Practical Technology

for practical people.

November 25, 2009
by sjvn01
0 comments

Getting the Most Out of Your Windows 7 Internet Connection

Chances are, everyone on your intranet has Gigabit Ethernet, with its 1,000 Mbps (Megabit per second) speeds. Or perhaps your laptop users are moving up to 802.11n Wi-Fi with 100Mbps throughput. That’s all great — but once your users hit the router, they’re all back to fighting over your far-more limited Internet connection (say, a 44.6 Mbps T3 line). That’s where traffic management comes in.

There are many ways to make sure your YouTube fans don’t eat up your Internet bandwidth. For example, Extreme Network switches, F5 Networks’ BIG-IP network traffic managers, and many other high-end network devices can help you get a grip on how much unnecessary traffic goes to the Internet. But, now Microsoft has built in a new, easy way to manage network traffic in Windows 7 and Windows Server 2008 R2: URL Quality of Service (QoS)-based traffic management.

Windows has long had QoS traffic management that used applications, IP addresses, and port numbers to determine which traffic got priority. Now you can set priority by website address. This way, all a network administrator need do is set up policies by website, instead of digging around for IP addresses, which may change over time. So, for example, you could set the Wall Street Journal’s site to have a high-priority while locking down ESPN.

To do this, you first set up a QoS Policy on Server 2008 R2. The simplest way to do this is to use the GPMC (Group Policy Management Console).

The key technology that makes all this work is Differentiated Services Code Points (DSCP). This is derived from an Internet networking standard, RFC-2474, that defines how a value in a TCP/IP packet header is set. It’s used to determine how high a priority packets are given as they make their way around a network. Generally speaking, the higher the DSCP value you give a site, the higher its traffic priority is. So, for example, if you gave a company external site a DSCP of 63 — the scale ranges from 0 to 63 — traffic to that site will be much faster than to, say, YouTube with a DSCP of 0.

Exactly how the traffic is throttled to a given site isn’t determined just by its DSCP. You have to set in the GPMC how fast or slow a site’s traffic is permitted in either KiloBytes per second (KBps) or MegaBytes per second (MBps).

Once you set up your DSCP values and their corresponding throttle rates on the Policy Profile tab, you can assign them to URLs. These URLs can include wild-card characters and — although you won’t need to for most websites since they use port 80 by default — you can also specify a port number. You’ll also want to select the Include subdirectories and files check box to apply the traffic management settings to all of the URLs’ subdirectories and files.

There can be competition between policies. The tie-breakers start with DSCP, and then (from highest to lowest) are determined by host name listing order, IPv6 address, IPv4 address, and wild-card. So, when you build your policy, be sure to list the most mission-critical sites first by their specific URLs.

To make sure your policies work the way you want, Microsoft provides a handy QoS Traffic Generator, and examples on how to use it with its QoS Traffic Generator Example Usage.

That’s pretty much it on the server side. On the Windows 7 client side all you need to do is click a few buttons and you’ll be on your way. Click Start -> Control Panel -> Network and Sharing Center. Once there, select the appropriate LAN connection. Then, once you’re at the Local Area Connection Status window, click on Properties, make sure the QoS Packet Scheduler radio button is clicked on, and you’re in business.

Sure, other network tools give you even finer control, but for a pre-packaged network traffic management solution, QoS URL is a very handy and easy to use addition to the Windows networking family.

More >

November 24, 2009
by sjvn01
0 comments

Five things Chrome OS isn’t

Some people still seem a little confused about what Chrome OS is, and isn’t, so here’s my quick guide on what’s really what with this forthcoming operating system.

1. Ready yet

I’m already seeing people proclaiming that it’s awful. Uh, people, it’s not even beta yet. Yes, even now Google Chrome OS works pretty darn well, but what we’re seeing now isn’t even close to what will eventually be shipping. Proclaiming that it’s already a failure or that it deserves a ‘D-‘ grade is, at best, ignorant, and, at worse, deliberate anti-Linux and anti-Google FUDing.

Heck, even I, who has little love for Windows, waited for Vista to be in beta before I started kicking it around. Give it a chance people.

More >

November 24, 2009
by sjvn01
1 Comment

Five reasons Google Chrome OS Security Wins

Google’s Chrome OS has many virtues. Based on a solid foundation of Ubuntu Linux, it uses the Chrome Web browser as its interface to any and all applications. Chrome OS is also not so much a Windows replacement, as it’s an attempt to get rid of the entire traditional idea of a PC desktop. If Google is successful with this, one big reason will be its vastly improved security.

Before I go into why Chrome OS will be much more secure than Windows, I have to point out that Google has one big, honking huge security problem to fix first: it’s reliance on the fatally flawed login/password model. If they can beat that problem, then Chrome is likely to be most secure ‘desktop’ operating system we’ll have ever seen. Here’s why.

First, Google accepts that it’s impossible to make an absolutely secure operating system. They use a phrase to describe this design philosophy that I think every developer should have tattooed on their hands: “The perfect is the enemy of the good.” In other words, Google won’t waste its time on trying to find some perfect system that only exists in fantasy. Instead, Google is spending time on making the best practical security system. This is how it plays out.

More>

November 23, 2009
by sjvn01
0 comments

Where Google Chrome security fails: the password

A lot of people, including me, are excited about Chrome OS, Google’s forthcoming desktop operating system. One of the things that has people worked up is Chrome OS’ improved security over Windows. That’s true. It should be better, and I’ll talk more about that tomorrow, but before you get too excited about that you should know that Chrome has its elephant sized security problem.

You see everything you’ll do on a Chrome OS computer is based on the good old user/password concept. This SSO (single sign on) key unlocks all your information, which is stored on the cloud. This means you can log into your account from any Google Chrome device. That’s the good news. That’s also the bad news.

On Chrome, all your personal information is only a login away. And, when I say all your information, I mean all. This isn’t just access to a critical file or information about one bank account, it’s every file and all the information you keep in those files.

If you could trust people to use good passwords and use them correctly that might not be so bad. But, you can’t.

More >

November 22, 2009
by sjvn01
0 comments

Chrome’s mission: Making Windows obsolete

Some people are already convinced that Google will fail with its Chrome operating system. Others think that Chrome can’t possibly be a threat to Windows. Both groups are so, so wrong.

First, for those who think that Chrome is simply a failure from the word go, their reasoning is pathetically flawed. Chrome will fail because it’s based on Linux they argue. What century are these people from?

The specific complaints, such as “From power management to display support, Linux has long been a minefield of buggy code and half-baked device driver implementations.” reveal that they’re coming from people who know nothing what-so-ever about Linux. Linux is tried and proven.

You don’t have to believe me though. Just look at the world around you. Linux rules on devices from your TiVo DVR to your Droid smartphone to you name it. Linux kicks rump and takes names on supercomputers, where nothing else is even competitive. And, Linux rules stock markets where failure is never an option.

The only place where Linux hasn’t been a strong competitor has been on the desktop. There are many reasons why desktop Linux hasn’t done well; number one with a bullet has been Microsoft’s desktop monopoly. With Google’s backing, however, Chrome avoids the Linux desktop’s real problems.

More >

November 19, 2009
by sjvn01
0 comments

Ubuntu’s Canonical and Google partner to create Chrome

Some people may see Google’s Chrome operating system as competing with existing Linux desktop distributions. Canonical, the company behind popular Linux distribution Ubuntu, isn’t one of them. They’re working with Google to make Chrome.

Before Google announced its netbook operating system plan in July 2009. The company decided to go public with its involvement after Google announced today that they were open-sourcing the Chrome operating system.

In a Canonical blog posting, Chris Kenyon, Canonical’s VP of OEM Services, revealed that "Canonical is contributing engineering to Google under contract." Canonical insiders were not at liberty to say how many developers were working on Chrome, but they did say it was a major project.

This does not mean that Canonical is focusing on Chrome OS in place of Ubuntu. Kenyon wrote: "On the consumer side, people will ask about the positioning of Chrome OS and Ubuntu. While the two operating systems share some core components, Google Chrome OS will provide a very different experience to Ubuntu. Ubuntu will continue to be a general purpose OS running both web and native applications such as OpenOffice and will not require specialized hardware."

When reading between the lines, it’s clear that Canonical and Google are very closely partnered on creating Chrome. Any open-source developer, however, can now access the code and documentation at the newly opened Chromium OS site.

Kenyon also said, "Sundar Pichar [Google VP of Product Management] and Linus Upson [a Google engineering director] made it clear that they want, wherever feasible, to build on existing components and tools from the open source community without unnecessary re-invention. This clear focus should benefit a wide variety of existing projects and we welcome it."

Kenyon concluded, "So 2010 looks set to be a very exciting year. In addition to delivering Ubuntu experiences with both existing and new OEM partners, we will be working with Google on Chrome OS based devices."

Indeed, it should be. Canonical, the company behind the most popular desktop Linux, is working hand-in-glove with Google to create the Chrome netbook operating system.

A version of this story first appeared in ComputerWorld.