Tandemworld eNewsletter for April 2013 Gold Sponsor is Silver Sponsor is
|
||||||||||||
Tandemworld Newsletter
for April 2013
Contents While
Executing Your Disaster Recovery Plan, Are Your Fingers (and Toes)
Crossed?
New Automation Tools Enable Migration to ETI-NET BackBox
Virtual Tape
Ascert Releases VersaTest Classic Migration Edition
Musings on NonStop! - April, ‘13
High Performance Switching and Secure Data Storage
Availability Digest Says DDoS Attacks are on the Rise
Still
believe that OSS security isn’t as robust or as easy to maintain as
Guardian?
New version of PANfinder
available from comForte
XYPRO and NetAuthority
Announce On-Premise Device Authentication Solution for Enterprises and
Service Providers
PCI Compliance Deconstructed -
new article from comForte
Join XYPRO at these NonStop & Security events in April
and May
comForte near you in
2013
TANDsoft’s New E2S-Lite Enables Efficient, Low-Cost Enscribe
Modifications
“CSP Celebrates another successful year!
It’s Bigger on the
Inside!
Discover
2013 Current Subscribers 14213 While
Executing Your Disaster Recovery Plan, Are Your Fingers (and Toes)
Crossed? Shadowbase Continuous
Availability Solutions Remove the Doubt by Providing:
·
Active/active and sizzling-hot-standby
architectures
·
Elimination of failover faults with a
proven-working backup system
·
No application service outage when testing
·
Automated recovery/resynchronization of a
failed system So the next time disaster strikes you can uncross
your fingers (and toes)! Gravic creates
Still Time to Register for MATUG May 3 Meeting It’s not too late to register for the Mid-Atlantic Tandem User Group (MATUG) Meeting scheduled for May 3, 2013 in Chantilly, Virginia, USA. MATUG is open to any NonStop customer, partner, user, consultant, or interested party. Please contact Susan Loeliger (Chapter Secretary/Treasurer) at sbproductmanagement@gravic.com to register. Members are typically from the following states: Pennsylvania, New Jersey, Maryland, Delaware, Virginia, and West Virginia. MATUG provides members with the opportunity to participate in quality informational sessions, and learn about new HP products and services as well as interact with fellow HP NonStop users. Please visit the MATUG Connect Chapter web page for more information.
Gravic Labs Wins Important Patent for Shadowbase Solutions Gravic Labs is pleased to announce a new US Patent, number 8,301,593, awarded on October 30, 2012, entitled “Mixed mode synchronous and asynchronous replication system.” This patent solves a critical problem for synchronous replication systems by providing a method to transition between synchronous and asynchronous modes when starting up or when recovering from network or nodal failure. This unique capability will be made available in a future release of Shadowbase, supporting synchronous data replication.
Please Visit Gravic at these Upcoming Shows
MATUG Meeting, Chantilly, VA, 3 May
HP Discover 2013, Las Vegas, NV, 10-12 June
VNUG Conference 2013, Stockholm, Sweden, 3-5 September
Connect NonStop Advanced TBC, San Jose, CA, 3-5 November
For more information, please visit: www.gravic.com/shadowbase. http://www.linkedin.com/company/gravic-inc./shadowbase-data-replication-305119/product
New Automation Tools Enable Migration to ETI-NET BackBox Virtual Tape As the first-generation of virtual tape products reaches end-of-life, customers face a new challenge as they attempt to migrate from proprietary virtual tape formats onto competing vendors’ solutions. Like physical tape technologies, old formats and equipment become unsupportable and have to be migrated to new platforms and storage media. But unlike physical tape, the virtual tape market has no standards in its storage formats, so disk-based virtual tape images are not directly transferable between different products. Fortunately the actual task is not as complicated as it may first seem. On behalf of just such a customer challenge, ETI-NET recently evaluated these requirements and, in cooperation with HP Technical Services, tools and services were developed to facilitate the orderly off-line migration of virtual media from older virtual tape products onto ETI-NET’s BackBox product. A white paper detailing the challenges and solutions has just been published and is available on request from ETI-NET. Just email information@etinet.com with “Migration White Paper” in the subject header and we will email back the pdf document. Since 1987, ETI-NET (www.etinet.com ) has developed software and hardware solutions that allow HP NonStop servers to access modern, multi-vendor storage technologies. Its products offer cost-effective management of backup and archiving operations. ETI-NET supports major data centers globally and consolidates their NonStop systems into shared enterprise storage infrastructures. For more information about ETI-NET and its products, contact ETI-NET at 561-395-2278 x 22, in EMEA at +44-1494-771981, or by email at information@etinet.com .
Ascert Releases VersaTest Classic Migration Edition Ascert Enables User Bridge for Testing Automation Sausalito, California, April 18, 2013 – Ascert announces the availability of VersaTest Automation Server Classic Migration Edition (“CME”) for users of the VersaTest Classic NSK or MP product versions. The new product allows test drivers developed for VersaTest Classic to operate within a VersaTest Automation Server environment, side-by-side with newer drivers developed to the Driver Framework Standard (DFS) as used by VersaTest Automator. The CME product enables current users of the VersaTest Classic product to realize the significant benefits of the latest automation technology without going through costly and lengthy software upgrades. The new product gives users an easy to use browser based GUI, support for multiple testing environments in one interface, zero client-side installation and dynamic communication configurations. "VersaTest Classic has been a tremendously successful product in the testing of global payments systems," says Andrew Mould, Managing Partner of Ascert. "We are excited about this offering because it allows our current VersaTest Classic users to retain their technology investment while providing easy access to many of the automated features that exist in our VersaTest Automator product, without having to build simulations and test cases. Moving to a new testing platform can be an involved and lengthy process depending on how sophisticated a testing environment is. The CME product allows this to happen in a rapid but painless fashion and provides an easy upgrade path to full end-to-end automation on the users own timeline." VersaTest/AS CME adds user-authorized security functionality, enabling different testing groups their own secure testing environments and customized interface and testing functionality. In addition to security, this feature ensures that users testing in one environment don’t impact the testing being performed in other environments; making VersaTest a much more flexible enterprise testing tool. CME also provides for an enhance user experience enabling panels and menus to be tailored depending on the users operational role in testing.
To find out more about VersaTest/AS CME visit contact one of the local Ascert offices. For inquiries in the America’s and Asia-Pacific: Mr. Rich Greene Ascert, LLC 759 Bridgeway Sausalito, CA 94965, USA Telephone: 1-415-339-8500 Toll Free: 1-877-ASCERT-IT Fax: 1-415-339-8501 E-mail: info@ascert.com
For inquiries in Europe, Middle East, and Africa: Mr. Mike Wainwright Ascert, Limited 63 Mansell Street, London, E1 8AN, England Telephone: +44 (20) 7488 3470 Fax: +44 (20) 7488 3477 E-mail: ukinfo@ascert.com Musings on NonStop! April, ‘13
The
opinions expressed here are solely
I would really l like to be able
to say that I was subject to an April Fools’ Day joke, but nothing
really materialized. Au contraire, it was all too serious! And the month
really started with the last week of March, as it included multiple
face-to-face meetings with clients followed by my participation in a
well-attended webinar, about which more will follow shortly.
To replay what I discussed in the webinar, follow this link: HP NonStop Data: Critical to Big Data Success http://learn.attunity.com/hp-nonstop-data-critical-to-big-data-success
And to download the two opinion
papers, follow these links:
HP NonStop Transactional Data:
Critical for Meaningful Big Data
Pyalla Technologies, LLC Following my blogs? My web publications? My discussion Groups?
Check out (copy and paste to your
browser): …. And check out the Group on LinkedIn, Real Time View comForte Lounge at http://comfortelounge.blogspot.com/ …. And check out the Group on LinkedIn, comForte Lounge Realtime.ir at http://realtime.ir.com/
…. And check out the Group on LinkedIn, realtime.ir buckle-up at http://www.buckle-up-travel.blogspot.com/ …. And check out the SubGroup on LinkedIn, Pyalla Track Days
Third Data Corporation High Performance Switching and Secure Data Storage 888-301-2431 Third Data Corporation provides numerous products which can reside on HP Nonstop and other HP hardware platforms. FastBuild Switch – When building a switch be it ATM-POS, Wire Transfer, EFT, Medical, or any other type of data that needs to get from one place to another, you are usually faced with three choices. Take an existing package and modify your system to match it. Get the vendor to “enhance” their system to meet your needs. Write a new system from scratch. The FastBuild Switch integrates with your existing system, or if you are building from scratch gives you a good start. The switch is also built around the latest HP technology to maximize performance. It integrates several of our other products to maximize cost savings and security. In a cross platform environment it also runs on other non-Guardian HP supplied platforms. SecureStore – If you are trying to become compliant (PCI, HIPAA, etc) then you know that you can not leave sensitive data readily viewable. SecureStore does three things for you. The data is encrypted so that you can become compliant. The data is compressed so that your hardware costs are reduced. As part of disaster recovery your data is sent to three (or more) locations so it will be available when you need it. As a bonus for those having trouble with Guardian 4K limits there is no record size. NxLib – NxLib provides a platform and utility libraries for developing a high performance multi-threaded applications on NonStop Guardian. The platform provides threading capability. This enables development of an application written single threaded style to perform as multi-threaded. Extensible command processing and help are supported. Development time can be cut to a fraction of the time it would normally take. This results in fast application development with consistent look and feel across multiple projects. NxWeb – A high performance web server which provides support for NxLib applications. It also can be used without NxLib. It provides for secure connections, virtual domains, full http support and interfaces to pathway and IPC communications. NxUndelete – Files accidentally deleted can be a real problem. Even when a backup is available, it is frequently a significant effort to retrieve it from a backup tape. NxUndelete implements a recycle bin function on the the HP NonStop system. Files deleted may be easily recovered using its GUI interface. NxFile+ – NxFile+ provides compression and encryption to Enscribe structured files. The files are configured through a GUI interface and the results are provided seamlessly to your applications, typically without any code changes. In addition this provides for dynamic key changes on the fly so data stored at-rest may have it’s encryption keys changed as required. Because the records can be compressed prior to encryption, it’s also possible to have records which significantly exceed the 4k record size limitations. The savings in disk I/O typically pay for the overhead of the compression and encryption. NxSSL – NxSSL is an SSL proxy which may be used to provide SSL encryption and authentication services to TCP/IP connections. It provides full support for certificates and multiple encryption standards. It has been carefully tuned to provide the highest performance available for any NonStop SSL connection.
Availability Digest Says DDoS Attacks are on the Rise DDoS attacks in 2012 exceeded the number of attacks in 2011 by 53%, and the projection for 2013 is for an even greater increase in frequency and in size. DDoS attacks clearly are on the rise, so much so that the April issue of the Availability Digest is devoted to DDoS attacks and their impacts on system availability. “DDoS Attacks on the Rise” includes DDoS attack statistics, countries of origin, an introduction to DDoS reflection attacks and DNS open resolvers, and examples of DDoS attack mitigation. Also in the April Digest: History’s Largest DDoS Attack? – From March 18th thru March 28th of this year, spam-filtering site Spamhaus was swamped with up to 300 gigabits per second of traffic in what is being reported as the largest Distributed Denial of Service (DDoS) attack to-date. The quantity of malicious traffic generated was due to the presence of open resolvers, a well-known flaw in DNS servers. “History’s Largest DDoS Attack” tells the story of Spamhaus’ predicament and how the company was able to survive the malicious assault. Anatomy of a DDoS Attack – Botnets are very, very bad. The DDoS attacks they generate are even more destructive. “Anatomy of a DDoS Attack” introduces botnets, the different strategies used by attackers to overwhelm a web site, the most common types of DDoS attacks, and mitigation strategies. Prolexic – A DDoS Mitigation Firm – Prolexic is an example of a new breed of companies whose services are focused on DDoS attack mitigation. Founded in 2003, the company was the first to offer cloud-based DDoS mitigation services. It detects and blocks approximately 7,000 DDoS attacks per year for its customers. The article discusses Prolexic’s mitigation strategies and how the firm monitors traffic flow through its clients’ systems. The Availability Digest offers one-day and multi-day seminars on High Availability: Concepts and Practices. Seminars are given both onsite and online and are tailored to an organization’s specific needs. We also offer technical and marketing writing services as well as consulting services for achieving high availability. Published monthly, the Digest is free and lives at www.availabilitydigest.com. Please visit our Continuous Availability Forum on LinkedIn. We’re at 537 members and counting. Our latest thread discusses the impact of DDoS attacks on system availability.
Still believe that OSS security isn’t as robust or as easy to maintain as Guardian? XYGATE Object Security (XOS) Active and Dynamic RBAC make static ACL's and policy implementers for Safeguard and OSS redundant. Taking advantage of the recently released OSS Security Event Exit (SEEP) by HP, XYPRO now offers an upgrade to our standard XOS product that applies security dynamically and instantaneously for both Guardian and OSS environments, virtually eliminating the need to manage complex Guardian, Safeguard and OSS security. Using simple Role Based Access Control rules, XOS applies security at the time of request based on logical object and user groupings and extends access decision criteria to any object attribute rather than just the object name. Click here to learn more about XYGATE Object Security and how you can reduce your security management load and massively improve the level of security on your NonStop server at the same time... https://www.xypro.com/xypro/resources/news_full/the_oss_security_youve_been_waiting_for To arrange a free evaluation, contact your local XYPRO Sales Rep: https://www.xypro.com/xypro/contact
Barry Forbes VP of Sales & Marketing XYPRO Technology Corporation
New version of PANfinder available from comForte
PANfinder is a comprehensive data discovery software solution. It searches systems for hidden and unmasked/unencrypted payment card data. It provides a method of scanning systems for unprotected PAN data (Primary Account Number). This ensures there are no live PANs residing in unauthorized locations and also provides organizations with a way of proving that all PANs on the systems are being stored in accordance with the Payment Card Industry Data Security Standard (PCI-DSS).
We are very pleased to announce the latest version (v 2.51) of PANfinder which includes a number of new features and performance improvements: 1. Support for Agent Mode. PANfinder can now run in agent mode where it constantly monitors the configured file set for suspect PAN data. 2. Restartable scans. If a scan is stopped for any reason before it has completed, PANfinder can be recommenced from the point in the file set where the previous scan was interrupted. 3. Support for EBCDIC format files. 4. Support for syslog messaging via TCP. Previously PANfinder only supported delivery of syslog format events via UDP transport. It now supports both UDP and TCP. 5. Ability to scan for a specified PAN. 6. Minor enhancements to the display of PANfinder events.
For more background information on PANfinder and why no PCI DSS compliance project should have to do without such a detection tool please read the article 'Where in the world is my credit card data?'
Many organizations running HP NonStop servers process credit or payment cards as a part of their business. This means that they are subject to the Payment Card Industry (PCI) Data Security Standard (DSS), which mandates a strict set of requirements for the protection of payment card cardholder data. At the core of the standard is the Primary Account Number, usually abbreviated to PAN. This is the card number embossed on credit or payment cards that is used in payment card transactions, along with the card expiry date and often the Card Verification Value (CVV). The PCI DSS mandates in requirement 3.41 that all PAN data that is stored on the system must be protected by means of encryption or tokenization.
But how do you know where all of your PAN data exists? Read the whole story - Where in the world is my credit card data?
XYPRO and NetAuthority Announce On-Premise Device Authentication Solution for Enterprises and Service Providers XYPRO, a global reseller of NetAuthority solutions, is pleased to note the general availability of the NetAuthority DeviceLink™ 2.0 solution. With its latest release, NetAuthority has delivered its patented device authentication technology as a single or multi-tenant authentication engine, which can be deployed by enterprises and online service providers for secure access to mobile and online applications. NetAuthority DeviceLink™ provides high performance device authentication, enabling customers or administrators to authorize and link specific devices to accounts and prevent fraudulent access from unauthorized devices. DeviceLink™ turns the device itself into a powerful authentication factor, delivering sub-second device authentication without requiring anything else for the end-user to have, know or do. Key Benefits: • Enables seamless multi-factor authentication – nothing else to have, know or do • Strengthens and protects existing username and password-based authentication • Delivers invisible, sub-second, mass-deployable device authentication • Works with all major web browsers and mobile application platforms • Generates unique, attribute-based device keys for each authentication session • Utilizes industry standard, FIPS 140-2 compliant data encryption modules • Simple deployment, provisioning, management, and reporting capabilities • Includes secure service API’s for easy integration into existing applications Learn more https://www.xypro.com/xypro/resources/news_full/xypro_netauthority.
Barry Forbes VP of Sales & Marketing XYPRO Technology Corporation
PCI Compliance Deconstructed - new article from comForte
While there is no shortage of articles focusing on credit card security standards, and how to comply with them, we are still seeing a fair amount of confusion when it comes to non-compliance.
In this article, we focus on thinking the unthinkable:
What happens to organizations who are not PCI compliant?
We also look at compensating controls for requirement 3.4 of the PCI DSS, and their future as we see it.
Read the article - PCI Compliance Deconstructed
Join XYPRO at these NonStop & Security events in April and May
comForte near you in 2013
comForte is travelling far and wide to be at an event near you. Come and join us at these events in 2013:
Impact2013, Las Vegas, USA, April 28 - May 2, 2013 MATUG, Chantilly, VA, USA, May 3, 2013 BITUG Little SIG, London, UK, May 8, 2013 GTUG Spring Conference, Hanover, Germany, May 14-15, 2013 HP Discover, Las Vegas, USA, June 10-12, 2013 VNUG, Stockholm, Sweden, Sept 4-5, 2013 EBUG Knowledge Forum, London, UK, Sept 23-24, 2013 GTUG, Frankfurt, Germany, Sept 23-25, 2013 PCI US Community Meeting, Las Vegas, USA, Sept 24-26, 2013 PCI EU Community Meeting, Nice, France, Oct 29-31, 2013 CONNECT Advanced Technical Boot Camp 2013, San Jose, USA, Nov 3-5, 2013 PCI AP Community Meeting, Kuala Lumpur, Malaysia, Nov 19-20, 2013
TANDsoft’s New
E2S-Lite Enables Efficient, Low-Cost Enscribe Modifications
Free trials are available.
For information about TANDsoft solutions, contact Jack Di Giacomo at +1
(514) 695-2234. Our Enscribe to SQL Migration Forum on LinkedIn is at
157 members and counting.
“CSP Celebrates another successful year! We have been a leading supplier of security solutions to the Nonstop community for over 25 years and are pleased to celebrate another anniversary with continued growth and success. The last twelve months have seen a series of significant enhancements and upgrades to our product suite to meet the continuing and evolving challenges of NonStop security, with a special focus on compliance (Compliance Reporting Module and File Integrity Checker) and OSS security (Protect-UX). CSP’s success is based on technical innovation and excellence, outstanding service and support, and a responsive approach to our customers’ needs, and our security solutions not only enhance and augment HP’s built-in security with advanced functions and manageability, but also provide distinct alternatives from the available default tools. Our role in the Nonstop vendor community, based on our objectivity and independence, has resulted in a unique range of solutions designed around our customers’ requirements. We look forward to many more years serving our customers! For more information about Computer Security Products and our security solutions for NonStop, visit www.cspsecurity.com.”
Brightstrand Health Check ServiceMaximise your hp NonStopÔ Server environment.
The BrightStrand International hp NonStop Server Health Check Service has been created in order to provide users of hp NonStop Servers with a situation report as to the status of their hp NonStop systems and service environments. The service has been designed by BrightStrand, to assure customers that they are getting the optimum from their current hp NonStop Server environments. The Health Check will provide a guide to assist customers in making improvements to various service areas. It can also be used as a tool to aid the decision-making process in such key areas as hardware purchasing, system migration and Service Level Agreement (SLA) planning. The service will take into account a number of factors depending on the pre-defined scope. These may include - procedures, strategies, system performance, configurations and security. The service will involve the monitoring of system metrics, an assessment of general procedures, a review of software revision levels and a general check of the installation. Service Objective The objective of the Health Check is to provide high quality reviews of service areas that have been identified, by the customer, as being of concern or of interest. The main goals of the service will be: · To advise on compliance with standards. · To report on efficiency and performance. · To identify possible problem areas and recommend solutions. · To advise on current or future strategy. This will be achieved by engaging a fully qualified and experienced BrightStrand consultant that will work closely with the customer to agree the scope of the engagement and to identify areas of special interest or concern, use BrightStrand tools and solutions to gather the necessary information and documentation, analyse the information and deliver the agreed reports. Consultancy will be provided in the areas of Performance, Capacity Planning, Disaster Recovery, Operations, Database Management, System Security, System Management and Hardware Maintenance. For further details please contact Dave Stewart today on +44 (0)7831 775115 or email him on dstewart@brightstrand.com.
It’s Bigger on the Inside! In BBC’s historically long-lived sci-fi program, Doctor Who, there’s a certain bit of technology whose form has become an iconic image to many during the shows fifty years on television screens. The TARDIS (Time And Relative Dimensions In Space) is the ship piloted by the program’s main character, The Doctor, who is an alien from a race called the Time Lords. The TARDIS can go anywhere in time and space. Due to a broken chameleon circuit, it appears as a 1960’s police box, but always manages to surprise observers who discover that “it’s bigger on the inside!” In an earlier regeneration, our customers sometimes referred to DRNet as DR NET (Coincidence? I think not!). Since the technology’s inception in the 1980’s, we have invested more than 100 man years into this technology. From the very first line of code, we have written, rewritten, and rewritten again more than half a million lines of code. And while we haven’t yet mastered time, our technology has spread all over the world. As with the TARDIS, our technology is capable of performing many functions at once. It connects with existing applications, blending in as with a chameleon circuit, so the data can be instantly transported to any location on the planet. If you listen closely, you may even hear a muffled vworp-ing in the distance! While it takes 3-6 Time Lords to properly pilot a TARDIS, our expert engineering team keeps DRNet finely tuned and expertly piloted for you. Some may look at something like data replication as a simple task, but with all that is concealed beneath the surface and all that has gone into making it what it is today, this technology truly is bigger on the inside. It pays off, though. When you need help protecting your business and your data, it’s certainly nice to know that The Doctor is here to help. Allons-y! DRNet® is world class NonStop Data Replication technology. · Real-time Active/Active Data Replication · Real-time Tandem to OPEN Data Replication · Real-time File Synchronization · Refreshingly Real-Time Support from Real Engineers
+1 614 794 6000 Too Many SystemsToo Little Time!Some systems require, nay demand, proactive management. They are too important, handle too much money, or are too visible to customers or management to wait for an alert to go off. On the other hand, the reality of our world is that resources are constrained. You simply don’t have enough time to do all the work that’s required. You are handling hundreds if not thousands of systems, more often than not spanning multiple architectures. You could use a hand. Ban Bottlenecks is that helping hand. It is a service designed to turn you and your team into heroes. It does all of the tedious work and empowers you with information, not data. The Ban Bottlenecks service implements “Stage 5, Paranoid and Competent” performance management. It is an affordable, ongoing service based on the ITIL model. It includes data collection, elegant hand-crafted reporting, and personalized expert consultation. One system or hundreds, NonStop, Windows, Unix, VOS. Meet us at the NonStop Technical Boot Camp in San Jose in November!
1.415.256.8369
Discover 2013 Discover 2013 will be held in Las Vegas at the Venetian/Palazzo Resort on June 11-13. Registration is open: http://h30614.www3.hp.com/discoverPartial Agenda: Tuesday, June 11 10am to noon – Hands On Labs 12pm to 4pm – Discover Zone Open 4pm to 5:30 pm – Opening General Session Evening – Welcome Reception
Wednesday, June 12 8:30am to 10am – General Session 10am to 5:30pm – Breakout Sessions Discover Zone Open 8pm to 10:30 pm – HP Discover Celebration Event Featuring Carlos Santana!
Thursday, June 13 8:30 am to 4:30 pm - Breakout Sessions Discover Zone Open
NonStop Advanced Technical Boot Camp 2013 2013 Connect NonStop Advanced Technical Boot Camp (TBC) will be held in San Jose on November 3-5, 2013. Registration is open: http://www.connect-community.org/?TBC2013 Register before June 1st - $895.00 Doubletree Hotel rate - $169.00 per night Up to 10% discount on Delta Airlines for air travel to SJC or SFO
Kathy Wood NonStop Partner SIG/Vendor Chair
Find out more about us at www.tandemworld.net
|
|
|||||||||||
+44 (0) 20 8304 7979 We would like to thank the sponsors of the April 2013 Newsletter Gold Sponsor Silver Sponsor To enquire about Sponsorship opportunities for the Tandemworld Newsletter please click here. Current Subscribers 14213 Our company, Tandemworld, accepts no
liability for the content of this email, or for the consequences of any
actions taken on the basis of the information provided. |