<?xml version="1.0" encoding="utf-8"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title>I'm Tellin' ya now - Latest Comments</title><link>http://yelof.disqus.com/</link><description></description><atom:link href="https://yelof.disqus.com/comments.rss" rel="self"></atom:link><language>en</language><lastBuildDate>Mon, 21 Jan 2019 03:46:58 -0000</lastBuildDate><item><title>Re: About Mike</title><link>http://www.yelof.com/about-mike/#comment-4299485862</link><description>&lt;p&gt;Hi Mike,&lt;/p&gt;&lt;p&gt;i'am a big fan of the hardening guide/security hardening&lt;br&gt;guide in private and at work. Last year at VMworld EU i was very happy to see&lt;br&gt;you live, talking about TPM c:&lt;/p&gt;&lt;p&gt;At work we started shortly with VIC and while VIC was&lt;br&gt;spinng up new container VMs a saw in vROps that these VMs weren't sec.&lt;br&gt;hardening guide compliant.&lt;/p&gt;&lt;p&gt;So i was thinking that may be you could speak with these&lt;br&gt;guys from Sofia that they implement in VIC security hardenend compliant VMs AS&lt;br&gt;cVM's Kind regards, Stephan&lt;/p&gt;</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">Stephan</dc:creator><pubDate>Mon, 21 Jan 2019 03:46:58 -0000</pubDate></item><item><title>Re: Announcing the vSphere 6.7 Update 1 Security Configuration Guide</title><link>https://www.yelof.com/2018/11/02/announcing-the-vsphere-6-7-update-1-security-configuration-guide/#comment-4175329488</link><description>&lt;p&gt;Excellent work!  Thanks Mike, You're hard work makes our jobs easier.&lt;/p&gt;</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">tbenz9</dc:creator><pubDate>Fri, 02 Nov 2018 13:34:19 -0000</pubDate></item><item><title>Re: vSphere VM Encryption White Paper now available</title><link>https://www.yelof.com/2018/01/17/vsphere-vm-encryption-white-paper-now-available/#comment-3840149778</link><description>&lt;p&gt;VMware VM Encryption workload impact on CPU.&lt;/p&gt;&lt;p&gt;Based on "VMWARE vSPHERE VIRTUAL MACHINE ENCRYPTION PERFORMANCE" document. the VM encryption would impact CPU about 10%~50%. Generally, if we enable this feature on ESXi host. How much buffer of CPU we should reserve for VM encryption ? &lt;br&gt;BTW, besides AES-NI on BIOS, Are there some Hardware AES offload adapters we could select ?&lt;/p&gt;&lt;p&gt;Thank you for your feedback.&lt;/p&gt;&lt;p&gt;Edwin Ma&lt;br&gt;Orange Business Service (Singapore)&lt;/p&gt;</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">Edwin Ma</dc:creator><pubDate>Thu, 05 Apr 2018 07:02:31 -0000</pubDate></item><item><title>Re: Zero to Windows Domain Controller in 4 reboots!</title><link>http://www.yelof.com/2014/08/04/zero-to-windows-domain-controller-in-4-reboots/#comment-1528858820</link><description>&lt;p&gt;Thanks! It is time for me to refresh my lab VMs to R2. I will definitely incorporate this into the approach.&lt;/p&gt;</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">Dennis Bray</dc:creator><pubDate>Tue, 05 Aug 2014 15:02:00 -0000</pubDate></item><item><title>Re: Zero to Windows Domain Controller in 4 reboots!</title><link>http://www.yelof.com/2014/08/04/zero-to-windows-domain-controller-in-4-reboots/#comment-1527328072</link><description>&lt;p&gt;Nice, we'll have to look into this for the upcoming AutoLab refresh.&lt;br&gt;I want to be able to create a more modular system and this will come in handy.&lt;/p&gt;</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">nickmarshall9</dc:creator><pubDate>Mon, 04 Aug 2014 16:08:52 -0000</pubDate></item><item><title>Re: Survey: What questions does the security guy ask all the time?</title><link>http://www.yelof.com/?p=344#comment-1046948162</link><description>&lt;p&gt;- Do hosts have lockdown mode enabled?&lt;br&gt;- Are hosts joined to AD?&lt;br&gt;- Are hosts using NTP and are they in sync?&lt;br&gt;- Which VMs are using VMware Tools time sync?&lt;/p&gt;</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">Jirah Cox</dc:creator><pubDate>Mon, 16 Sep 2013 14:03:15 -0000</pubDate></item><item><title>Re: Survey: What questions does the security guy ask all the time?</title><link>http://www.yelof.com/?p=344#comment-1043775499</link><description>&lt;p&gt;I had a nice post typed up and twitter ate it, so here's the short version - correlate and filter. I want to see a VM reboot event, be able to look and see that user X rebooted it through the OS (using Tools maybe?), and see What VC rights that user has if any, all in vCenter. Show me manual processes that skip automation, like a manual VM decommission rather than using the vCO workflows. I can get this stuff now, but there's a lot of looking in 2-5 places or sifting through results. This would bring true Single Pane of Glass management to vCenter. &lt;/p&gt;</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">Rob</dc:creator><pubDate>Fri, 13 Sep 2013 22:49:31 -0000</pubDate></item><item><title>Re: Survey: What questions does the security guy ask all the time?</title><link>http://www.yelof.com/?p=344#comment-1043419767</link><description>&lt;p&gt;My security officer wants to check some vmx entries to see if they exist on VMs as part of the hardening guide.&lt;/p&gt;&lt;p&gt;I would rather he didnt have to search through the vCenter Client to get this information and the other info which you listed most of above.&lt;/p&gt;</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">Guest</dc:creator><pubDate>Fri, 13 Sep 2013 19:00:49 -0000</pubDate></item><item><title>Re: Dude, that&amp;#8217;s so Meta</title><link>http://www.yelof.com/2012/10/10/dude-thats-so-meta/#comment-678909275</link><description>&lt;p&gt;You threw 'security' in there as if it were a foregone conclusion.  This type of metadata 'could' also lead to more identity theft, stalking, tracking, etc.... I think the only thing that could be worse would be if Google had a patent for this... who do you trust to handle your personal data more securely, pretentious hiptsers or Google?&lt;/p&gt;</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">vSketch</dc:creator><pubDate>Thu, 11 Oct 2012 06:50:04 -0000</pubDate></item><item><title>Re: Software Defined Security</title><link>http://www.yelof.com/?p=278#comment-653832442</link><description>&lt;p&gt;Mike,&lt;br&gt;Great post. I wouldn't worry too much about the published APIs as they could be protected against unauthorized use and a DDoS attack. Also, I think the digitally signed meta data could also help with multi-tenacy. A service provider would add a customer identifier to the meta data or the customer would add the identifier if the worload was created onsite. You could even go so far as to think this could become a standard of some sort to allow for the ease of mobility between clouds.  &lt;/p&gt;</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">Chris Cicotte</dc:creator><pubDate>Mon, 17 Sep 2012 22:33:07 -0000</pubDate></item><item><title>Re: Software Defined Security</title><link>http://www.yelof.com/?p=278#comment-643262979</link><description>&lt;p&gt;Interesting line of thinking there Mike. Of course I'm all for security and compliance (who isn't) but curious as to the potential increased overhead your suggestion may bring. Would a change like you suggest be more of a barrier to vSphere Mgmt than is needed? I guess it all boils down to 1. how much security an org desires; 2. what amt of security an org requires, compliance/legally-wise; 3. addt'l admin overhead an org is willing to take on.&lt;/p&gt;&lt;p&gt;Again, I'm not against increased security (really :) ), but since I'm a 'visual' person would just like to see this in action.&lt;br&gt;Good write up!&lt;/p&gt;&lt;p&gt;(@coolsport00)&lt;/p&gt;</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">Shane Williford</dc:creator><pubDate>Fri, 07 Sep 2012 08:57:22 -0000</pubDate></item><item><title>Re: Going Rogue- How did that data get in the cloud?</title><link>http://www.yelof.com/?p=264#comment-575995948</link><description>&lt;p&gt;I thought the Romulans were the first species the Federation found that did not need to de-cloak to fire weapons. Discuss!!&lt;/p&gt;&lt;p&gt;Good post. Very relevant.&lt;/p&gt;</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">John Baker</dc:creator><pubDate>Wed, 04 Jul 2012 06:02:53 -0000</pubDate></item><item><title>Re: BTOGG &amp;#8211; Google Glass and future security implications</title><link>http://www.yelof.com/2012/06/28/btogg-google-glass-and-future-security-implications/#comment-571632419</link><description>&lt;p&gt;in order to stop people from 'forgetting' to turn off their visual streams, companies are going to have to start installing WiFi "jammers". While its illegal (in the US) to jam "cell" frequencies, I don't think its illegal to do so for WiFi signals after they're found - that's not to say someone can't stream over 3g or 4g... I'm thinking that future "security" will have to incorporate active signal scanning. &lt;/p&gt;</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">Sketch</dc:creator><pubDate>Fri, 29 Jun 2012 06:45:05 -0000</pubDate></item><item><title>Re: About Mike</title><link>http://www.yelof.com/about-mike/#comment-441215316</link><description>&lt;p&gt;Mike,&lt;/p&gt;&lt;p&gt;I was hoping you'd let me repost some of your blog content at &lt;a href="http://DZone.com" rel="nofollow noopener" target="_blank" title="DZone.com"&gt;DZone.com&lt;/a&gt;.  Brian Gracely is in our Most Valuable Blogger program, and we've been happily reposting the Cloudcast for some time now.  Let me know if you want to get some of your content out to the dev. community - I'm sure they'd appreciate it.&lt;/p&gt;&lt;p&gt;Best,&lt;/p&gt;&lt;p&gt;Eric Genesky&lt;br&gt;egenesky@dzone .com&lt;br&gt;Content Curator&lt;br&gt;DZone, Inc.&lt;/p&gt;</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">Mitch Pronschinske</dc:creator><pubDate>Thu, 16 Feb 2012 15:28:33 -0000</pubDate></item><item><title>Re: A dinner with infamy</title><link>http://www.yelof.com/2011/09/03/a-dinner-with-infamy/#comment-396806510</link><description>&lt;p&gt;Great post, and fun to read after hearing about it over drinks in Herzilya.  Must have been wild to meet Mitnick after all these years.  Gotta say, tho, that I'm curious about your rush to forgive him.  I mean I can see forgetting about it and having a good time, but has he actually turned is life around?  Is he giving back to society?  Having read "Ghost in the Wires" I'm not sure I read any real contrition or regret in his writing.&lt;/p&gt;</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">daniel shugrue</dc:creator><pubDate>Thu, 29 Dec 2011 15:59:57 -0000</pubDate></item><item><title>Re: A dinner with infamy</title><link>http://www.yelof.com/2011/09/03/a-dinner-with-infamy/#comment-372533319</link><description>&lt;p&gt;Great history xD. I loved it, even retweeted the tweet mentioned....&lt;/p&gt;</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">A.</dc:creator><pubDate>Fri, 25 Nov 2011 20:04:01 -0000</pubDate></item><item><title>Re: About Mike</title><link>http://www.yelof.com/about-mike/#comment-355306770</link><description>&lt;p&gt;Mike: Your dad was a great guy, along with Jimmy Kelly. I had a lot of laughs with John.&lt;/p&gt;</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">Ronald Santocucci</dc:creator><pubDate>Thu, 03 Nov 2011 22:40:02 -0000</pubDate></item><item><title>Re: A dinner with infamy</title><link>http://www.yelof.com/2011/09/03/a-dinner-with-infamy/#comment-303712911</link><description>&lt;p&gt; "It was almost 25 years ago and he has since paid his dues. It’s all good and I hold no grudge. Life is too short. There are plenty of people who have done things that landed them in jail and they have not turned their lives around and tried to give back to society like he has. So, he’s makes a living but it’s now an honest living."&lt;/p&gt;&lt;p&gt;Right, and that's why he is releasing his "official autobiography" only immediately after the agreement that all profits from a book would go to the victims of your crime had expired.&lt;/p&gt;</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">Guest</dc:creator><pubDate>Tue, 06 Sep 2011 15:15:10 -0000</pubDate></item></channel></rss>