Is your wireless naked?

Over the years I have always been reluctant to endorse or install wireless networks for clients, but who am I fooling as I set in my neighborhood coffee shop and begin this post? Wireless networking is fact of life for all of us, so let’s be clear that the primary issue with wireless networks is always security. Wireless network security has two major points of vulnerability: 1. Laptop vulnerability in open networks and 2. Securing wireless access points (wireless routers).

Whether your workstation is wired or wireless it can always be a target for hackers or malicious malware (viruses, Trojans, worms, etc.). All networks should have a physical/hardware firewall separating the network computers from the Internet. Depending on the level of sophistication, the firewall can not only provide separate private addresses for the local network, thus separating the local network from internet, but more sophisticated firewalls can also control or limit the type of inbound and outbound traffic. In many coffee shops and open networks there is no access control except network address translation (NAT) to provide private addresses for multiple machines which allows them to access the internet using one internet connection. This is done to accommodate all wireless users that may come in wanting to use the wireless internet.  Some “hot spots” require a web interface logon which may require an additional paid access or some kind of acknowledgment (room number or agreement) which may mean that remote access is better controlled with increased security. In addition, some of these locations may limit remote access Virtual Private Networking (VPN) or remote desktop access (RDP) allowing only web based email or Remote Web Workplace connections. In that case, however, the security is increased.

On the other hand, you are at the local neighborhood coffee shop and what do you do?

Install a personal firewall! The following links provide a list of current personal firewalls including several that are free: http://www.firewallguide.com/software.htm#Top_Picks and http://personal-firewall-software-review.toptenreviews.com/. I don’t make any recommendations because other than intrusion defense the various models work differently. Some are configured automatically (my favorite) while others are more technical; if you don’t know what SMB or ICMP means, work with the more easily managed applications.

As stated earlier, I believe all sites whether office or home should always have a physical firewall in place and wireless routers can also serve that purpose. Note that the range can be varied both in function and cost; recently one of the professional magazines to which I subscribe gave a list of 5 quality WLAN (Wireless Local Access Network) adapters: http://www.channelpro-digital.com/channelpro/201009?folio=20#pg22. Take time to do a little research about the appliance you want to buy; besides being rated for bandwidth speed, I recommend that the appliance have a web interface that you can understand and if you are using virtual private networking to access a site make sure that its firewall can be configurable and that it allows VPN pass through. When I encounter a router that I’m not familiar with, I go to the manufacturer site and look at the user manual and view not only technical specs but also how to configure the router for my clients.

Finding the right wireless adapter/access point is only part of the issue when setting up a wireless network. Almost all of the consumer grade products come ready to go, just plug it in and you can reach the internet. Although this can make life simple, an open network is an invitation to trouble; therefore the next step, configure encrypted wireless access. Did you look at how to configure wireless security when you reviewed the user manual? Use WPA (Wi-Fi Protected Access) encrypted security. We aren’t a how to site but take a look at Brian Posey’s evolving discussion regarding Wi-Fi vulnerabilities and how to secure your home or office network: http://www.windowsnetworking.com/articles_tutorials/Securing-Wireless-Network-Traffic-Part1.html. Wireless networks are a fact of all of our lives but there are risks; please play heads up ball.

Now is the time for Windows 7

I’ve been using Windows 7 for over a year at this point and after Vista have been quite pleased. Standard practice for many independent IT pros has been to recommend delaying installing new operating systems until many of the kinks had been worked out. In addition, Windows XP does not have a natural migration path to Windows 7, i.e. clean install. My recommendation was for businesses to wait and replace existing Windows XP computers with new Windows 7 machines; but that was last year. What are we doing now?

Recently, I received several requests inquiring about the cost associated with “upgrading” Windows XP workstations to Windows 7. Well, my hourly rates stay fairly standard depending on the tasks but more importantly: Who am I talking to, what kind of business are we talking about, and what is the condition of the workstations and network? I understand the reluctance to exchange information with a stranger but I don’t proceed unless we can meet and those questions are answered. Given my position I thought I’d take the time to outline several issues about installing Windows 7 Business edition.

First off, if you are a business please purchase Windows 7 Professional or Ultimate for your network. These versions allow for more network flexibility and improved network functionality, printing, and security. Yes, I know Costco, Best Buy, and Fry’s have good deals on various home versions on new computers but purchasing the appropriate version saves us all potential problems down the road when you decide to grow your network or install a server to your network. More specifically, let me highlight a few issues that need to be considered before you consider moving to Windows 7 (32 or 64 bit):

  1. There is no Windows 7 upgrade path for the following operating systems:
    1. Windows 95, Windows 98, Windows Millennium Edition, Windows XP, Windows Vista® RTM, Windows Vista Starter, Windows 7 M3, Windows 7 Beta, Windows 7 RC, or Windows 7 IDS.
    2. Windows NT® Server 4.0, Windows 2000 Server, Windows Server® 2003, Windows Server 2008, or Windows Server 2008 R2.
  2. Supported upgrade paths:
From Windows Vista (SP1, SP2) Upgrade to Windows 7
Business Professional, Enterprise, Ultimate
Enterprise Enterprise
Home Basic Home Basic, Home Premium, Ultimate
Home Premium Home Premium, Ultimate
Ultimate Ultimate

  1. Is your current computer hardware adequate to run Windows 7? I know that your computer is labeled Vista compatible but will all Windows 7 features work? Take time to explore the Windows 7 system requirements. Better yet Microsoft has supplied a tool, Windows 7 Upgrade Advisory tool, this can save you research time and point out hardware limitations and possible hardware upgrades if necessary.
  2. Included in the hardware requirements is driver support for network adapters and video cards. The advisory tool should inform you of this factor but if there is any doubt, check with the hardware vendor and download the appropriate driver before you begin you upgrade or installation. Believe me this will save you quite a lot of time and hassle.
  3. Whether you upgrade or perform a clean install, check to make sure that your favorite line of business software and other applications will work with Windows 7. This is particularly important if you move from 32 to 64 bit hardware. In addition to going to the vendor support website, use your favorite search engine, explore the experiences of other users, and call the vendor if there is any doubt. There is nothing more sad than listening to a client who has their major database in dos, Excel 2000, or FoxPro but doesn’t realize this until they upgraded their entire network and all of their business is dependent on this software. Do you buy the upgrade version of your software; migrate the database to new software; have new software built or start from scratch and manually re-input a lifetime of customer and inventory information?
  4. Whether you are doing a clean install or an upgrade it is essential that you backup your data before you begin. Note: backup will include all of your documents and data but not applications (programs). Also note, that Windows XP backup is not compatible with Windows 7. If you use third party backup tools make sure they are compatible with Windows 7. To facilitate the backup of data prior to moving to Windows 7, Microsoft provides the “Easy Transfer Tool”.
  5. For more complete information about “Upgrading from Windows XP to Windows 7“, see http://windows.microsoft.com/en-US/windows7/help/upgrading-from-windows-xp-to-windows-7.

I’ll talk about early adoption later but from here on out as businesses purchase new computers or look to upgrade their networks, Windows 7 is going to be the operating system of choice. Fear of change should not be a guideline as you move forward but advance planning should be your mantra.

Corey’s Corner | Avoiding Scammers

Usually I write about getting your website up and running. I’m going to take a little detour this time around and talk about a persistent and seemingly never ending problem them plagues businesses and private residences alike: scammers/spammers.

We’ve all gotten the gibberish emails, the “male enhancement”, Russian dating and Nigerian prince emails. We all know they’re spam and opening them or downloading a file from them can spell our computer or network’s doom. Did you know, however, about Tab Nabbing? I sure didn’t. Apparently, the new way scammers get your information is by opening a new tab with a dummy site loaded in it mimicking Amazon.com or your bank website. The goal is to trick you into putting your information into the fake site and giving the scammers your password. With that in hand, they can drain your account, buy expensive items, or, in the case of Facebook and your email, send distressed emails to the people in your address book asking for money to get you out of a jam.

With new scams being born every minute in cyberspace, it’s hard to keep up with all the possible dangers. Just this last weekend, I received an email telling me that one of my friends on Facebook recommended a page. I clicked on the link and thankfully nothing happened. I heard later that day from that same friend letting me know that his account had been hacked, and that any emails from him via Facebook should be ignored. (I of course immediately changed my password and kept vigilant for any unusual activity on my account for the next week or so.) With all these new dangers being born any moment, what can we do to keep our information safe?

Two excellent tips offered by scambusters.org is to always pay attention to the icons in your browser. For secures sites such as bank sites, Amazon.com, etc, the padlock, located on the lower right side for many browsers, should be lit up. Also, the URL should look like it normally does. (ie Amazon.com/a long string of characters that allow you to log in.) If the URL doesn’t look right, or you are suspicious, re-enter the URL. If you’re super paranoid, like me, you can also search for the company using Google or Bing. Search Engines are usually pretty good at not recognizing dummy URLs, and Google especially is harsh on scammers when it can. So when in doubt, simply close the tab and try to get to the site in another way. Another excellent resource is snopes.com. You can search urban legends, chain letters and many other possibly shady things using their database of information. They also usually have fairly up to date information on new scams.

While it’s hard to keep on top of keeping your information safe in cyberspace, vigilance is key. While the internet can seem like an endless playground of information, toys and entertainment, you can never let yourself forget that there are people out there that will take your information and use it for nefarious purposes if they can get a hold of it. Pay attention, close tabs when you aren’t using them, and you should be all right.

Corey’s Corner | Finding the Web Designer for You



In my last post for Corey’s Corner, I covered some easy to make mistakes when dealing with building a cohesive and easy to use site to promote your business. This month, I’d like to cover the process on finding the right web designer for you, and how to utilize their talents to the fullest.

It’s easy to be intimidated by technology you imperfectly understand. We all have had a moment when facing someone from a younger generation, full of internet slang and enthusiasm, babbling in a language that is near incomprehensible. In fact, to some, I have been that person. In the end, it’s easy for both parties to feel frustrated by the lack of effective communication, and both walk away unsatisfied by the interaction. Sound like something you want to encounter every time you need to update, upgrade or change your website? Heaven forbid that you ever have anything actually break. This is why choosing a web designer that you are comfortable with is such an important task. It literally can make or break your foray into starting or even expanding your online presence.

Some key things you should look for in a web designer are their organizational, professional and communication skills. Do they respond to your emails promptly? (We’re talking within 48 hours, not 30 minutes people.) When you have questions, are they able to answer in a way that you can understand? If their initial answer is vague or incomprehensible, are they able to take the time to explain what they mean? While inability to accomplish these things doesn’t make the individual a bad web designer, it does make them a bad fit for you and your needs.

Another important thing to take note of is skill. While that may seem obvious, it can be easy to fall prey to fancy promises and guarantees of success. If the designer in question isn’t able to produce a portfolio of work, makes promises that sound too good to be true, or doesn’t seem to be listening to your concerns, they may not be the designer for you. Better to spend time talking to prospective designers than find out they’re scam artists after you’ve invested thousands of dollars for a site you and more importantly, your customers, hate.

A little time spent looking at ideas and talking about goals not only helps the designer understand what you want, but it can open a dialogue in which clear deadlines and goals are set for both sides of the designer client relationship. Don’t be afraid to be clear and up front with what you want! A competent designer should be able to tell you if what you want is possible within a given time frame. An ethical one will tell you if the goals you’ve set are reachable. Remember, however, that some of the onus is on you as the client too. Are you being unrealistic? Are you listening to what the designer is trying to tell you? As long as you keep your mind and ears open and use discretion, your employment of a web designer can be rewarding and worth the sometimes steep prices.

One last thing to consider when looking at developing a new or improved website is choosing between a company or freelance designer. While a company does offer the kind of personnel flexibility that can make finding the right designer for you easier, they also can tend towards template website designs as well as more rigid website packages. With a freelance designer, you can pick and choose what you do and don’t want, and can come out with a more unique look. On the other hand, you’re dealing with an individual that could get sick, have a family emergency, or even simply leave the industry. There’s no replacement for your needs in that situation, save hiring a new designer that may or may not know how to work with the previous designer’s website. This loses you money and time, not to mention the frustration of starting the search again.

In the end, how you conduct your search for a web designer is your decision. It’s your website, your money and your business. You are ultimately responsible for how well your website performs when all is said and done. With that in mind, take a moment to see this comic by my current favorite, The Oatmeal. Are you acting like this customer when dealing with web professionals?

How a Web Design Can Go Straight To Hell

The Excitement of Uninterrupted Power Supplies: UPS

Summer is a time for lots of construction and road maintenance and my neighborhood is no exception. We were notified that there would be occasional power outages during the times they work on our street and initially, I blew this notice off and quipped, “No problem as long as they give advanced notice of specified times.”

Later a client called and wanted to know what to do when the power in their building was shut off briefly during a construction phase. My answer:  Shut down the server, computers, and other related devices during the power outage. I also noted that if this was to be for an extended period time it is a good idea to inform regular clients of the situation. Last weekend I received UPS, or uninterrupted power supply, failure notices via alerting software from a client with a notice that the server was to be shut down; the server stayed down the rest of the weekend. I informed my client and he went in early Monday morning and restarted the server with no problem and we continued business with no further incidents. Power outages and surges can play havoc with your server, computers and other office devices. This is why I always insist on a UPS (uninterrupted power supply) to provide surge protection and an orderly shutdown of the machine if needed.

Power outages, buildings with inadequate wiring, and lightning can result in significant power surges which can not only damage machines but can cause loss of data. Some people assume that a surge protector with a lot of Joules will suffice. There could be a discussion of how many Joules is adequate but the true advantage of surge protectors is that they are inexpensive. A UPS not only provides surge protection but in the event of a power loss  it also shuts down the computer in an orderly fashion, preventing damage not only to the machine but also the operating system. Many people forget to install the UPS software and connect the UPS to the computer, which doesn’t allow the UPS to perform its alerting or shutdown functions. The significance is to use the UPS for more than just surge protection.

APC, Tripp-Lite and Belkin (surge protection wizard) are major manufacturers of UPS batteries and surge protectors with a variety of 800+ Joules surge protectors for less than $50+. APC also offers a UPS selection tool to assist in determining the right backup battery for your office. APC will also take used batteries as a trade-in toward the purchase of a new battery or UPS.

I know talking about surge protectors and backup batteries is not as exciting as your new 4G smart phone but your computer/server should last longer than your smart phone.

Has your antivirus subscription expired?

Security for computer networks comes in many forms.Often the most troublesome and frequently encountered are malware infections (viruses, worms, Trojans, spyware, etc.). Unfortunately, during my initial meetings with prospective clients I still find workstations with expired antivirus software or no protection at all. Malware, like hard drive failures, can make workstations inoperable but all data can also be lost. Many techs will only work so long on resolving infections before they suggest reformatting the hard drive and reinstalling the operating system. Maybe they are just giving up but if you are being paid by the hour, it is the better part of valor to start from scratch rather than keep charging your customer for a server when you don’t have or know the solution. On the other hand, there are technology firms that focus solely on virus eradication (at all costs) and data recovery, but be prepared to pay the price if you absolutely need your workstation and data intact. This might be a time to lecture about hard drive backups or imaging but that is not a good method for establishing a good working relationship.

In this day and age of growing security needs, the list of old and new malware removal companies is never ending so there is never a reason for a person to be without virus protection. Professionally, I don’t recommend free antivirus solutions (I don’t scold my mother-in-law for using AVG Free Edition) because most free versions of software offer no support or are only limited (restricted) versions. The most popular free antivirus programs are AVG Free Edition, Comodo Internet Security, and Avast Free AntiVirus. One exception to the premise, that free software provides no support or is a restricted version of the paid client, is Microsoft’s Security Essentials, http://www.microsoft.com/security_essentials/. Microsoft offers this antivirus client for standalone computers with support and the promise of offering a good stable product; if you are looking for an antivirus client this might be worth a try. If you are looking for these and other free or trial antivirus and other downloadable utilities, I suggest becoming familiar with CNET’s Download.com which offers a vast array of spyware free/trial utilities to try. In addition, CNET offers several good spyware removal tools including: Malwarebytes Anti-Malware, Spybot Search & Destroy, Ad-Aware Free Anti-Malware, and SuperAntispyware Free Edition.

Last note: Often, I’m asked to define the difference from viruses, spyware, Trojans, and other malware. I don’t always make a true distinction between the various types of malware other than, “Do I have a tool to remove it quickly to minimize client down time?” Sophos has published a paper, “A to Z of Computer Security Threats”, which gives a good definition of the various malware types which you may find interesting. For your convenience, we have posted the PDF file on our SkyDrive site for you to download. In addition, I’ve also included Trend Micro’s white paper on understanding and protecting against Fake (hoax) Antivirus infections.

Robert Crane: Basics of SharePoint Video

Collaboration is the key to effective business use of the Internet. There are numerous tools both general and specific for business; Microsoft SharePoint is one such business tool.  We believe that SharePoint is a good tool for small business owners but recognize that before it is widely accepted more business owners need to understand how to use this tool.  Thus we present Robert Crane, a noted SharePoint expert who focuses on the Small Business market; recently he released a full version on his presentation on the basics of using SharePoint.  We are adding it to our library of SharePoint presentations. This video and other videos in our library will give you a good orientation on how to use SharePoint.

Facebook’s In Trouble Again!

In case anyone missed the fact the Senate was concerned over some of Facebook’s new changes such as “instant personalization”, Tech Crunch has an excellent article detailing the Senate’s concerns as well as providing the original letter to Facebook and Facebook’s reply:

Tech Crunch on Facebook vs The US Senate

Corey’s Corner: Some Food For Thought

When you’re embarking on the long and sometimes arduous journey of building a website for commercial use, sometimes it’s tempting to use shortcuts. People have been known to use buzzwords, pretend they know what certain things are when they don’t and many other tactics to assure the designer that they know what’s going on. Unfortunately, most are met with limited success. If the designer is worth their salt, they can generally winnow out what the customer needs and builds the site to match that.

However, sometimes the message is lost, and both the customer and designer end up frustrated and feeling defeated with a site neither is happy with. The moral of this story? Be up front about what you do and don’t know! Always ask questions. If the person you’re working with can’t or won’t answer you, or explain things to you in something that at least resembles a language you can understand, then they aren’t the person to help you build something your online business will depend on.

With that in mind, also be honest with yourself. Are you using buzzwords all the time to express how you feel? Are you being as clear and transparent as possible with your designer/tech/SEO? Also, do you even know why you know something? All questions you should be aware of and ask yourself as much as possible. Definitely food for thought!

For a humorous take on some of this, here is a comic by The Oatmeal. I feel #7 is incredibly apt!

(Warning: The Oatmeal is known for being sometimes crass. While I find the following comic funny, some sensitive viewers may not. Please click at your own discretion.)

8 Websites You Need To Stop Building

Corey’s Corner: I Have a Website, Now What?

So you’ve taken the plunge and created a website. Now what? Never fear, you’re not alone when it comes to not knowing the next step of internet marketing. My next series of blog posts should help get your mind going in the right direction as well as provide a few resources for you to lean on.

The first thing you should know about internet marketing is that it has very little to do with traditional marketing. This isn’t Valpak or your local newspaper. It’s the world wide internet, and it takes a different thought process to reach your target audience. One of the biggest mental block’s I’ve experienced working with my clients is the jump from a relatively captive audience to being forced to lure in your potential customers. Not only do you need to offer a valuable service, you need to offer it the right way with the right content and vehicle to capture your target demographic.

Step 1: Figure out who you want to target with your website. Everyone wants more sales, but who buys your products? What do you think you would be looking for online if you needed your own services? How would you look for your services? Putting yourself in the customer’s shoes is an excellent way to formulate a plan.

Step 2: Form a cohesive plan. You need to know what your expectations concerning your website are, and then you need to ask yourself what you need to accomplish those goals. This could require the hiring of outside professionals to fill in your knowledge or skill gaps, but we’ll talk about that later. Right now, you’re planning, and hopefully budgeting, for your website.

Another part of the plan is to figure out how your website will connect with your business. Is it meant to be your one and only way to get customers? Do you just want it so customers can see what your brick and mortar store offers? Perhaps you just want to have a web presence for now, and only want to post basic information and contact information. All of these are viable uses of a website, and can help your business. You just need to choose which is right for you, and build your plan around your needs. (Remember, the best part about having something on the internet is that it’s easy to change! Your website can always be updated to change with your needs.)

Step 3: Educate yourself! While it can be frustrating and uncomfortable to acknowledge that you don’t know anything or very little about creating a website, don’t be afraid to ask questions. Don’t know what SEO, Paid Search or Local Search are? Research! Wikipedia can be an excellent resource, as can technical blogs and many other internet resources. In addition to Wikipedia, Google Webmaster Tools has a set of guidelines that are good to know. As they are dense and in what I lovingly call “netspeak”, I do recommend Feedthebot.com, where the guidelines are explained in a more friendly manner. Still confused about what some of the information means? Run unfamiliar words through an online tech dictionary.

I know it sounds and feels a little like researching a paper, but trust me, the better informed you are about the internet, websites and internet marketing, the better off you’ll be. Even if you only know the basics of what some things are and want to hire a professional to take care of it, knowing a little protects you from obvious swindlers that try to trick the unsavvy with doublespeak and buzz words. Avoiding even one of these can save you loads of  money and keeps you free to find a good specialist to help you manage your site.

I understand that this post only covers the rudimentary basics of managing your website. See it as a way to readjust your thinking on what this new website is and what it can do for you. There’s a very fine line between taking up real estate on the internet and having a useful, revenue-producing website, and walking that line takes dedication and passion. As long as you care about your internet presence and are willing to put the time in to keeping your website up to date, you’ll do fine.