News
2/3/2009
03:40 PM
George Crump
George Crump
Commentary
50%
50%

Archives Dirty Little Secret

If you have read this blog for any length of time, you know that I am a big believer in archiving. Moving data off primary storage and onto a disk-based archive just makes sense and saves dollars. That said, there is one downside to archiving; you have to really like your choice of archive solutions (software and hardware) because leaving IS painful.

If you have read this blog for any length of time, you know that I am a big believer in archiving. Moving data off primary storage and onto a disk-based archive just makes sense and saves dollars. That said, there is one downside to archiving; you have to really like your choice of archive solutions (software and hardware) because leaving IS painful.For example, if you have e-mail archive software A and want to switch to e-mail archive software B, you are facing a difficult if not impossible migration scenario. In reality, most companies either don't migrate and put up with what they have OR they run parallel systems until the archive under software A's management expires and in archive especially that can be a long time.

The situation is almost always the same for hardware. Some of the solutions that don't use proprietary access like Bycast or Permabit, which use standard NFS/CIFS access, are less difficult, but others can be a challenge, again often leaving the decision to run both systems in parallel or living with what is in place.

Both of these situations made it critical for customers when selecting an archive solution to be very sure of their selection before committing to it fully. The problem is, of course, that production archive solutions are very hard to simulate during evaluation. What is needed is a way out...

Most software solutions that have attempted this are very manual, put stress on the e-mail infrastructure, and do not provide message authenticity. Finally, software companies like Procedo are providing the capability to migrate between both archive software and archive hardware solutions, as well as filling the gap in standard file migration.

Migration of archives is a task that requires a lot of consideration, and the software application that performs this service needs to be aware of those considerations as well. For example, maintaining compliance and chain of custody of the archive during the migration is critical. You built an archive to be prepared for litigation; you don't want your archive migration to expose you to more.

Solutions like this also should provide a "fail-safe" option. If during the migration process you find a weakness in your new archive solution, you need the ability to opt out. Again, you can only test so much -- there is a big difference in evaluating an archive with a couple hundred GB's of test data and a multi-TB archive in production. Solutions like this could have value just in helping you securely evaluate a new archive solution.

Archive migration is one of the key missing ingredients in broader archive adoption. It enables the ability to change your mind and keep up with new innovations in archive software and hardware. This means choice and increased customer satisfaction. Once suppliers know you have a way out, they can't take you for granted.

To understand more about Primary Storage Optimization, register for our Webinar.

Track us on Twitter: http://twitter.com/storageswiss.

Subscribe to our RSS feed.

George Crump is founder of Storage Switzerland, an analyst firm focused on the virtualization and storage marketplaces. It provides strategic consulting and analysis to storage users, suppliers, and integrators. An industry veteran of more than 25 years, Crump has held engineering and sales positions at various IT industry manufacturers and integrators. Prior to Storage Switzerland, he was CTO at one of the nation's largest integrators.

Comment  | 
Print  | 
More Insights
Register for Dark Reading Newsletters
White Papers
Cartoon
Current Issue
Flash Poll
10 Recommendations for Outsourcing Security
10 Recommendations for Outsourcing Security
Enterprises today have a wide range of third-party options to help improve their defenses, including MSSPs, auditing and penetration testing, and DDoS protection. But are there situations in which a service provider might actually increase risk?
Video
Slideshows
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2015-4231
Published: 2015-07-03
The Python interpreter in Cisco NX-OS 6.2(8a) on Nexus 7000 devices allows local users to bypass intended access restrictions and delete an arbitrary VDC's files by leveraging administrative privileges in one VDC, aka Bug ID CSCur08416.

CVE-2015-4232
Published: 2015-07-03
Cisco NX-OS 6.2(10) on Nexus and MDS 9000 devices allows local users to execute arbitrary OS commands by entering crafted tar parameters in the CLI, aka Bug ID CSCus44856.

CVE-2015-4234
Published: 2015-07-03
Cisco NX-OS 6.0(2) and 6.2(2) on Nexus devices has an improper OS configuration, which allows local users to obtain root access via unspecified input to the Python interpreter, aka Bug IDs CSCun02887, CSCur00115, and CSCur00127.

CVE-2015-4237
Published: 2015-07-03
The CLI parser in Cisco NX-OS 4.1(2)E1(1), 6.2(11b), 6.2(12), 7.2(0)ZZ(99.1), 7.2(0)ZZ(99.3), and 9.1(1)SV1(3.1.8) on Nexus devices allows local users to execute arbitrary OS commands via crafted characters in a filename, aka Bug IDs CSCuv08491, CSCuv08443, CSCuv08480, CSCuv08448, CSCuu99291, CSCuv0...

CVE-2015-4239
Published: 2015-07-03
Cisco Adaptive Security Appliance (ASA) Software 9.3(2.243) and 100.13(0.21) allows remote attackers to cause a denial of service (device reload) by sending crafted OSPFv2 packets on the local network, aka Bug ID CSCus84220.

Dark Reading Radio
Archived Dark Reading Radio
Marc Spitler, co-author of the Verizon DBIR will share some of the lesser-known but most intriguing tidbits from the massive report