The Ten Second Test That Will Save Your Organisation Thousands

Wednesday, August 25, 2010

As we go about helping organisations we see a lot of virtualisation being used to save money on server hardware. But we are also seeing plenty of virtualisation used in ways that is going to eventually cost more than it saves. In short we are seeing some organisations suffer the midrange explosion that we warned about in our previous blog post.

That is - the idea of "free" servers is sometimes leading to the deployment of servers for roles of dubious value.

"If the server is free what's the harm?" I hear some readers ask. The problem is it's not what the server costs to buy that matters, it's what it costs to own. Further, as you add more and more computer systems complexity can have an amplifying effect on the cost of ownership of systems deployed.

When an organisation has to pay for "tin" upfront this acts as a natural restraint on over provisioning. When servers seem to be free sometimes this restraint is absent.

So, here is the 10 second test that will save your organisation thousands. Before you add a new virtual server for any ongoing production role to your design or architecture ask yourself this question - "If I had to pay for the tin would I still design it this way?"

If the answer to that question is not a solid yes then you need to re-think your approach.

Virus That Wont Go Away

Monday, August 02, 2010

Got an infection that just wont go away?

Has your computer got a virus that just wont go away? You've tried disinfecting it, scanning it with different anti-virus scanners and had a friend (or us!) look over it and for a little while it seemed okay, but then it all went bad again?

In this blog post we talk about 3 other possible problem sources that you might need to check.

Other Computers

If you have other computers on your home network then they are a potential source of the infection. It's a bit like having nits in the house - to eliminate the virus completely you will need to isolate all the computers and individually disinfect them before reconnecting them to the home network.

Don't forget to pay particular attention to computers that connect wirelessly. In these cases it is easiest to either turn off the wireless access point, or disable the wireless adapters on the affected computers.

As a general rule if one computer on your home network is infected it is fair to assume they will all need some attention (if they are all Windows computers).

Infected Router

It's possible that the problem isn't your computer at all, it's your Internet router instead.

Some older Internet routers have security flaws that allow hackers to break into them over the Internet. In these cases a hacker may have broken into your router and reprogrammed it to direct your computer to sites were it gets infected. Needless to say this affects all computers on the network.

If you have an older router (normally anything less than 3 years old is unaffected) and virus infections keep on coming back it is probably worth replacing your router, or at least reloading the firmware and changing the default passwords (for many people buying a new router will be much simpler).

Pretend Anti-Virus Software

Sometimes people find themselves being tricked into installing anti-virus software which really isn't anti-virus software. As a general rule of thumb if a site pops up a message saying "your computer is at risk" or something similar, it is selling "junk" anti-virus software. Rather than stopping viruses this software often does the opposite and loads software you don't want on your computer.

If you don't have any anti-virus software, and you use your computer just for home use we strongly recommend AVG Free Edition. Even if your computer is used for work the commercial version is good value.

And if none of that helps we can always have a look at your computer for you. Our fixed price service includes a deep-scan anti-virus check which eliminates viruses that onboard AV scanners can't get rid of.

Posted by Help Desk at 11:52 AM
Categories: Alerts, Home, Tech Tips
Free Consultantions for Canberra Region Businesses

Thursday, March 25, 2010

When it comes to technology getting the right advice is critical. To be effective it isn’t enough to rely on someone “who knows about computers” – you need experts that understands business and technology, like the team at Green Light IT.

Until the 16th of April we are offering Canberra region businesses a one hour consultation free of charge and obligation to determine whether your IT systems are helping or harming your organisation.

In just one hour Green Light IT could change the way you do business for the better. One of our consultants will come out to your business, talk about your needs, assess your current set-up, and recommend ways to streamline and improve the way IT helps you do business.

While onsite our consultant will also take the time to review your systems to check that your business isn’t exposed to any IT related critical risks.

Whether you have an existing IT provider or not our free consultation will give you the peace of mind of knowing the status of your IT systems.

Places are limited and the offer ends on the 16th of April so don’t delay. Call us today on 1300 46 4548 or email helpdesk@greenlightit.com.au to book your free consultation.

Posted by Help Desk at 12:24 PM
Edited on: Thursday, March 25, 2010 12:26 PM
Categories: Business, Specials
Managing Passwords

Thursday, March 18, 2010

Everyone seems to want you to remember a new "secret" so that they can identify you don't they? Whether it's a PIN for a credit card, a password for a social networking site, someone wanting you to create a login to read their news content or eCommerce the proliferation of "passwords" that the average person needs to remember continues to grow.

To come straight to the point there are now too many for all, except those with a photographic memory, to remember them all, and for the moment it is likely to get worse before it gets better.

Here are some tips on how to manage your multiple passwords to stop yourself from going insane.

Break your passwords down by importance

The first thing to do is understand that some passwords are more important than others - an easy example is that your online banking password is much more important than your online forum password. This probably seems obvious enough, but it is important later on as we discuss some of the strategies.

Passwords can be thought of as three broad categories:

Low Risk - passwords to accounts which if compromised are unlikely to cause you any significant harm - like a password you use for an online forum where you use a handle (a non de plume, or made up identity if you will).

Medium Risk - accounts where you might be embarrassed if they were disclosed - e.g. an account for an online community where you are known by your true name e.g. facebook, myspace, etc.

High Risk - accounts which could harm you or your finances if disclosed, and which a criminal would likely target such as ebay, paypal and online banking. It is also appropriate to consider passwords which protect other people's information at this level - i.e. your workplace passwords.

Using the Same Password in Certain Situations

The first strategy for managing online passwords is to, in certain circumstances, use the same password for different sites. This is normally pretty safe for low risk passwords. You might, depending on your appetite for risk, want to use one password across all your "medium" risk accounts as well (but a different one to your low risk accounts). You should never use the same password across high risk accounts.

Write some passwords down

In the office you may well have been told to "never write down your password". There's some wisdom in that position, and for a password you use almost every single day like a login to your work it really shouldn't be necessary. However, the problem is that many of your personal passwords aren't used every day - you might only use them once a month or less.

Writing down some passwords is okay under certain circumstances. Firstly - the bit of paper you record them on needs to be secure, and non obvious to others (not a post it note next to your computer, not a list in the first draw of your desk next to your computer, etc). Secondly, you should be really careful about writing down high risk passwords - in general it isn't a good idea. Thirdly - you must comply with the rules of anyone that controls the system the password controls access to - so don't write down your office password and then blame us when you get in trouble with the boss.

Use Your Web Browser Auto Login for Low Risk Passwords

Most web browsers are able to remember login details for you. For low risk, and medium risk accounts, depending on your appetite for risk you can let your web browser remember the login details for you. While this can create problems when you change computers that is a fairly infrequent event and will save you a lot of trouble in the short term.

Make Up Temporary Accounts for Sites Requiring Registration

Sometimes sites will require "registration" before they allow you to access information. Several online newspapers have moved to this model, and there are others. However many of these sites also allow logins to persist between browser sessions so you only need to "log in" the once.

So make up your registration details, login, and then forget the details. If you ever get locked out you can use their password reset process, or just register another account.

So there's a few thoughts on strategies for how to manage lots of passwords. Watch this space for advice on how to choose a good password.

Posted by Help Desk at 8:42 AM
Categories: Home, News, Security
Programs You Should Run To Keep Your PC Safe

Thursday, January 14, 2010

*** Note - this is advice for Home Computers ***

Customers frequently ask us what tools we recommend to keep their PC safe. Here's our recommended list for home computers - all the tools have free versions (at least for home use) and in our opinion are better than other offerings in the space, which pretty much removes any good argument not to use them:

Anti-Virus

Yes you need an anti-virus tool - our first pick for home use is AVG Free Edition which is free for non-commercial home use - you can download version 9 here.

AVG Free is effective, but light weight so your computer still has some capacity to do the stuff you ask it to.

* A word of warning - computers run really badly with two anti-virus products installed, so if you are going to use AVG make sure you uninstall whatever you are currently running first.

Anti-Spyware

Having a dedicated piece of Anti-spyware is a good choice. Anti-virus and anti-spyware are different jobs, and combined tools don't do the job as effectively as dedicated pieces of software.

In our opinon the best tool in the space is malware bytes. There is a version you can pay for, but the free one is perfectly adequate. You can get both versions at the malware bytes web site.

A Better Browser

Your choice of web browser can make a substantial difference to the security of your PC. If you go with the mainstream choice (like Internet Explorer) you will be using the most widely targeted piece of software around. However, if you go too far from the mainstream (for example Chrome) you may find that websites don't work properly.

In our opinion the stand out product in the space is Mozilla Firefox. Needless to say it is free. It's also the second most widely used browser after Internet Explorer, so you aren't wandering too far from the mainstream.

You can download Firefox from the Mozilla website.

Internet Filtering

We think the best product in the space isn't actually a product - it's a service - Open DNS. The Open DNS project is designed to use the power of collaboration to identify potentially dangerous and offensive content on the Internet.

By configuring your PC to use the Open DNS servers you can then use their categorisation system to help keep your PC safe, and better, keep young eyes away from inappropriate content. Our blog post on Open DNS explains how it works in a little more detail and how to configure your system.

There is one other thing you should do to keep your PC safe. Backups - no one likes to hear it, but they are really important.

Backups can be approached in two ways - files only, or complete system backup. We will talk some more about these in the near future.

Posted by Help Desk at 12:24 PM
Categories: Home, Security, Tech Tips
Green Light IT scores 100% Customer Satisfaction Again

Monday, January 11, 2010

For quarter 4 2009 Green Light IT has once again achieved a 100% Satisfaction rating with our home service customers.

Between the first of October and the thirty first of December 2009 home service customers once again gave us a 100% satisfaction rating through our after service survey process.

Here's what some of our customers had to say about Green Light IT Home Services between October and December:

"The service and follow up contact and explanation was excellent. I would have no hesitation in going back to Green Light IT and recommending the business to others based on my experience" - Heather, Weston.

"Helpful service, prompt and clear. Will certainly recommend to others." - Luca, Richardson.

"Pickup up and drop off feature is a real plus." - William, Greenway.

"It's about time somebody provided this service." - Norman, Evatt.

"The time for pick ups in the early evening is really convenient and the next day turnaround is brilliant." - Justine, Bonython.

"I was very pleasantly surprised at the friendly and professional service and that everything was explained to me simply and clearly." - Kaye, Scullin.

Needless to say we are always pleased to hear that we are keeping our customers happy.

Green Light IT Home Services Surveys are sent to every Home Services customer. Customers are able to comment anonymously (if they wish) on our services. Our return rate is approximately 50%. Names and addresses have been changed to protect privacy but comments are faithful reproductions of customer comments.

Posted by Help Desk at 11:41 AM
Edited on: Monday, January 11, 2010 12:11 PM
Categories: Home, News
We are moving

Thursday, December 31, 2009

Green Light IT will shortly be moving to our new premises in Albany Street, Fyshwick.

Our new address will be 2/1 Albany Street, Fyshwick (behind Kennards) but our phone and postal address will remain the same. We will be taking advantage of the summer lull to move into the new premises over the next couple of weeks, and anticipate operating from the new location from the 25th of January.

The new office is the former premises of an alarm monitoring company, and so has been constructed to a very high standard of physical security - in fact we have taken to calling it the bunker, but we will have to see if that name sticks. If you want to see what we are on about please feel free to drop by from the 18th of January.

Posted by Help Desk at 7:48 AM
Edited on: Thursday, January 14, 2010 3:59 PM
Categories: Alerts, News
Carbon Neutrality Policy

Monday, December 21, 2009

And as a bookend for the year we have now met our Carbon Neutrality Policy (announced here).

At an operational level we are now carbon neutral and would urge all other businesses to consider taking a similar stand on this important issue.

Posted by Clem at 5:08 PM
Categories: News
Christmas Trading Hours

Wednesday, December 16, 2009

Over Christmas Green Light IT will be taking a break will be closing on the 23rd of December, and re-opening on the 4th of January.

Feel free to leave us a message on the phone or drop us an email over this time. All the best for Christmas and we look forward to talking to you in 2010.


Posted by Clem at 1:47 PM
Categories: Alerts, Business, Government, Home, News
Getting Windows Update to Work With Squid

Thursday, November 19, 2009

(This blog entry is for techies only)

Caching Windows Update with Squid 2.6

Windows Update has historically been a problem for Squid administrators, particularly those that want to firewall 80/443 from their network and force traffic through the proxy.

This guide will let you set up a PARENT/CHILD pair of Squid Caches in order to enforce the never_direct directives and minimise your bandwidth usage for updates. This method works, but it does require two squid proxies, either configured to run on the same system, or on separate systems.

NEVER_DIRECT

I’m going to address this directive first, since it probably doesn’t do what you think it does.

What you probably think it does:

Never go direct to the origin server, always connect with Squid and pass on the data.

What it actually does (from the Squid FAQ):

If you are behind a firewall then you can't make direct connections to the outside world, so you must use a parent cache.
You can use the never_direct access list in squid.conf to specify which requests must be forwarded to your PARENT CACHE outside the firewall, and the always_direct access list to specify which requests must not be forwarded.

The emphasis on PARENT CACHE above is mine. If you attempt to use this directive without a parent, it will give you a NO_PARENT_DIRECT error.

REQUIREMENTS

From the above, we determine that we need at least one Squid Parent instance and one Squid Child instance.

These can be two physical servers, two virtual servers, or a multiple instance configuration on one server (http://wiki.squid-cache.org/MultipleInstances). However, for simplicity and security, we used two physical servers and the Firewall shown in the diagram below is actually on the Parent.

The network layout we’ll use in this example is:

Diagram

SQUID CONFIGURATION

From the above diagram, we get the following Squid configurations.

THE PARENT

The parent configuration is simple; add the bolded directives to squid.conf:

acl Safe_ports port 777 # multiling http
acl firewalled_clients src 192.168.0.0/24

http_access allow firewalled_clients
# And finally deny all other access to this proxy
http_access allow localhost
http_access deny all
The other lines are in the default squid.conf and are included for context.

We also define:

http_port 3128
cache_dir ufs /var/spool/squid 50000 16 256
maximum_object_size 1000 MB

That is:

  • the default http_port, referenced below by the child.
  • a cache of 50Gb, more than enough but you may need to allocate less on a small disk.
  • a maximum_object_size of 1Gb, large enough to cache any update.

Either cache may also require a “visible_hostname” directive, depending on how you have configured the underlying machine.

Also note “firewalled_clients 192.168.0.0/24” above would need to reflect your client network - we’ll call this “localnet” on the Child and this would also need to reflect your network addresses.

THE CHILD

First we need to define the Windows Update servers, and our local network. In the same place as the acl above:

acl localnet src 192.168.0.0/24

acl windowsupdate dstdomain windowsupdate.microsoft.com
acl windowsupdate dstdomain au.download.windowsupdate.com
acl windowsupdate dstdomain .update.microsoft.com
acl windowsupdate dstdomain download.windowsupdate.com
acl windowsupdate dstdomain redir.metaservices.microsoft.com
acl windowsupdate dstdomain images.metaservices.microsoft.com
acl windowsupdate dstdomain c.microsoft.com
acl windowsupdate dstdomain www.download.windowsupdate.com
acl windowsupdate dstdomain wustat.windows.com
acl windowsupdate dstdomain crl.microsoft.com
acl windowsupdate dstdomain sls.microsoft.com
acl windowsupdate dstdomain productactivation.one.microsoft.com
acl windowsupdate dstdomain ntservicepack.microsoft.com

acl CONNECT method CONNECT
acl wuCONNECT dstdomain www.update.microsoft.com
acl wuCONNECT dstdomain sls.microsoft.com
acl wuCONNECT dstdomain wpa.one.microsoft.com

Then in the http_access section:

http_access allow CONNECT wuCONNECT localnet
http_access allow windowsupdate localnet

Also in this section, to force using the Parent cache:

never_direct allow localnet

We also need to define the Parent, and allow access to it:

cache_peer 10.0.0.1 parent 3128 3130 proxy-only no-query
cache_peer_access 10.0.0.1 allow all

Whilst we have to specify an ICP port, we aren’t interested in checking if the Parent has the object cached as it is the only available source anyway, hence “no-query”.

We also set “proxy-only” as there is no benefit in caching the results here and on the Parent.

NB, 10.0.0.1 is the IP address of the Parent from the diagram, adjust it to match your Parent if necessary.

CLIENT CONFIGURATION

For this example the client network will need to point to this proxy server: 192.168.0.1:3128

Setting this proxy in Internet Explorer will also allow Windows to do automatic updates through the proxy.

FIREWALL CONFIGURATION

The firewall can be configured on either of the proxy servers, the main firewall, or all three if desired (perhaps because you don’t administer all those machines). However, this is outside the scope of this article.

AUTOMATIC PROXY CONFIGURATION IN WINDOWS

The next question most people ask is how to set up WPAD (Web Proxy Autodiscovery Protocol) so they don’t have to configure each Windows client on their network.

You will likely want to achieve this with a combination of DHCP and HTTP servers.

There is an excellent post explaining this by David W. Hankins at http://www.mercenary.net/blog/index.php?/archives/42-HOWTO-WPAD.html

Please read carefully however, as the default configuration will simply stop WPAD from trying DNS should DHCP fail to reply to the request as a security measure to guard against DNS poisoning.

Posted by Mike at 11:31 AM
Categories: Tech Tips
100% Satisfaction for Home Services Customers

Tuesday, October 13, 2009

As part of ensuring customer service we have been asking all home service customers to fill out a survey after every home service. And today, I am happy to announce the results for the first three months of Green Light IT's Home Services.

We have achieved a 100% customer satisfaction rating. Further, 100% of the customers that responded to the survey also advised that they would recommend us to family and friends.

Here a sample of some of the things our customers had to say:

"Excellent, Prompt and Efficient Service - it doesn't get better than that!" - Cathy, Isabella Plains

"Excellent Service thank you. Will definitely use you again and have recommended you to others." - Matthew, Amaroo

"Thanks for your prompt and efficient service. The computer's performance is much improved." - Lee, Mawson

"Very happy with the service. Would definitely use again in future." - Tracey, Hughes

"Greatly appreciated the pickup and drop off service. [...] The staff were very courteous and polite. We are very happy with the service. Happy to recommend to friends and family." - Peter, Fadden

"Very friendly and professional." - Warrick, Pearce

Thanks for your support folks. We are glad to know that we are meeting your needs.

Posted by Clem at 10:06 AM
Categories: Home, News
Internet Explorer Freezing

Thursday, October 01, 2009

We've noticed in the last few days that customers that are using Internet Explorer, and have their default home page set to "ninemsn", seem to be having some issues with Internet Explorer freezing, and not letting them type anything in.

By the looks of it "ninemsn" is giving some information to IE which is causing it to lock out for a while.

If you are affected you have three options:

  1. Update Internet Explorer (new versions don't seem to be affected). You can get Internet Explorer 7 here (we aren't recommend IE8 at this stage).
  2. Use Firefox instead (it is a better, more secure browser all round). Firefox Download Site.
  3. Change your home page away from Ninemsn - instructions below.

Changing your home page is the quickest fix to the problem, but to some extent only a temporary one. Never the less, here is how you can do it on Windows XP, without having to re-open Internet Explorer. If you have Windows Vista you already have IE7 - if your browser is running slowly chances are it is because of viruses and spyware. You should probably book it in for a service.

To change your home page without having to open Internet Explorer (because it will freeze again) open your control panel

and choose Internet Options.

Once you have Internet Options open then choose the general tab. Your home page setting is right at the top of the window. You can either type in a new home page, or choose "Use Blank" which will just give you a blank screen. Using either a blank screen, or a minimalist home page like Google are both pretty good choices.

Here we are using a blank page:

Note your window may not look exactly like this. This is actually the IE7 dialogue. IE6 (the browser that is having trouble) is quite old - we couldn't even quickly find one to get screen shots from, so change your home page in the short term, and plan to either update to IE7, or install Firefox in the near future using one of the links above.

Posted by Help Desk at 7:01 AM
Edited on: Thursday, October 01, 2009 7:45 AM
Categories: Alerts, Home, Tech Tips
Why You Should Back Up Your Hard Drive (and a really simple procedure for home computers)

Monday, September 28, 2009

Hard drives are the part of your computer that stores all the information (including music, documents, spreadsheets, photos, videos and everything else) that you put onto your computer. All the information that makes it your computer. They are also, for a variety of reasons, one of the parts of your computer most prone to failure.

When they fail the results can range from a busted computer which someone needs to carefully pick the data off, through to all of your information being permanently and irretrievably lost. However, usually some, if not all information (photos, music, documents, spreadsheets etc) is lost when a hard drive fails.

Now we can talk about the odds of a computer hard drive failing after so many hours, or this percentage failing etc, but that may not necessarily give you a particularly good sense of what that means. So here's something that might seem a little more concrete. Over your lifetime of owning home computers chances are you will have at least one hard drive failure.

Think about what you keep on your computer. Do you have a copy of it? If not it's about time your got some backups started.

For home these don't need to be complicated. Something as simple as an external hard disk, or even a USB memory stick (although if you have lots of photos you will probably find they are a bit too small, but heh its something) can do the job. For a really simple backup attach your external hard drive and then copy your "My Documents" folder onto it using the procedure below. Hopefully the pictures below will make some sense out of it (Sorry for those that know this bit - not everyone does so you will just have to be patient). The "My Documents" folder will contain most of the stuff you have put onto, or created on, your computer, but there can be exceptions.

So to backup your "My Documents" folder open an explorer window grab my documents with the left mouse button:

Once "My Documents" is highlighted go to "Edit" and choose "Select All":

Once this is done all the files on the right will be highlighted. Now using your left mouse button grab the group of files on the right, and drag it to your removable disk.

Once you let go of the left mouse button the files will start copying to the new location.

If the files dissapear from their original location, or anything else seems to go wrong then you can use the undo command to reverse the last action:

Using an external hard drive for backups is a perfectly good solution (for home), provided you are disciplined about it. That "discipline" bit is often where people get into trouble. if you are worried about forgetting then the good news is that technology can help. There is software available that can make backups even easier to do (automatic in many cases).

If you think you want an automated software solution then let us know. There are some good solutions in the space that will help with making backups routine.

Posted by Help Desk at 9:06 AM
Edited on: Monday, September 28, 2009 10:50 AM
Categories: Home, Tech Tips
Why We Use NAS Rather Than Tapes

Wednesday, September 16, 2009

If you took a look at our last blog entry you might wondering what we use for backups if we don't use tape.

That's easy - we use Network Attached Storage (NAS for short).

Compared to tapes NAS have three major advantages:

  1. They can keep up. Tapes are so slow that many in the industry now do what is called "Disk to Disk to Tape", where the backup is first done to another set of high speed disks, which can then slowly and ponderously stream that data to a tape drive. Getting rid of the "to Tape" bit is the next logical step.
  2. Less External Dependencies. A NAS unit is a complete system that you can attach to your network and start pulling files off. A tape needs a tape drive, a semi functioning computer, driver software, backup software, and they all need to be accessible before you can start pulling off files.
  3. Unlike tapes, which are a bit of an out sider from a mainstream technology perspective, NAS units use normal everday Hard Drives. So as the capacity of normal every day hard drives increase, the capacity of NAS units keeps pace. Tapes on the other hand are always playing catchup, and are usually around an order of magnitude behind in terms of cost effective storage.

Now if you are seeking a long term archive then tape is still your best bet, but that is not what most businesses are after in our experience, particularly once retention of data in programs like MYOB/QuickBooks etc is explained. Even then, NAS, which is powered up once every couple of years is probably just as good. Tape has the benefit that it can be just left to sit on the shelf for 10 years. Now, where did I leave that tape driver software...

Posted by Clem at 7:13 AM
Edited on: Wednesday, September 16, 2009 7:22 AM
Categories: Business, Government, Home, Strategy and Analysis, Tech Tips
5 Common Mistakes Business Make About Backup and Recovery

Sunday, September 13, 2009

We are going to be talking about backups over the next few weeks - we are going to be talking about backups quite a lot. More precisely we are going to be talking not only about backups, but the other less frequent but oh so important bit - recovery.

The problem with the way most businesses approach backup is that they might take some backups (might) but they have never given a whole lot of thought to the other side of the equation - recovery. And there are some sobering stats here - probably the most sobering I have come across is this one:

"93% of businesses that loss access to their critical data for 10 days or more file for bankruptcy within 1 year. 50% of them file for bankruptcy immediatelly" - US National Archives and Records Administration.

So it's not only if you can get access to your information again, it's how quickly you can do it. And that is where things start to get interesting.

To get us started on our month of DR (Disaster Recovery) here are 5 common mistakes that businesses make about backup that means when push comes to shove they can't recover:

1. As long as I have my data I'm okay

Wrong.

Access to your data is contingent on a number of other pieces of infrastructure being in place. Sometimes this is a simple as a computer with say Microsoft Office installed in which case provided you can find a computer you are probably okay. But sometimes it relies on an application server, which has had 100 patches applied to it, which no one exactly remembers, and there was some bizarre tweak that someone had to give it to make it work etc.

Can you get access to the data again - probably. Will you get access to the data again before you are out of business? Much harder to know.

2. An Online Backup Over The Internet Is Our Best Option

Usually Wrong.

Online backup solutions are targeted at home users, and small businesses. They provide handy interfaces to help you see which files you are backing up, history etc. The problem is they are driven by people who, due to their limited IT knowledge, don't actually understand which critical parts of the system need to be backed up. For example, if you are using Exchange server only the system adminstrator has the access they need to the mail store.

If your whole server packed it in exactly how long will it take your online backup company to get you a copy of your data - a day, two days, a week? Have you ever asked? Have you ever tested their ability to deliver?

Also, as 1 above just backing up your data isn't really enough.

3. We Use Tapes

Wrong.

There are so many issues with tapes it is hard to know where to start:

  • You need a tape drive (seems obvious right). But what if your previous tape drive was damaged (say by a power surge) so you can't move it across to the new server you just bought. Can you still buy the type of tape drive that you had previously keeping in mind it's probably three or four years down the track? This is what we call in the industry a "depedency".
  • Tapes aren't growing in capacity fast enough to keep up with modern hard drives. Time and again we see new customers which have been sold a tape drive which can't backup a tenth the capacity of their server hard disks.
  • Tape drives can subtly alter the length of tapes over time so that tapes will only work with that particular tape drive. Even if you can find a replacement tape drive your tapes may not work.
  • Tapes need to have the basic operating system up and going to support the correct drivers. So if you are rebuilding from scratch you need to build a basic server, then install the tape drive and software, then restore (hopefully) and then reconfigure the server.

4. If a Part Fails In Our Server We Will Be Able to Get a Replacement Part

Wrong.

The scenario is like this - components in the computer industry tend to turn over on 12-24 month timeframes. After that the big PC/server manufacturers (HP, Dell, etc) will continue to carry spares for "warranty" customers. However, chances are they wont "sell" you one of their components - they need to hold an inventory to cover the customers which did pay for warranty.

Normally parts fail after at least a couple of years in service, meaning chances are you can't buy a replacement anymore. So if you don't have a warranty you probably can't get a like for like replacement. If you can't get like for like replacement then there is an awfully good chance that you will have to rebuild the system, or at least use a time consuming process to make the new part work with the old system.

Now this isn't true for some parts, like the power supply, or a non-integrated network card. These can often be easily replaced. But for the big components - like the RAID controller, Main Board and Hard Drives, it usually is.

5. If Our Server Crashes It Will Only Take a Day or Two to replace it

Wrong.

Yes you can go to Harvey Norman and buy a PC this afternoon. Servers are a different type of beast entirely. Because there are less of them sold they haven't reached the point where they are a standard item that retailers carry.

If you are lucky, and your business is small enough you may be able to limp along on a PC for a few days, although depending on your restoration strategy it could take days to get it correctly installed.

We will be discussing some of strategies we think you should pursue over the next few blog posts. Stay tuned.

Posted by Clem at 12:21 PM
Edited on: Tuesday, September 22, 2009 1:04 PM
Categories: Business, Government, IT Management, Strategy and Analysis, Tech Tips