gadgets/home/dyson-bladeless-fan.htm">How the Dyson Bladeless Fan Works</a></p>
<p>90% of the email I receive violates these <a href="http://www.inc.com/guides/201108/7-tips-for-writing-e-mails-that-wont-get-deleted.html">7 Tips for Writing E-mails That Won&#8217;t Get Deleted</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.dlstrom.com/2011/08/21/what-ive-been-reading-august-21-2011/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>5 Reasons InfoSec Is Like Basketball</title>
		<link>http://www.dlstrom.com/2009/11/05/5-reasons-infosec-is-like-basketball/</link>
		<comments>http://www.dlstrom.com/2009/11/05/5-reasons-infosec-is-like-basketball/#comments</comments>
		<pubDate>Thu, 05 Nov 2009 14:00:00 +0000</pubDate>
		<dc:creator>Dan Strom</dc:creator>
				<category><![CDATA[Uncategorized]]></category>

		<guid isPermaLink="false">http://www.dlstrom.com/?p=288</guid>
		<description><![CDATA[Basketball season is just ramping up at the collegiate level. After watching a game last night, I realized that there are at least 5 reasons why information security is like basketball. Focusing on the small business, here goes&#8230; Success requires more than just one person. We&#8217;ve all seen teams that tried to rely solely on [...]]]></description>
			<content:encoded><![CDATA[<p></p><div class="socialize-in-content" style="float:right;"><div class="socialize-in-button socialize-in-button-right"><a href="http://twitter.com/share" class="twitter-share-button" data-url="http://www.dlstrom.com/2009/11/05/5-reasons-infosec-is-like-basketball/" data-text="5 Reasons InfoSec Is Like Basketball" data-count="none" data-via="danstrom" data-related="danstrom"><!--Tweetter--></a></div><div class="socialize-in-button socialize-in-button-right"><iframe src="http://www.facebook.com/plugins/like.php?href=http://www.dlstrom.com/2009/11/05/5-reasons-infosec-is-like-basketball/&amp;layout=standard&amp;show_faces=false&amp;width=50&amp;action=like&amp;font=arial&amp;colorscheme=light&amp;height=65" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width:50px !important; height:65px;" allowTransparency="true"></iframe></div></div><p>Basketball season is just ramping up at the collegiate level. After watching a game last night, I realized that there are at least 5 reasons why information security is like basketball.</p>
<p>Focusing on the small business, here goes&#8230;</p>
<ol>
<li>
<strong>Success requires more than just one person.<br />
</strong></p>
<p>We&#8217;ve all seen teams that tried to rely solely on one star player. They may have wins and that star player will have some tremendous stats, but often the team falters in the critical times, or in the playoffs. </p>
<p>Similarly, there may be an InfoSec star at your business. But, everyone needs to be involved. The owners or top executives set direction and provide support. The technical staff should be cross-trained and understand how they work together. Users should be made aware of the role they play in safeguarding the company assets.</li>
<li>
<strong>Everyone needs to work together.<br />
</strong></p>
<p>Have you seen a basketball team play and there are a few players that &#8220;haven&#8217;t seen a shot they won&#8217;t take&#8221;? That causes frustration and soon more players play like this.</p>
<p>Protecting the assets of the company require that each person understand their role and responsibilities, and how they work together. One person may be the server guru and another the network dude and yet another the workstation expert. But when an incident arises, they need to be able to work together with a practiced response. There is no time to ego to get in the way.</li>
<li>
<strong>Fundamentals are important.<br />
</strong></p>
<p>There is a reason why teams practice shooting, dribbling and running plays. Fundamentals can be the difference between winning and losing.</p>
<p>Likewise, the fundamentals of information security should be practiced. Layer the defenses. Train the users and tech staff. Encrypt data. Lock the doors. De-activate accounts when people leave. Review logs. Follow good practices.</li>
<li>
<strong>Someone needs to make the hard decisions.<br />
</strong></p>
<p>In basketball, the coach is the one who makes the hard decisions of who plays and who doesn&#8217;t. He sets the strategy and the game plan.</p>
<p>InfoSec also needs someone to make the hard decisions. I&#8217;m talking policy here. We can help develop the policy, but support for development and following the policy must come from the very top of the command structure. They also must be willing to support policy enforcement. Otherwise, you&#8217;ll end up with multiple individuals trying to convince you to make policy exceptions just for them.</li>
<li>
<strong>Rules are there for a reason.<br />
</strong></p>
<p>Rules allow each basketball team to know exactly what is allowable and what is not. Did that player travel? Was that a foul? Oh, and the referees are there to make sure that the rules are followed.</p>
<p>Businesses are often required to follow a set of information security rules. Do you accept credit cards? Then you need to follow the PCI DSS rules. Are you a publicly traded company? You&#8217;ve got regulations to follow. Are you a financial institution? Regulations, again are a major player. These rules are set in place to protect the company and those it interacts with. InfoSec rules are there for a reason. Be sure to follow them. And, get to know you auditors. They can be very helpful in resolving deficiencies. </li>
</ol>
<p>Basketball and information security&#8230; Who knew they had so much in common?</p>
<p>- Dan</p>
]]></content:encoded>
			<wfw:commentRss>http://www.dlstrom.com/2009/11/05/5-reasons-infosec-is-like-basketball/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>KU vs Michigan State &#8211; March 27, 2009</title>
		<link>http://www.dlstrom.com/2009/03/27/ku-vs-michigan-state-march-27-2009/</link>
		<comments>http://www.dlstrom.com/2009/03/27/ku-vs-michigan-state-march-27-2009/#comments</comments>
		<pubDate>Fri, 27 Mar 2009 16:27:55 +0000</pubDate>
		<dc:creator>Dan Strom</dc:creator>
				<category><![CDATA[Uncategorized]]></category>
		<category><![CDATA[Basketball]]></category>
		<category><![CDATA[NCAA]]></category>

		<guid isPermaLink="false">http://www.dlstrom.com/?p=79</guid>
		<description><![CDATA[I&#8217;ll be watching the KU vs Michigan State game tonight at 8:37pm (CDT), and you can too&#8230; Click Here - Dan]]></description>
			<content:encoded><![CDATA[<p></p><div class="socialize-in-content" style="float:right;"><div class="socialize-in-button socialize-in-button-right"><a href="http://twitter.com/share" class="twitter-share-button" data-url="http://www.dlstrom.com/2009/03/27/ku-vs-michigan-state-march-27-2009/" data-text="KU vs Michigan State &#8211; March 27, 2009" data-count="none" data-via="danstrom" data-related="danstrom"><!--Tweetter--></a></div><div class="socialize-in-button socialize-in-button-right"><iframe src="http://www.facebook.com/plugins/like.php?href=http://www.dlstrom.com/2009/03/27/ku-vs-michigan-state-march-27-2009/&amp;layout=standard&amp;show_faces=false&amp;width=50&amp;action=like&amp;font=arial&amp;colorscheme=light&amp;height=65" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width:50px !important; height:65px;" allowTransparency="true"></iframe></div></div><p>I&#8217;ll be watching the KU vs Michigan State game tonight at 8:37pm (CDT), and you can too&#8230;</p>
<p><a href="http://mmod.ncaa.com/video?gameid=1669945" onclick="window.open('http://mmod.ncaa.com/video?gameid=1669945', 'mmodvideo', 'resizable=0, scrollbars=0, directories=0, location=0, menubar=0, status=0, toolbar=0, width=1000, height=630'); location.href = 'http://www.dlstrom.com'; return false;">Click Here</a></p>
<p>- Dan</p>
]]></content:encoded>
			<wfw:commentRss>http://www.dlstrom.com/2009/03/27/ku-vs-michigan-state-march-27-2009/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

