At a Glance
 
Central Software
CityVoD - CSC Forum Archive
Software List on CSC Student LAN

Online Tour of the CSC Student Terminal Area
Opening Hours of the CSC
Systems Maintenance Schedule
List of Blocked Network Cards / IP Addresses
List of CSC Representatives
List of Departmental Network Administrators
Staff Computer Courses
 
Newsbits
 
Down Stop Up Top


Service of NCS Opscan 8/50 Optical Mark Reader Ended in December 2009

Please be reminded that the multiple-choice scanning and survey data collection service of the NCS Opscan 8/50 will cease soon. Originally the service was planned to cease by the end of Semester B 2008-09, but it is now extended to December 2009 (i.e. at the end of Semester A, 2009-10) to allow more time for our users to look for other alternatives. For queries on other alternatives, please feel free to contact the CSC Help Desk.

How to Go Green: Double-sided Printing

Double-sided (or 2-sided or duplex) printing should be used whenever possible. Besides the benefits of saving trees, reducing carbon in the atmosphere, and holding a handier set of hardcopies, surprisingly it can save up your print quota. With immediate effect, whenever you use duplex printing to print on a piece of paper through the Quota Controlled Fast Print Queue, your print quota will be deducted by 1.5 instead of 2. This is really a big saver!

To use double-sided printing, when you print:

  1. Choose the printer Quota_FastPQ on CCSTUNG1
  2. Click Preferences and then Finishing on the Printing Preferences window
  3. Select 2-sided Printing and click OK

Using double-sided printing is a small change but can have a big impact. As going green is our common goal, act NOW to show your support!

 
CSC e-Forms
 
Submit CSC Work Req.
Req. for Printing
Req. for Dump / Restore
Teaching Studio Booking / Cancellation
Apply for a Computer Account
Email Alias Application
Apply for a New Domain Name
Remove an Existing Domain Name
Modify the Hosting of an Existing Domain Name
 
Past Articles by Topic
 
E-mail
Admin. Systems
Intranet/Internet
Central Systems
Network
Remote Access
Chinese Computing
PC Support
Security
General
 
Useful Links
 
網上中文網頁繁簡轉換
CityU Email Services
Computing Dictionary
High-Tech Dictionary
Webopedia
Web Glossary
What is?
 
Got any questions, comments or suggestions? Contact the editors at ccnetcom@cityu.edu.hk
 
Issue 39 - March 2004
Enhancement of PC Security Through Microsoft's Software Update Service
By Joe Lee

In August 2003, the MS Blaster worm got through a known security loophole in Microsoft Windows and attacked millions of computers around the world, resulting in an enormous economic loss. Actually, this disaster could have been avoided if users had applied the security patch MS03-026 released a few months before the attack. However, many users might be too busy to perform Windows Update on time, or hoped that they could luckily survive in the attack.

The damage of the MS Blaster worm was minimal on campus as we only received a few infected cases. However, this did not mean that our users had applied the required security patch beforehand. Actually, the protection came from the virus management system, the Mcafee ePolicy Orchestrator (ePO), which was implemented in year 2002. What will be the consequence if a new worm makes use of the same security loophole to launch an attack later? Obviously, the ultimate solution to this problem is to fix the security loophole by applying Microsoft's security patch. That is why we frequently remind users to perform Windows Update through network announcements. This important operation is simple and usually takes only a few minutes to complete. Unfortunately, according to our collected information, the machines connected to the staff LAN have missed almost 10,000 Microsoft patches and this figure will increase significantly with newly discovered bugs. How bad is the situation? To be pessimistic, more than 1,000 machines are doomed to be attacked by hacker, viruses, and so on. As a result, our campus network is in danger. Therefore, the CSC sees the urgent need to perform Windows Update compulsorily and automatically to reduce the risk of attack and virus infection.

After studying Microsoft's Software Update Service (SUS) product for some time and inviting some departments to participate in the pilot run, we decided to deploy SUS in delivering critical patches to our staff LAN machines (PCs belonging to the CITYUMD domain). Starting from 1 March 2004, all staff LAN machines will automatically download and install newly released or missing critical Windows Updates from our central SUS server. The downloading process will start within a specified time frame, depending on the PC and network conditions. The installation process will be initiated at 1 p.m. everyday. For those PCs which have missed the previous schedule, the installation process will be initiated within 15 minutes after their reboot. When it is done, users may be asked to reboot the machines to make the patch effective. They may decide the most convenient time to reboot their machines, though immediate reboot is recommended.

By the time of publishing this article, the number of missing patches has been greatly reduced by around 90%. The condition will be improved further if machines with outdated Service Packs can be upgraded to the latest versions and machines running Windows 2000 can be upgraded to Windows XP SP1.

Nevertheless, both the ePO and SUS are supplementary tools to help users protect their PCs. It still relies on the users to employ these tools, for example, by following the recommended security practice and ensuring that the patches have been successfully installed. They should note that:

  • It is necessary to manually perform MS Office security updates, SQL server updates, non-critical Windows updates as well as other applications' updates. In fact, Microsoft has planned to enhance the next version of SUS to support MS Office and MS SQL server updates.
  • SUS only supports Windows XP and Windows 2000 and works best for Windows XP. Upgrading to Windows XP from Windows 98 or Windows 2000 is simple and worthwhile.

Software are full of bugs. This is well known for several decades. Inevitably, computer users have to live with software bugs, especially Microsoft's. Meanwhile, the CSC will work closely with the Departmental Network Administrator (DNA) of each department to ensure the smooth implementation of SUS. However, the collaboration of our users is a must in order to safeguard the campus network.

Also in this issue...
How Can We Stop E-mail Viruses?

Network Management System: What's It All About?
Network Connection Management System to Replace NAMS
Firewall in Place to Protect Our Network
Abuse Curbed by Print Quota System
Tech Terms: Do You Know What They Mean?

 

 

Current & Back Issues
 
Search Articles
 
FAQs
 
Microsoft Windows Vista
Microsoft Office 2007
中文支援常見問題
Anti-spyware
Internet Explorer 7
General Email Services
Wireless LAN
CityU-Net for Alumni
Virtual Private Network (VPN)
Cascading Style Sheets (CSS)
 
Tips & Tricks
 
Titles, META Tags, LINK tags, and Search Engine Robots
How do I ... use the Windows XP Installer Clean Up Utility to remove apps?
Create a watermark using a Clip Art Gallery image
Create hybrid graphical/CSS buttons
Three timesaving Ctrl-key tricks in Excel
PowerPoint won't save your presentation to CD: Now what?
Validators vs. Linters: What's The Difference?
 
Technical Guides
 
Guideline to Back Up your Computer and Important Files
VPN Connection Setup Guide for Windows XP
VPN Connection Setup Guide for Windows 2000
Network Connection Management System - User Guide
Student Residence Network Connection Guide
CityLink Plus User Guide
Webmail User 2.0 Guide
 
Freebies
 
FCleaner - an all-in-one Windows cleaning and optimization tool
TweakNow PowerPack - a fully-integrated suite of utilities that let you fine-tune every aspect of your computer's OS and Web browser
virtualStudio - a stand-alone photo editor that is able to run most Photoshop plug-in filters
PDF Split and Merge - a free open source tool to split and merge pdf documents
SpaceSniffer - a portable tool application that lets you understand how folders and files are structured on your disks
 
Home
 
CityU e-Portal
CityU Home
Personal Web
CSC Home
 

Copyright© Computing Services Centre, City University of Hong Kong. Best viewed in 1024x768 with IE. Javascript enabled. Last modified on Thursday, 20-Aug-09 16:51:00 .