Security vendors looking to gain insight into Microsoft’s plans for opening up the Vista operating system kernel were frustrated yesterday morning when a technical glitch kept many from joining the first online discussion of this issue.
"Oops," wrote Microsoft senior product manager, Stephen Toulouse, in a blog posting on the subject. "We had a glitch where we sent out a messed up link. …
We are very sorry about that, it certainly was not intentional, and we definitely see that was not a good thing for people to experience on such an important topic." His blog post can be found here: http://www.stepto.com/default/log/displaylog1.aspx?ID=266
Microsoft set up the meeting to talk about how it plans to give security vendors access to Vista’s kernel on 64-bit systems. This has been a contentious issue, as Microsoft had initially planned to lock software vendors, such as Symantec and McAfee, out of the kernel, claiming that this would make Vista more secure. The security vendors said this would harm their products, and Microsoft finally capitulated, after first being warned by European Union regulators.
Microsoft rescheduled its morning Web conference after it realised that it had sent out a bad LiveMeeting link to participants, but in the end some security vendors were shut out of the meeting.
Most of Symantec’s team, for example, was unable to attend. "It turned out that nobody on our team was able to make the first meeting except for one guy," says Cris Paden, a Symantec spokesman.
Microsoft has set up a second meeting to take questions from those who missed the first, Paden says. A further meeting is also planned for Monday, according to Toulouse.
Late Thursday, McAfee said there was ‘little indication’ that Microsoft planned to live up to its promise, made late last week, to work with security vendors on several issues relating to Vista.
"We have been greatly disappointed by the lack of action by the company so far and Microsoft has not lived up, either in detail or in spirit, to the hollow assurances offered by their top management," says Christopher Thomas, McAfee’s outside legal counsel in Brussels.
Sunbelt Software president, Alex Eckelberry, says that the mix-up was due to an honest mistake with Microsoft’s conferencing software. "Someone at Microsoft accidentally sent out the LiveMeeting presentation invites as ‘presenter’, which, if you have ever used LiveMeeting, is an invitation to chaos," he says in a blog posting.
"Realising the error, the meeting was rescheduled for 30 minutes later, but that did not all come together, because the meeting had been originally setup to end at 12:30, [Eastern time] so we were promptly all kicked off."
"While I have my disagreements with Microsoft on the PatchGuard issue, I must defend it in this instance," he adds. "It was a case of a few honest mistakes made by well-intentioned people, probably working under a tremendous amount of stress." Eckelberry’s blog posting can be found here: http://sunbeltblog.blogspot.com/2006/10/much-ado-about-nothing.html
Microsoft has said it expects to make new kernel application programming interfaces (APIs) for security products available as part of the first major, ‘service pack’, update to Vista. Security vendors are pushing to have them included sooner.

