Microsoft Shows Off New Security Features
Gates unveils protection technologies, antispam initiative at RSA Conference
Computerworld - Microsoft Corp. gave every indication that it's keeping security on the front burner, as Chairman Bill Gates made the trip to last week's RSA Conference in San Francisco to preview upcoming features in Windows, new protection technologies and an antispam initiative.
Gates introduced the first public demonstration of new security features due in the first half of the year with Service Pack 2 for Windows XP. One prominent update will be the newly enhanced and renamed Windows Firewall, formerly called the Internet Connection Firewall, which will be enabled by default rather than having to be set manually by the user.
Another new feature, the Windows Security Center, will let users check the status of firewalls, automatic updates and antivirus protection. If a problem is discovered, the user will receive a notification with recommended fixes.
To combat spam, Microsoft is touting its Coordinated Spam Reduction Initiative, which includes technical specifications for establishing Caller ID-like functionality for e-mail. The technology would enable a recipient to ensure that a message came from the identified domain.
Gates said Microsoft has royalty-free patents on the technology and is talking with other Internet service providers and e-mail providers about using it. "It uses the DNS to do this, so it's piggybacking an infrastructure that's there," he said.
Microsoft also plans to deliver Exchange Edge Services to enable users to better protect their e-mail systems from junk e-mail and viruses, as well as improve the efficiency of handling and routing Internet e-mail. Those goals will be achieved through an enhancement to the SMTP relay implementation in Exchange 2003, according to Microsoft.

![]()
Bill Gates at the RSA Conference
Credit: The Associated Press![]()
Zachary Gutt, a technical product manager in Microsoft's security business unit, said the active protection technology will make computers resilient against worms and viruses by preventing and containing attacks. The system does that by recognizing behavior that is out of the ordinary and blocking it.
For example, Gutt said, the Blaster worm caused the remote procedure call service to open a back door and download malicious code onto a machine. But with active protection technology, the behavior would have been recognized as out of the ordinary for the RPC service and blocked, he said.
Another key piece of active protection technology can automatically raise and lower the



- Excel 2010 Cheat Sheet
- Register for this Computerworld Insider Cheat Sheet and gain access to hundreds of premium content articles, guides, product reviews and more.
- Overcome Top 7 Admin Challenges of Active Directory
- As Active Directory's role in the enterprise has drastically increased, so has the need to secure the data. Gain insight on creating repeatable,...
- Insiders Can Ruin Your Company. Take Action.
- Did you know that 80 percent of threats to an organization come from the inside? The threat from insiders is often overlooked in...
- Top Solutions and Tools to Prevent Devastating Malware
- Custom malware frequently goes undetected. According to Forrester Research, the best way to reduce risk of breach is to deploy file integrity monitoring...
- X-Ray of the PCI Process-4 Proactive Steps
- This white paper from Forrester Research Inc., helps break PCI into understandable components. Security and risk professionals will gain knowledge and insight into...
- Identity Governance: The Business Imperatives
- This white paper describes the business challenges and opportunities that are driving interest in Identity Governance while discussing considerations your organization should make... All Security White Papers
- Live Webcast
Playing Defense: Staying on Top of Your Disaster Recovery Game - When it comes to disaster recovery, rapidly growing data volumes, distributed computing models, and new technologies all combine to present an ever-changing playing...
- Introduction to VMware vCenter Site Recovery Manager 5
- Traditional disaster recovery solutions are often too expensive, complex and unreliable to meet business requirements. As a result, IT departments are hesitant to...
- The Top Ten Secrets to Avoiding SAN Performance Problems
- Maintaining peak performance while simultaneously addressing the root cause of SAN errors is challenging. Learn the most common SAN problems and explore new...
- Deduplication Without Compromise
- Go inside Quantum's scalable, high-performance, multi-protocol new DXi deduplication appliances, designed to make backup much more effective. Discover how the new future-proof DXi6700...
- Director of Disk Products Discusses DXi6700
- Discover how the new DXi 6700 series of deduplication appliances provide investment protection and a future-proof feature set, all while delivering fast, scalable,...
- Playing Defense: Staying on Top of Your Disaster Recovery Game
- When it comes to disaster recovery, rapidly growing data volumes, distributed computing models, and new technologies all combine to present an ever-changing playing... All Security Webcasts