News
2/3/2009
03:40 PM
George Crump
George Crump
Commentary
50%
50%

Archives Dirty Little Secret

If you have read this blog for any length of time, you know that I am a big believer in archiving. Moving data off primary storage and onto a disk-based archive just makes sense and saves dollars. That said, there is one downside to archiving; you have to really like your choice of archive solutions (software and hardware) because leaving IS painful.

If you have read this blog for any length of time, you know that I am a big believer in archiving. Moving data off primary storage and onto a disk-based archive just makes sense and saves dollars. That said, there is one downside to archiving; you have to really like your choice of archive solutions (software and hardware) because leaving IS painful.For example, if you have e-mail archive software A and want to switch to e-mail archive software B, you are facing a difficult if not impossible migration scenario. In reality, most companies either don't migrate and put up with what they have OR they run parallel systems until the archive under software A's management expires and in archive especially that can be a long time.

The situation is almost always the same for hardware. Some of the solutions that don't use proprietary access like Bycast or Permabit, which use standard NFS/CIFS access, are less difficult, but others can be a challenge, again often leaving the decision to run both systems in parallel or living with what is in place.

Both of these situations made it critical for customers when selecting an archive solution to be very sure of their selection before committing to it fully. The problem is, of course, that production archive solutions are very hard to simulate during evaluation. What is needed is a way out...

Most software solutions that have attempted this are very manual, put stress on the e-mail infrastructure, and do not provide message authenticity. Finally, software companies like Procedo are providing the capability to migrate between both archive software and archive hardware solutions, as well as filling the gap in standard file migration.

Migration of archives is a task that requires a lot of consideration, and the software application that performs this service needs to be aware of those considerations as well. For example, maintaining compliance and chain of custody of the archive during the migration is critical. You built an archive to be prepared for litigation; you don't want your archive migration to expose you to more.

Solutions like this also should provide a "fail-safe" option. If during the migration process you find a weakness in your new archive solution, you need the ability to opt out. Again, you can only test so much -- there is a big difference in evaluating an archive with a couple hundred GB's of test data and a multi-TB archive in production. Solutions like this could have value just in helping you securely evaluate a new archive solution.

Archive migration is one of the key missing ingredients in broader archive adoption. It enables the ability to change your mind and keep up with new innovations in archive software and hardware. This means choice and increased customer satisfaction. Once suppliers know you have a way out, they can't take you for granted.

To understand more about Primary Storage Optimization, register for our Webinar.

Track us on Twitter: http://twitter.com/storageswiss.

Subscribe to our RSS feed.

George Crump is founder of Storage Switzerland, an analyst firm focused on the virtualization and storage marketplaces. It provides strategic consulting and analysis to storage users, suppliers, and integrators. An industry veteran of more than 25 years, Crump has held engineering and sales positions at various IT industry manufacturers and integrators. Prior to Storage Switzerland, he was CTO at one of the nation's largest integrators.

Comment  | 
Print  | 
More Insights
Register for Dark Reading Newsletters
White Papers
Cartoon
Latest Comment: nice post
Current Issue
Flash Poll
10 Recommendations for Outsourcing Security
10 Recommendations for Outsourcing Security
Enterprises today have a wide range of third-party options to help improve their defenses, including MSSPs, auditing and penetration testing, and DDoS protection. But are there situations in which a service provider might actually increase risk?
Video
Slideshows
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2015-1950
Published: 2015-07-01
IBM PowerVC Standard Edition 1.2.2.1 through 1.2.2.2 does not require authentication for access to the Python interpreter with nova credentials, which allows KVM guest OS users to discover certain PowerVC credentials and bypass intended access restrictions via unspecified Python code.

CVE-2015-1951
Published: 2015-07-01
IBM Maximo Asset Management 7.1 through 7.1.1.13, 7.5.0 before 7.5.0.8 IFIX001, and 7.6.0 before 7.6.0.0 IFIX005 does not prevent caching of HTTPS responses, which allows physically proximate attackers to obtain sensitive local-cache information by leveraging an unattended workstation.

CVE-2015-1967
Published: 2015-07-01
MQ Explorer in IBM WebSphere MQ before 8.0.0.3 does not recognize the absence of the compatibility-mode option, which allows remote attackers to obtain sensitive information by sniffing the network for a session in which TLS is not used.

CVE-2014-9734
Published: 2015-06-30
Directory traversal vulnerability in the Slider Revolution (revslider) plugin before 4.2 for WordPress allows remote attackers to read arbitrary files via a .. (dot dot) in the img parameter in a revslider_show_image action to wp-admin/admin-ajax.php.

CVE-2014-9735
Published: 2015-06-30
The ThemePunch Slider Revolution (revslider) plugin before 3.0.96 for WordPress and Showbiz Pro plugin 1.7.1 and earlier for Wordpress does not properly restrict access to administrator AJAX functionality, which allows remote attackers to (1) upload and execute arbitrary files via an update_plugin a...

Dark Reading Radio
Archived Dark Reading Radio
Marc Spitler, co-author of the Verizon DBIR will share some of the lesser-known but most intriguing tidbits from the massive report