YOUR FEEDBACK
Immo Huneke wrote: A well written article, an ingenious solution to a real problem often encountere...
Cloud Computing Conference
March 30 - April 1, New York
Register Today and SAVE !..

SYS-CON.TV

2008 East
DIAMOND SPONSOR:
Data Direct
Frontiers in Data Access: The Coming Wave in Data Services
PLATINUM SPONSORS:
Red Hat
The Opening of Virtualization
Intel
Virtualization – Path to Predictive Enterprise
Green Hills
IT Security in a Hostile World
JBoss / freedom oss
Practical SOA Approach
GOLD SPONSORS:
Software AG
The Art & Science of SOA: How Governance Enables Adoption
PlateSpin
Effective Planning for Virtual Infrastructure Growth
Fujitsu
Automated Business Process Discovery & Virtualization Service
Ceedo
Workspace Virtualization
Click For 2007 West
Event Webcasts

2008 East
PLATINUM SPONSORS:
Appcelerator
Think Fast: Accelerate AJAX Development with Appcelerator
GOLD SPONSORS:
DreamFace Interactive
The Ultimate Framework for Creating Personalized Web 2.0 Mashups
ICEsoft
AJAX and Social Computing for the Enterprise
Kaazing
Enterprise Comet: Real–Time, Real–Time, or Real–Time Web 2.0?
Nexaweb
Now Playing: Desktop Apps in the Browser!
Sun
jMaki as an AJAX Mashup Framework
POWER PANELS:
The Business Value
of RIAs
What Lies Beyond AJAX?
KEYNOTES:
Douglas Crockford
Can We Fix the Web?
Anthony Franco
2008: The Year of the RIA
Click For 2007 Event Webcasts
TOP THREE LINKS YOU MUST CLICK ON


Misconfiguration Named Number One Security Risk to Virtualization Environments
Accountability for Virtualization Security a Tug of War, According to Tripwire Survey

 

Tripwire recently surveyed enterprise IT professionals to assess how vigorously virtualization is expanding within production server environments and to measure how security, change controls and compliance requirements are keeping pace. According to the survey report, "Is Virtualization Under Control: Current Opinions on Security and Controls for Virtual Servers in Production Environments," virtualization has clearly gained a lasting foothold. However, who shoulders the responsibility for ensuring that security and controls are implemented across virtual infrastructure is open for debate, varying greatly between functional groups.

More than 90 percent of those interviewed said that virtualized servers are now deployed in their production environments. In fact, three of four respondents reported that up to half of all their production servers are now virtualized.

While more than 80 percent of respondents said their change management and compliance controls are no different between physical and virtual infrastructure, and 26 percent felt security controls for virtualized servers are actually more stringent, responses indicate that a "tug of war" may be underway over who is accountable for security and controls for virtual servers. Just half of those surveyed felt that ensuring security, change control, and compliance for virtual servers is the responsibility of system administrators and their management. On the other hand, 37 percent of those associated with the Security group claim responsibility for security controls.

Moreover, a serious issue waits for some organizations deploying virtual servers in production environments. The majority of respondents agree that security risks for virtual servers are the result of misconfiguration, not inherent weaknesses of virtualization technology.

"If an increasingly overworked IT staff is more likely to make mistakes, and configuration errors are the cause of security exposures in virtual servers, then IT management must consider how they can mitigate this risk," said Mark Gaydos, Tripwire VP of Marketing. "As more of the production workload becomes virtualized and those managing virtual servers continue to be overwhelmed, it is apparent that automated configuration control must play a larger role to ensure appropriate server configuration and adequate security." In fact, a majority (69 percent) of respondents agreed that a dedicated configuration tool is needed to ensure proper configuration of virtualized servers, with two-thirds of these respondents noting they are in the process of evaluating or planning to acquire such a tool over the next 12 months.

The Tripwire survey report, "Is Virtualization Under Control: Current Opinions on Security and Controls for Virtual Servers in Production Environments," can be downloaded for free at http://www.tripwire.com/solutions/virtualization.cfm.

About Virtualization News Desk
SYS-CON's Virtualization News Desk trawls the news sources of the world for the latest details of virtualization technologies, products, and market trends, and provides breaking news updates from the Virtualization Conference & Expo.

LATEST AJAXWORLD RIA STORIES
Indigo Eight Software's release of AjaxPDF 2.5 lets thousands of DotNetNuke 4.x users view PDF documents in-line. Once installed, choose the PDF document to display, apply any of the optional security settings and the PDF document appears in-line within the Dot Net Nuke site. Thi...
More than a thousand sites are using Facebook Connect, says Mike Vernal, a member of the Facebook Platform engineering team, in this Exclusive Q&A with SYS-CON's Web 2.0 Journal. Some prominent examples Vernal mentions include Citysearch for local reviews, Joost and Vimeo for vid...
MuleSource has announced a partnership with FastConnect that will provide Mule architecture and implementation services throughout the French market. FastConnect spans the domains of data and service integration, through to the user interface, using technologies such as SOA, dist...
Synology has announced the availability of its Disk Station Manager 2.1 beta which further utilizes AJAX technology, adds new mail server capability with 1-click installation Mail Station add-on, enhances the Synology Surveillance Station, storage management, user management, and...
Let’s face it - 2008 was a real slog. Even the most wide-eyed optimist would agree that this was one year whose end was long overdue. Of course, ringing in the New Year doesn’t somehow wash away what has become a fairly deep recession, but it does symbolize the fresh start th...
SUBSCRIBE TO THE WORLD'S MOST POWERFUL NEWSLETTERS
SUBSCRIBE TO OUR RSS FEEDS & GET YOUR SYS-CON NEWS LIVE!
Click to Add our RSS Feeds to the Service of Your Choice:
Google Reader or Homepage Add to My Yahoo! Subscribe with Bloglines Subscribe in NewsGator Online
myFeedster Add to My AOL Subscribe in Rojo Add 'Hugg' to Newsburst from CNET News.com Kinja Digest View Additional SYS-CON Feeds
Publish Your Article! Please send it to editorial(at)sys-con.com!

Advertise on this site! Contact advertising(at)sys-con.com! 201 802-3021

Click Here

SYS-CON FEATURED WHITEPAPERS

ADS BY GOOGLE