
Friday, February 16, 2007
Palacios Visits CGNET

Thursday, February 15, 2007
Four Paths to a Speedy Recovery

For many of our clients, high availability and disaster recovery have become top priorities, so here is a model incorporating some of the most interesting developments.
Two huge forces have been driving this: the increasing desire for as little interruption as possible of critical applications, and the emergence of technologies that make this affordable, such as much cheaper bandwidth and storage, virtualization, and competitively priced replication software.
Two basic choices must be made in designing such a system. First, do you want near instantaneous failover, or is a slower, less expensive recovery acceptable? Second, are you going to locate the replica in your own facilities, such as a branch office, or at a managed service provider?
Combining these choices yields four alternatives:
1. Storage replication to a branch office
2. Storage replication to a managed service provider
3. Rapid application failover to a branch office
4. Rapid application failover to a managed service provider.
Today, storage replication often involves storing “snapshots” of virtual machines. Restoring such a VM snapshot restores the entire “server,” current up to the instant the snapshot was taken. This eliminates the need to reinstall the server software, add patches and configure it to the separately stored data.
Regardless of whether you store VM snapshots or other backups, such as from a SAN or NAS, storage replication involves a period of rebuilding servers at the remote location and a gap between the time the data was stored and when the outage occurred. Thus, recovery from a major failure can take a day. Furthermore, it is difficult to rehearse and test the process without disrupting the system.
High availability dynamic replication uses application-aware software to update a full replica server on a transaction-by-transaction basis. Thus, failover takes only a few minutes and very little data is lost. Some products also allow for testing the replication while the application is running, so recovery can be assured. The downside of high availability dynamic replication is that it continues to be more expensive than storage replication, even though its cost has dropped significantly, compared to earlier versions.
If a remote location, such as a branch office is available, it may provide an inexpensive site for the backups or replicas. This assumes, of course, that the location’s space, cooling and bandwidth are already provided for as part of the existing facility.
Alternatively, a managed service provider can host the backups or replicas. This provides professional hosting and an on-site 24/7 engineering staff ready to implement the solution, which can mean more reliable service and, in some cases, more rapid recovery. This solution does involve monthly charges for the managed hosting, however.
CGNET has implemented all of these alternatives and would be happy to assist in designing or implementing one for your organization.
Georg Lindsey is CEO of CGNET. He can be reached at g.lindsey@cgnet.com.
Wednesday, February 14, 2007
TAS Wireless Availability Expands
The greatest recent increase has been in wireless venues, which now total more than 72,000. These now include hotspots at most Starbuck’s locations, as well as at 7,600 McDonald’s restaurants worldwide.
“These new locations have made my travel in the U.S. really convenient,” said Georg Lindsey, CGNET’s CEO. “In the U.S., you’re never far from a McDonald’s or a Starbuck’s.” TAS continues to offer wireless connections in hundreds of airports and hotels and thousands of other locations around the world. Hotspot locating software is available for free download from www.ipass.com.
Expanded Dialer Support
CGNET has also released new dialer software that supports Intel-based Macintoshes and mobile devices using the Windows Mobile 5 operating system, as well as Windows XP and 2000 and Mac OS X.
Traveler’s Access Services is based on the iPass roaming Internet access service, but it adds service in 10 countries, customized accounting, dialers, authentication and 24/7/365 end-user support.
Why We Picked Quest Archive Manager
Last fall, we introduced CGNET eMail Vault, a comprehensive message archiving system based on Quest Software’s Archive Manager. Leading up to the introduction was almost a year of research and testing, most of it carried out by Messaging and Development Services engineer Eric Romero.
Romero reviewed many products on the market, narrowing them down to a short list for intensive research and, finally, to two products for in-house testing. Those two were Symantec Enterprise Vault and Archive Manager.
Quest Stands Out
Archive Manager stood out for three reasons, Romero said. First, the client software is entirely browser-based, which vastly simplifies installation, particularly in widely dispersed organizations. Also, “it was always possible to browse the archive, which was not always the case with the Symantec solution, ” he said. Finally, the level of technical support was a lot better.
CGNET eMail Vault has other advantages, too. Its true single-instance storage means that only one copy of an attachment goes into the archive, no matter how many messages contain it. This controls data volume and reduces the cost of storage management.
The product’s browser-based interface allows users to find and retrieve data in minutes, by enabling them to visually zero in on specific content. Granular permissions can be set to retrieve items from particular mailboxes or across the entire organization. Its comprehensive searches can be based on sender, recipient, date, subject, message keyword or attachment keyword.
Romero also noted that Quest is constantly improving its product. “They are rapidly producing new versions with better features,” he said.
Tuesday, February 13, 2007
CGNET Gatekeeper Moves to Symantec Hosted Mail Security
For several years, CGNET used Brightmail Anti-Spam and Trend Micro Internet Virus Wall as its anti-spam and anti-virus engines in Gatekeeper. The two services were applied on servers at CGNET, as mail destined for our clients was routed through our servers first, for virus removal, spam quarantining and backup.
In 2005, Symantec acquired Brightmail. It has now incorporated the Brightmail service into its Hosted Mail Security service. Symantec Hosted Mail Security functions very much like CGNET’s former system, except that the anti-spam and anti-virus procedures take place at Symantec’s Tier 4 data centers. The mail is then routed to CGNET for backup, and then on to our clients.
New Benefits
Users are seeing new benefits:
- Increased Visibility: Notification of quarantined mail is sent to users, including the ability to review quarantined messages.
- Personalized Control: Users can set several options about how their quarantined mail is handled, including how long it is held, frequency of email notifications, and ability to specify blocked addresses.
- Greater Reliability: Mail is processed using highly redundant IT facilities, with instantaneous failover to alternative sites.
CGNET is also benefiting from the new configuration, because spam and viruses are intercepted before the mail is routed to CGNET’s servers. This reduces demands on our bandwidth, given that spam now accounts for more than 80 percent of all Internet email traffic. CGNET has also been able to reduce the number of servers used for anti-spam and anti-virus email processing.
In general, the benefits of a hosted anti-spam/anti-virus solution are becoming apparent. Both CGNET and its users save bandwidth and processing cycles, compared to installing these services in house. And users gain a convenient, easy-to-use system backed up by CGNET’s 24/7/365 end-user support.
CGNET clients currently using an in-house system might consider how moving to a hosted service such as Gatekeeper would provide these benefits to them, as well.
How Green is Your Data Center?
Computers, particularly servers, are using increasing amounts of electricity. As we use higher-performance servers and move from standalone models to rack-mounted and blade servers, both the power and cooling needed increase. IDC recently reported that the power required to run servers increased on average from one kilowatt per rack in 2000 to 6.8 kilowatts per rack in 2006.
Cooling systems costs have increased similarly, partially because servers packed closer together are harder to ventilate.
The IT industry has noticed the trend, and vendors are beginning to offer solutions. One of the most promising is virtualization, where many virtual servers can be combined on one physical machine. Other approaches include buying servers that are more energy-efficient and designing data centers to be cooled more efficiently.
CGNET Goes Green
CGNET has begun to reduce its power usage by virtualizing servers. In the last year, we have virtualized more than 50 servers, replacing five physical servers with one virtual server, on the average. We anticipate that as we continue to virtualize, the ratio may approach eight or nine virtual servers to one physical server. We have also redesigned our data center to provide more efficient air conditioning.
CGNET is working with its local power utility, Pacific Gas & Electric, to reduce CGNET’s data center power consumption. PG&E offers financial incentives as part of its commitment to reducing data centers’ power consumption.
CGNET began virtualizing servers more than two years ago, largely because virtualization allows for much more effective restoration of services in the case of downtime, but it soon became apparent that virtualization is not only a good IT choice but one that also conserves power and reduces heat.
Another way to reduce your organization’s data center power consumption is to outsource applications to green data centers. CGNET is dedicated to supplying services at the lowest possible levels of power consumption, so that it can be such a green outsourcing choice.
Monday, February 12, 2007
Recent and Ongoing Projects
Save the Children
CGNET recently helped STC upgrade to Exchange 2003 and Active Directory in its Washington D.C. and Westport offices, and we are now beginning to reconfigure their worldwide Exchange network to improve performance and reliability, including dynamic failover services to replica servers.
Women’s Funding Network
CGNET has been helping WFN with a wide variety of IT tasks, ranging from desktop and network support to providing a new search engine for WFN’s Knowledge Center portal and assisting them in selecting new accounting and fundraising software. WFN is also planning to host its email at CGNET.
Nairobi Satellite Link
Ricardo Uribe traveled to Kenya in December to assist a major foundation in implementing a dedicated international satellite link from Nairobi to the Internet in Germany. This allowed the foundation to get greater bandwidth at lower cost than otherwise available.
ASARECA
CGNET is now supplying hosting for the Website of the Association for Strengthening Agricultural Research in Eastern and Central Africa, based in Entebbe, Uganda.
Family Health Internatonal
We are now providing Gatekeeper anti-spam and anti-virus protection to FHI’s Research Triangle Park, NC, headquarters and Washington D.C. offices, in addition to the 25 international sites already covered.
CGIAR
CGIAR centers now have access to Microsoft Live Communications Server, including native features, access to public Instant Messaging services, voice and video, and support across NAT firewalls.
Winrock International
Winrock International now has secure access to its corporate network from home and branch offices via Cisco PIX firewalls configured and supplied by CGNET.
Beijing Office Implementation
CGNET field consultants are providing desktop, mobile, LAN and WAN implementation and support for a large foundation as it establishes offices in Beijing.
International Potato Center (CIP)
CGNET has delivered a Regional Broadband Global Area Network (RBGAN) mobile satellite terminal and tested Internet configurations, to allow the unit to serve as an emergency Internet connection in case of a terrestrial network failure.
African Development Bank
The Bank has begun a project which will provide high-availability business continuity for the Microsoft Exchange servers at its temporary relocation headquarters in Tunis. It is expected that the system will be expanded to include disaster recovery replication to a co-location facility on another continent.
Thursday, February 8, 2007
CGNET's Take on Exchange 2007

CGNET's Eric Romero (left) and Ricardo Uribe
64-bit Architecture
“If an organization is planning to centralize its email servers, it’s the option to select,” said Eric Romero, an engineer on our Messaging and Development Services team. “The new 64-bit system is so powerful that it can be a better server.” The 64-bit architecture allows for much more memory, which can mean support for more mailboxes and more memory per mailbox, for example.
CGNET Manager of Network Operations and Engineering Ricardo Uribe added that any hardware upgrades to email servers now ought to use 64-bit processors. Microsoft’s 32-bit version of Exchange 2007 is really for demonstration purposes only, not for use in production.
Unified Messaging
Microsoft has added unified messaging to Exchange 2007, which means that users can, among other things, hear messages and work the Outlook calendar over the phone and also see voice mail in their email. This clearly can be convenient. Some caution is necessary, however. “This is early technology for Microsoft, compared to Cisco and other vendors” Romero said. “Microsoft will be very strict about which systems work with it. It will probably support only a few PBXs, for at least a while.”
Autodiscover
“Autodiscover may be a help, particularly for large organizations,” Romero said. “What this means is that Outlook will self-configure against the Exchange box, using Active Directory. Outlook 2007 will automatically know about the Exchange 2007 server and configure the account automatically. This can reduce the need for a lot of help-desk support.”
Compatibility
Romero added that Exchange 2007 is compatible with Exchange 2000 and 2003, so a new Exchange server can coexist on a network with the earlier versions. “This is not true for Exchange 5.5, however,” he said.
The Bottom Line
If you’re replacing hardware or setting up a new office, the move to Exchange 2007 makes sense. But if you’re not doing that, or consolidating or installing unified messaging, it really doesn’t hurt to wait. “I don’t want to utter the cliché about waiting for the first service pack,” Romero said. “Some clients may want to move now, and we’re ready to help, but for many, it may not be necessary yet.”
Monday, February 5, 2007
Backstage at the Global Venue
Isn’t the Global Village wonderful? These days, it's no big thing for high school kids in New York City and their friends near Timbuktu to rock out over the satellite link. We can pretty much take things like that for granted. Or can we? Consider the following event...
The first thing to know is that even in these days of IP everywhere Carnegie Hall has found that while the Internet can carry perfectly good discussions over video, performances are something else. When there's music, singing and dancing, you're really in "real time," and any technical artifacts affect the performance. So the first requirement for the videoconference was that it had to be over a dedicated connection.Conversations with the World Bank's videoconferencing staff made the conference possible. If Carnegie Hall could provide dedicated connectivity from the concert hall in Bamako, which ended up being the Centre Culturel Français
(CCF), to the World Bank's Bamako office, and if another dedicated line could be set up from the bank's Washington D.C. videoconferencing center to Carnegie Hall in New York, concert-quality videoconferencing could happen.
CGNET and Afribone Mali, a local service provider, set up a line-of-sight 48-mbps wireless link between the CCF and the World Bank, five kilometers away. One megabit of bandwidth was actually used, with another for backup. In the weeks before December 19, two tests and a rehearsal were held. After each one, all the equipment had to be removed from the CCF and taken back to Afribone, except for the outdoor antenna.
Things in the U.S. went more slowly, working with domestic carriers. The fastest service Carnegie Hall could get for the Washington-New York T1 was installation after a three-month wait. Advance planning paid off and Carnegie Hall ordered with enough lead time to ensure the delivery.Planning for Carnegie Hall's next event in its Global Encounters will be underway shortly. Everybody is hoping that a videoconference with a connection-rich far-end will be easier to arrange than with Bamako. We'll see...
Photos courtesy of Afropop Worldwide, www.afropop.org. Check them out for great coverage of African and world music!