Archive

Archive for November 4th, 2005

A Typical O-Chart of Telecom Operators at China (Diagram)

November 4th, 2005 No comments

The below is a diagram of a typical o-chart of telecom operators at China. After a series of BPR and ITSM programs,  the o-chart and internal processes are changed a lot against that of a few years ago. As you see, more and more telecom companies establish “response centers” to quicken the “customer” response. Here the “customer” includes internal and external ones.

Telecom O-Chart at China

Categories: Telecom Tags:

Telecom Security Framework (Diagram)

November 4th, 2005 2 comments

Nowadays, the security for telecom operators is expanded to a very wide range, from 3G/IMS/SIP, to IM/P2P filtering, and even security issues related to various VAS(value added services). How to make a plan and blueprint for a telecom operator network security? You must be familiar to not only the BS7799, X.805, CoBit, SSE-CMM, CC and other standards, but those telecom technologies and specificication as well. A very challenging job! Isn’t it?

做电信安全有这么多年了,感觉上越来越累,越来越吃力。因为安全技术和标准的发展很快,更因为电信各种新技术的发展更快!我一向认为,即然是说电信网安全就必须深入电信、体现电信网的特点。这里并不是什么特例独行,也不是故意为了突显电信网的“电信级什么什么”带有的“自我优越感”,而是因为现在的电信网的确是越来越复杂了,而网络安全的内涵也越来越放大,放大到几乎什么“故障”、“中断”、“性能下降”都有可能被冠以网络安全的名下,业务连续性不是被很多安全咨询公司拿来当作自己的顾问服务内容吗。另外,SOX符合性有网络安全的事,城域网优化、网络提质有网络安全的事,垃圾短信、非法广告也有网络安全的事吧,网络安全主管要想办法过滤呀。更有当前的非法VoIP检测、P2P识别也成了网络安全的工作范畴。

呵呵,这下网络安全的饭碗是不是一下子光芒万丈了。如果还想靠防火墙、反病毒、IDS老三样产品,依靠Windows,Unix风险评估加固在电信里打天下,估摸着会越来越吃力。

Telecom Security Framework

Live software, network computer and on-demand computing

November 4th, 2005 No comments

Live software is very attrative, although it’s likely just reprint of concepts of network computer and on-demand computing.  Let’s see how Bill Gates defined “Live Software”:

In his presentation Tuesday, Gates described Live Software as software that works with many devices so user data and services are more portable. In this scenario, users do not have to sync up or reload personal information or services onto each device they use, but can access what they need whenever they want it, he said.

“One of the key principals of Live Software is it works with many devices,” Gates said. “Instead of the device being central as it has been in the past, forcing the user to move the data round, the kind of software we’re talking about today remembers what the user wants and then when the user shows up on any device, the services are brought down on any device.”

The vision Gates presented sounds similar to “the-network-is-the-computer” vision Sun Microsystems Inc. has been painting for some time, a vision in which myriad devices are linked to the Internet and can provide services to users as they travel and access the Web from different devices.

Click to see the full story.

Categories: Security Tags:

CCID-2004年中国网络安全产品市场报告

November 4th, 2005 No comments

翻阅CCID2004年网络安全产品市场报告,心中觉得很不爽。坦白说,CCID报告与IDC、Gartner等市场报告相比在学术严谨性、全面性、分析透彻性等各方面都有相当差距,先罗列出一些不足。提意见是希望其进步,不是吗。

  • 1 产品分类含糊,不够明确,例如软件与硬件防火墙,集成了反病毒等多种产品的UTM、IDP或IPS的处理、安全管理类的处理、PKI/CA类安全产品如何处理等等都没有说明
  • 2 统计数字没有说明,例如Nokia与Checkpoint的关系、Nokia与ISS的关系、合资公司销售数字的处理(例如CA与CA-JC)、贴牌分销品牌数字如何处理、安全服务(包括产品服务与顾问服务)如何处理等等
  • 3 分项品牌分布中的数字与总体品牌分布中的数字给人感觉不一致
  • 4 数字太偏、太少,不够全面,不能代表全国安全市场。例如华为、亿阳、McAfee、ISS、Fortinet、金山、金诺、格尔、吉大正元等厂家甚至没有提及
  • 5 趋势分析没有任何深度,人云亦云,没有参考意义
  • 6 …..
Categories: Security Tags: