On BNET: Dumb (but funny) career moves
BNET Business Network:
BNET
TechRepublic
ZDNet

By Ina Fried
Posted on ZDNet News: Apr 25, 2005 11:00:00 AM

After nearly a decade, Microsoft's vision for how to protect especially sensitive information within Windows remains largely that--a vision.

For years, the software giant has promised to deliver a secure way to shuttle around key bits of information. Once known as Palladium and more recently dubbed the Next Generation Secure Computing Base, or NGSCB, the approach was once a key part of Longhorn, the next version of Windows. Although the first piece of that is arriving in Longhorn, it's only a thin sliver of what Microsoft has been working toward since describing its idea of "trusted Windows" a decade ago.

In the next version of Windows, which Microsoft chairman Bill Gates will show off on Monday at a company sponsored conference, Microsoft will use the concepts of NGSCB to ensure that Windows-based machines start up without interference. The primary benefit of such an approach is that if a laptop is lost or stolen, the data can't be accessed simply by booting the machine up using another operating system.

News.context

What's new:
Microsoft has scaled back an ambitious security plan, but some pieces will show up in the next Windows.

Bottom line:
Although early concerns have eased up, worries over the cost and hardware requirements involved in protecting sensitive information within Windows have forced the company to again alter its plans.

More stories on this topic

"If you lose your laptop in a taxi, no one is going to get at your data," Windows chief Jim Allchin said in a recent interview. "The hardware is not going to let you boot that software, and there is a way for us to do full-volume encryption."

That may indeed be a popular feature, but it's a far cry from Microsoft's broader plan, which was to use NGSCB systemwide as a secure vault for particularly sensitive information such as passwords or bank records. Such information would be kept in hardware and then securely transmitted between a computer's components, such as memory, hard drive and monitor.

The change, Microsoft says, is the result of customers telling the software maker that they didn't want to have to rewrite their applications.

"We revisited our approach," said Selena Wilson, director of product marketing in Microsoft's security unit, adding that the company's decision was to "give customers something that is easy to implement now and upgrade over time."

Microsoft's plans for NGSCB have been shifting for some time. The company demonstrated a prototype of the technology two years ago, but by that point there were already concerns that it could harm consumers or that it would give Microsoft too much leverage over businesses.

Although some of those concerns have eased as Microsoft has revamped the technology, more practical worries over the cost and hardware requirements involved have forced the company to again alter its plans.

The question now is when, or if, Microsoft's broader vision will see the light of day.

The chips that support the Trusted Platform Module standard have already reached the market, though a new version, TPM 1.2, will be the basis for Longhorn. HP, for example, plans to start shipping later this summer a new business desktop with a TPM 1.2 chip from Broadcom.

"As the first systems to feature an integrated TPM 1.2 security module, these new PCs will help to enable the recently announced Secure Startup feature in Longhorn," Microsoft Senior Vice President Will Poole said in a statement. "The delivery of these new systems represents a major milestone in achieving the vision of next-generation hardware-rooted security capabilities in the Microsoft Windows platform."

But Wilson would offer no road map for how Microsoft gets from its fairly narrow secure boot-up feature to its broad concept of a more secure way to run sensitive code within Windows.

"We are continuing to work on other aspects of the vision," Wilson said. "The timing schedule is still being worked out."

SponsoredWhite Papers, Webcasts, and Downloads

  • Talkback
  • Most Recent of 59 Talkback(s)
Joke of the Century !
You got to hand it to Bill, he should have been a comedian, it's that incredible ability to keep a straight face regardless of what he is really saying.

Some of us were providing secure public ... (Read the rest)
Posted by: wwwsupport Posted on: 04/26/06 You are currently: a Guest | | Terms of Use
It looks more and more...  Rick_K | 04/25/05
Your post suggests you don't trust Microsoft.  Xunil_Sierutuf | 04/25/05
Darn, and those are the ones  FilledOut | 04/25/05
This is one I don't mind they scale back...  BitTwiddler | 04/25/05
You're right  alterego_z | 04/25/05
George Orwell, Not George Orville  nucrash | 04/25/05
Ouch!  alterego_z | 04/25/05
Have a second cup.  Anton Philidor | 04/25/05
A line of blow folds in nicely with it too  Jeff Spicoli | 04/25/05
It's DEFINITELY about security... Microsoft's!  Xunil_Sierutuf | 04/25/05
Past Court Decisions.....and negative impact  thomgood | 04/25/05
Microsoft had security problems going all the way back to '96.  B.O.F.H. | 04/25/05
History lesson  thomgood | 04/26/05
hard to implement a hardware based solution?  linuxoverwindows | 04/26/05
Hardware based solutions and the Marketplace  thomgood | 04/26/05
Really, it looks...  Rick_K | 04/25/05
A Palladium in yer bung!  Jeff Spicoli | 04/25/05
one thing  Jeff Spicoli | 04/25/05
twice the ram...  Arm A. Geddon | 04/25/05
Still waiting.  nucrash | 04/25/05
i will fill in the blank...  linuxoverwindows | 04/26/05
Trust Microsoft..?  Xunil_Sierutuf | 04/25/05
They said they would get rid of BSOD...  nucrash | 04/25/05
You can stll see the BSOD in Windows XP  theding0 | 04/25/05
it will be a nucrash  linuxoverwindows | 04/26/05
Longhotn is still coming trust us  crocd | 04/25/05
Will it come before Bruce Willis saves the world?  Xunil_Sierutuf | 04/25/05
Encrypted Filesystems?  jstead1 | 04/25/05
All part of Microsoft's continued marketing deception..  Xunil_Sierutuf | 04/25/05
It can  rpmyers1 | 04/25/05
In other words...  nucrash | 04/25/05
A nice Stiffhorn in the rump  Jeff Spicoli | 04/25/05
Sorry, Passport is down.  nucrash | 04/25/05
Well you just enjoy whatever floats your boat  FilledOut | 04/25/05
Great News!  Roger Ramjet | 04/25/05
not only that..  Jeff Spicoli | 04/25/05
Or damaging documents?  Rick_K | 04/25/05
Come on now, they're making some progress  Chad_z | 04/25/05
Microsoft: 'Trusted Windows' still coming, trust us  Loverock Davidson | 04/25/05
Wow, sounds like something written on a pamphlet..  Xunil_Sierutuf | 04/25/05
yeah  Jeff Spicoli | 04/25/05
What effort?  tic swayback | 04/25/05
Wow.  Judas I. | 04/25/05
trusted BSD is already here, why is Microsoft late?  B.O.F.H. | 04/25/05
Hofstadter Inc.  Techscan | 04/25/05
Actually  skeptic tank | 04/25/05
There's some good news here.  Anton Philidor | 04/25/05
Now there's an idea!  Jeff Spicoli | 04/25/05
Product activation is Microsoft only...  Anton Philidor | 04/25/05
Mixed Feelings  osreinstall | 04/25/05
"Will the customer remember his password."  Anton Philidor | 04/25/05
Of course not  Yagotta B. Kidding | 04/26/05
RE; Yagotta B. Kidding's remarks.  Rincon Bikerider | 04/26/05
Password doesn't have to be Admin password  osreinstall | 04/26/05
Vaporware  DarthRidiculous | 04/25/05
From RealNetworks  Reverend MacFellow | 04/26/05
Hmmmmm  zomalaja | 04/26/05
Security... for whom? Me? Or Microsoft?  Root User | 05/10/05
Joke of the Century !  wwwsupport | 04/26/06

What do you think?

advertisement
Click Here
advertisement

White Papers, Webcasts, and Downloads

Meet Doc