September 19, 2006 1:07 PM PDT
Rivals skirmish with Microsoft over Vista security
- Related Stories
-
Vista's European battleground
September 18, 2006 -
Near-final Windows Vista version issued
September 1, 2006 -
More security bang for fewer bucks
August 29, 2006 -
Microsoft moves closer to new browser release
August 24, 2006 -
Windows defense handcuffs good guys
August 10, 2006 -
Chills at Microsoft's security huddle
July 24, 2006 -
Microsoft swims upstream on security
June 22, 2006 -
Microsoft shakes up security fray
June 7, 2006 -
ZoneAlarm adds ID theft protection
June 5, 2006 -
Tool helps programs befriend Vista
May 24, 2006 -
Beware the Microsoft 'monoculture'
May 18, 2006 -
EU voices concerns over Microsoft's Vista
March 29, 2006 -
Windows XP service pack gets face-lift
March 17, 2004
The fight is over the display of technology that helps Vista owners manage the security tools on their PC. Symantec, McAfee, Check Point Software Technologies and other companies want Microsoft to change Vista so their products can easily replace the operating system's built-in Windows Security Center on the desktop. But Microsoft is resisting the call.
"By imposing the Windows Security Center on all Windows users, Microsoft is defining a template through which everybody looks at security," Bruce McCorkendale, a chief engineer at Symantec, said in an interview. "How do we trust that Microsoft knows what all the important things about security are to warn users about?"
Windows Security Center, introduced with Windows XP Service Pack 2, pops up on desktops to alert PC owners if their firewall, virus protection and other security tools need attention. The version in the Vista update, set for broad release in January, will add new categories and management tools.
It is possible to run third-party security consoles in Vista, said Stephen Toulouse, a program manager in Microsoft's Security Technology Unit. However, people have to manually disable the Windows Security Center if they don't want to use it. And the software giant has no plans to give other companies the ability to turn off the Windows Security Center, Toulouse noted.
"Our main concern is to provide customers with a fall-back option if there is no other security center running," he said.
If the differences aren't worked out, it could spell annoyance for consumers, the rival security companies say. People who choose to use Microsoft's console alone will get a limited view of their Vista PC protection, they suggest. Those who buy competing software will have to run it alongside Microsoft's dashboard, which could report conflicting information. Rivals have charged that the Redmond, Wash.-based software giant is hurting consumers, raising the specter of more antitrust complaints for Microsoft.
"Microsoft's Windows Security Center demonstrates fairly limited sophistication, and having (it) control the console could take away the consumer's visibility into the threats he faces," said Siobhan MacDermott, a spokeswoman for McAfee. "Ultimately, it's something the consumer should decide, not Microsoft."
Jostling for position
Tensions are flying high in the security space after Microsoft, with its $34 billion war chest, entered the market. It launched Windows Live OneCare for consumers and is readying enterprise security products. With its huge presence on desktops, the software giant has a built-in advantage--one that is making other security companies nervous. European antitrust regulators are closely watching Microsoft.
Security companies have already fought several battles over Vista similar to the one about Windows Security Center. Some they won. Most recently, Microsoft added the ability for third-party products to turn off Windows Defender spyware protection in Vista, rather than requiring the PC user to do it. Earlier, it provided the same functionality for the Windows Firewall. In both cases, Microsoft has asked security companies to re-enable the Windows defenses if their products are removed from a PC.
A dispute still exists over "PatchGuard," a security feature that Microsoft says is designed to guard core parts of the 64-bit version of Vista, but which critics say locks out helpful software from security rivals.
And then there is Windows Security Center, which sits in the Windows Control Panel and pops up any time there is a security alert, such as when antivirus protection is disabled or the firewall is turned off. Microsoft is beefing up the console in the successor to XP, and refers to it as the "voice of security for Windows Vista."
In Vista, the security dashboard will add reports on spyware protection, Internet security settings, and Windows security technology called "User Account Control."
Another change in Vista is that Windows Security Center will be used to manage the security software, in addition to reporting on it. For example, a PC user could update antivirus definitions or disable a firewall directly from the Windows Security Center, according to a recently published Microsoft document on the feature.
This could give rivals the opportunity to change tack and focus on developing products that plug into Microsoft's security dashboard, rather than continuing to produce their own, Toulouse suggested. "They might not need to have their own security center anymore," he said. "It is our hope that they build products that connect into Windows Security Center."
See more CNET content tagged:
Check Point Software Technologies Ltd.,
Stephen Toulouse,
Microsoft Windows Vista,
security company,
security tool

Seems to me that NO OTHER INDUSTRY is forced, under point of the judicial gun, to expose it's complete secrets, to give competing companies (AOL and/or Netscape on the desktop instread of MSN & IE.) the RIGHT to rip out parts of a product in favor of it's own, and to have to submit for jusdicial approval almost ANY additions/improvements to a product that may add value and convenience to the consumer.
I say we SUE General Motors tomorrow for refusing to allow me to replace their engines with FORD engines, and still DEMAND that they fully warranty the vehicle.
Sounds silly applied to other industries, yes?
You make it sound like Symantec is the culprit here.
Sure you mentioned others, but you only named Symantec.
What about NetScape? What about Sun's Java, What about WinZIP? What about ZoneAlarm? And what about ALL THE OTHER products which Microsoft continues to trample on?
Are they ALL out to weaken Microsoft? (* ROFLOL *)
On the other hand, what about Apple? What about all the Linux flavors? What about Unix? What about all the other Operating Systems out there?
Are they LESS secure because they don't included other applications with thier operating system?
The inherient flaws in Micrsoft are not that the Operating System doesn't have pre-installed security on it... but the flaws are in the Operating System itself.
Even with Microsoft's Firewall and AntiVirus software and any other security contraption Microsoft wants to include... they still ahve a very security-wise weak operating system.
And every application they bundle on top of that insecure operating system just adds to the number of security flaws of their product.
The END USER should be allowed to determine what applications they want to run and what applications they don't want to run.
For the ones they want to run, they should purchase them separately and install them separately just like the rest of the world's oeprating systems!
Likewise, Microsoft's approach runs counter to C2 security which states that ALL unnecessary applications and protocols should be stopped. For those using NON-Microsoft security products... we must go in and uninstall all of Microsoft's pre-installed crappola to make our systems C2 security compliant!
So if you want to continue bashing Symantec... then (* LOL *) but you're barking up the wrong tree!!!
Walt
Keep it simple, keep it similar and keep it from sucking the life from our system.
Robert
"software giant has a built-in advantage--one"
This is a product category that MS should have made their own a long time ago. Given that there are inevitable bugs in code, louts and unscrupulous people will write exploits and that regression testing a proper fix takes a lot of time MS should have been providing this kind of software to protect against known and unknown exploits years ago. Securing their own OS is a thing MS should be doing instead of leaving it to the user to find someone else to do it.
The only reason Symantec became so popular with the CPU and memory hogging security tools they offer is because they were riding on the Microsoft bandwagon.
But as much as I dislike Symantec... they are a security provider. And they are no longer riding the Microsoft bandwagon because Microsoft has kicked them off just like they kicked McAfees off in the past.
Bottom Line: Riding Microsoft's Bandwagon relinquishes a vendor's need to stay sharp and keep towards competition because they're being delivered as a de-factor standard on all shipped Microsoft pre-installed products!
That is anti-competitive for those not riding the Microsoft Bandwagon.
Thus Microsoft stifles their competition by keeping the one's they're interested in close at hand for starters (while pulling them around on the Microsoft Bandwagon) long enough for Microsoft to wean off the information/technology they want/need to come out with their own competitive product. At such time, Microsoft kicks them off of the Microsoft Bandwagon and replaces their own product on that Bandwagon continuing to be anti-compatitive to those not on the Microsoft Bandwagon.
It's just a repeated repeated repeat of Microsoft history all over again, and again, and again.
Why people continue to put up with Microsoft's anti-competitiveness is totally beyond me.
Walt
As for McAfee, a recent IDG News Service article states "McAfee has apologized to users for bugs in the company's new line of client protection software, released last month."
Do we really want these incompetent clowns screwing around with the Windows Vista Security Center?
McAfee which I haven't tried in 6 years was so bloated it slowed XP.
But I guess its to be expected, big companies with over paid execs and to few talented support staffs.
After 5 years of symantec its time to switch.
as to their complaint, a security system works with a op system, it doesnt control it. an example: if you need to do a restore on xp, you have to turn off the "symantec protection first"
Guess I just feel like complaing today
"
That's Monopoly power, abuse of it, and not fair competition.
Wasn't this supposedly resolved in the Antitrust trial that
Microsoft lost? The remedy review/oversight was just renewed
for a few more years, right?
That first quote sounds like what Mac users have said for years.
When it hits your own home, that's when people get a different
perspective.
This is Antitrust all over. And we thought they were kinder and
gentler. Remember, they are responsible for a large part of the
security problem themselves. So now they !@#$* somebody else
to aleviate
Are you trying to say keep it unsecure to allow competition?
maybe if microsoft is allowed to fully control security we would get a secure product?
tell the other vendors sorry but no thanks we can handle it
Thought not. Run along little child, stop spouting garbage that you don't understand
That's flat wrong and only shows how little you know. Windows NT which all current versions of Windows were based on was written to be very secure from the ground up. It's not the underlying foundation which is insecure, it's all the myriad APIs and the rest which sit on that foundation which have provided so many areas to exploit. The underlying foundation for Windows was actually designed to be more secure than Unix and if they hadn't had to make the system backwards compatible with the older Dos based Windows that security could have been built on to make a truly secure OS. Think of it as lost potential.
Have the third party vendors just plug into that, thats really all that is needed?
Have you ever seen any of these product suites running fully on a system? Talk about crap bugging the user every 2 seconds saying you need to update or firewall risk please allow, firewall risk please allow.
Its all crap, most users just end up clicking anything that pops up.
Nope sorry but the future of windows security is to have it be simple, non obtrusive and just work.
Red is bad
Yellow is check
green is good
That is all that is needed
Please Microsoft, stand your ground on this and repel the crap overly controlling totally irrating way of handling security
simple is bliss
This model came preinstalled with a trial version of McAfee security center. Every time I started the computer, it would show a startup screen, would take more than a minute just to load all it's services and would show a warning message every few minutes.
Every time I wanted to disable it, I got a message that I have to register on McAfee website first! Why? Will this give me personalised protection according to my surfing behaviour? I didn't register because it was not my laptop and I had it for few days only, but those popups became annoying day by day.
The worst part was that it managed to get infected by a trojan despite the elaborate services. Finally, I had to reimage it using Dell's built-in norton ghost image.
Whatever the software people use, it should be helpful, not obtrusive... It should not force people to register for no apparent reason, shouldn't slow down my system, during startup or otherwise.
I use a corporate edition of NAV 9 and didn't have a virus in three years since I started using it. I have seen pop-ups only 2-3 times till now, when it found some virus in email attachments. I'm not saying it's the best product to have, but it is much better compared to the fancy software that is sold for home users.
Simple as that.
Yea, I'll probably get Vista, and I'll probably use MS defender, once Zone Labs folds, just because I want a 64 bit system, though probably not on release day; to blasted expensive to afford it just yet.
The bottom line is the vendor in the best position to secure the OS is the OS vendor. Now that MSFT has finally decided to do that, crapware security vendors need to find a new business model.
That statement just shouts out "I have no idea about security!!!"
One of the most basic ideas behind securing any system is that nothing is secure and everything changes. To harp on about how secure an OS and how "crapware security vendors need to find a new business model" before it has even been released shows a real lack of technical expertise.
A OS vendor who is serious about security would concentrate on securing their underlining OS before wasting time and resources duking it out on firefighting products and gimmicks such as their "Security Center".
red is bad
yellow is check
green is good
Thats all we need, simple, simple
Your average Joe wants to be able to install their preferred security software and have full access to its functionality with minimum effort.
If Microsoft force you as a user to use their interface then they are restricting your choice. You should be allowed to choose what you wish to use. I fully understand that companies such as McAfee et al are fighting for their corner and not us as the user, but if the end result is more choice for the consumer then that in my opinion is a good thing.
Before all of you {insert company name here} fan-boys/haters have a go at whats going on here think about yourself as the paying consumer first.
if security can be a monopoly by trying to make you OS as secure as possible by not letting crapware access to vital areas then are you suggesting Microsoft leave holes in there OS in order to be competitive?
Do you really think that if they did and a virus managed to get by and it was AV vendors fault that anyone would listen to that? They would not they would say Vista is insecure! When in reality its the AV
Both symantec and mcafee and trendmicro have let hundreds of viruses by there defenses, its well documented
There are enough bugs in all MS software to feed every venus flytrap in the world for the next 100 years. Why would you want MS to protect your personal information from theives when all they do is buy out the court system and politicians everytime they have a legal dispute. Does that sound like security to you?!
On the downside, it could reduce consumer choices should it eliminate McAffee and Norton as security alternatives.
I have used Macs for the past THIRTEEN YEARS (My company
employs 700 people - turnover £40M) and I have NEVER, repeat
NEVER, had a single virus or piece of malware.
When is enough enough?
- Read the Story..They DO provide a choice.
-
by bettencourtt
September 21, 2006 12:15 PM PDT
- Siobhan MacDermott, a spokeswoman for McAfee. "Ultimately, it's something the consumer should decide, not Microsoft."
-
Reply to this comment
-
-
- YeeeeeHaaw!!!
-
by David Arbogast
September 21, 2006 2:17 PM PDT
- <<What a stinking, no-good, snake-in-the-grass, yellow-bellied, shiftless, beady-eyed, four-flushing, HYPOCRITE!!!!>>
-
-
- 100% Agree!!!
-
by Mendz
September 21, 2006 8:49 PM PDT
- Says it all... Very well said... :)
-
-
- Co-Sign
-
by HecticDialectics
September 22, 2006 6:22 AM PDT
- Agreed.
-
-
- This guy gets it.
-
by news_reader
September 22, 2006 10:00 AM PDT
- Well said, and bonus points for comedy.
-
-
See all 76 Comments >>What a stinking hypocrite. He wants the ability to take my choice away by turning off MS's product, and turning his on. Probably, without teling me that they are going to.
Yes, you are absolutely right, Mr. MacDermott. THE CONSUMER should decide, not Microsoft, and NOT MCAFEE, and NOT SYMANTEC.
That is exactly why MS gave THE CONSUMER the ability to turn it off. ME, and ME ALONE. Not you. If you want to recommend that I use yours instead of the MS version, then ASK ME FIRST, and IF I click <YES> then, ever-so-helpfully, provide step-by-step instructions on how I might go turn it off, and yours ON.
By golly, that actually DOES provide us a choice, doesn't it? But Mr MacDermott would have that choice he is bleating over taken away from us. What a stinking, no-good, snake-in-the-grass, yellow-bellied, shiftless, beady-eyed, four-flushing, HYPOCRITE!!!!
By golly... if you are going to participate in name-calling, GIVE 'EM HELL!
LoL... that cracked me up... thanks.
(I do agree, BTW)