Monday, February 09, 2009

I dropped into a Starbucks this afternoon, all prepared to get some emails written and to get some work done between my Sunday afternoon and evening commitments. Everything was fresh in my mind and ready to go via the keyboard and onto the screen. I fetched my grande two-pump sugar-free vanilla skinny latte and sat down in the chair, opened the laptop and watched it wake up and connect to the AT&T wireless access point.

But much to my dismay nothing would load over the network. The AirPort icon in the status bar showed the name of the network and indicated that I was connected to the access point, but I had no connection to the Internet.

After a brief bit of trying over and over to load a web page, I checked the network preferences in the apple system preferences panel and found that I was not getting an IP address. The Mac was self-assigning a 169.* address, which is a non-routable local-only address. I tried restarting the AirPort card in the Mac, but that didn't help. I then found I was able to connect normally with my iPhone to the AT&T WiFi network and get a "real" IP address (192.x), so I quickly deduced that something was wrong with my Mac.

I had to give up on troubleshooting and head back out into the world, but I spent the rest of the day wondering if maybe there was something about the MAC address for my wireless card that AT&T had chosen to hate. After finishing my day of activities, I drove home this evening and fired my laptop back up. It connected to my home wireless network. But again, no IP address assigned. Hmm, definitely the laptop.

I started thinking now. What could be happening? Powering the AirPort on and off, shutting down the Mac and powering it back up, manually telling the network stack to renew it's DHCP lease - all these things did no good.

I finally decided to take a look at the Mac firewall logs. You'd think that would be the first place I'd look, being a security guy. They're kind of hidden in plain sight, a few layers deep in the Mac's preferences dialogs. You go to the System Preferences panel, in the Security section, then the Firewall tab, then click the Advanced button, and finally click the Open Log button. If logging isn't already turned on, you can enable it there, as well.

Sure enough, I looked in the log and found several examples of this (emphasis mine):

Feb 8 23:02:04 greg-hughess-macbook-air Firewall[39]: Deny configd data in from 192.168.0.1:67 uid = 0 proto=17
Feb 8 23:02:26: --- last message repeated 2 times ---

Ah hah... Apparently the firewall was refusing inbound connections initiated by the router as it tried to set up the DHCP address being requested by the laptop. The configd daemon is a service that handles configuration changes for various pieces of the system, mostly all network-related. Great, I had something to fix!

I first confirmed configd was in fact running, then deleted the firewall configuration file (located at /Library/Preferences/com.apple.alf.plist) and configured the firewall to temporarily allow all connections, and then back to allowing essential services. Sure enough, as soon as I made the changes the Mac was able to get a DHCP address from the router, and the network was back up and working.

I have no real idea how the firewall got messed up. At one point I had it set to configure access for specific services and apps, so that might have had something to do with it. But it's strange that this problem only started today. It's possible the configd process was denied by a rule, I suppose. Perhaps I hit a key on a pop-up dialog to deny firewall access to the daemon without even realizing it while typing?

At any rate, it seems to be working now (as evidenced by the fact that I am able to post this blog entry, of course) and hopefully it will continue to work as expected. Maybe this will help someone else troubleshoot a similar issue.



Add/Read: Comments [18]
Apple | IT Security | Tech
Monday, February 09, 2009 12:04:44 AM (Pacific Standard Time, UTC-08:00)
#  Trackback
 Saturday, January 31, 2009

Good or bad, we live and work in an increasingly binary world.

More and more I notice our collective bipolar mentality. Everything is completely one extreme or another, with no time or thought put into the idea that there might be something much more realistic and reasonable in-between. It's black or it's white. You're conservative or you're liberal. It's all the way on or it's shut completely off. It's awesomely great or it's despairingly terrible.

What happened to the various shades and levels of gray, moderation and good? Perhaps this is a result of our increasingly computer-centric boolean society, where everything at it's core can be distilled down to one's and zero's, on and off, yes or no - with nothing in-between. But the organic world has never worked that way, and I think maybe we're seeing the signs that people have forgotten to look for the compromise.

One case in point, among many: A blog article today at TechCrunch reports that management at a large company, Nielson, has decided to remove the Reply-All button from all instances of outlook. Apparently some executive committee decided this would reduce waste and increase productivity. Certainly they must be right: It's a technology problem, right? Whoever the person was that thought of the reply-all concept originally couldn't possibly have been thinking about the consequences of including this feature. They must have been misguided, unknowing and wrong.

Or were they?

To take such drastic action as to completely remove the reply-all button from Outlook seems - well - misguided, unknowing and wrong. It takes a people problem, assumes (incorrectly) that it's a technology problem, and in the end creates a new - and potentially larger - business problem.

Don't get me wrong. I hate rampant reply-all email threads as much as anyone, maybe even more so. I especially dislike the passive-aggressive, nasty, insolent and rude behavior that people often use (often, ironically, in a reply-all email) to try to tell people how much they dislike email spam. If I'm copied on a business topic thread that I don't feel the need to review and would especially like to avoid, I don't like it. But I really hate it when people include me on their angry extension of the thread where they insult the original sender and complain. At least the original thread had a business purpose.

As a senior manager, several times I've replied-to-all to say "This thread is closed, please restrict the distribution of future info those those who are needed." In every case, the goal was to get people to stop and think. It almost always worked.

Now, I can see where accidental reply-all's and excess email would business and technology people to look for a way to just make it stop. I'm not saying there's not a problem to be solved - quite the contrary. But reply-all also provides a legitimate and useful piece of business functionality, one that makes people more efficient and in many cases ensures all the right people are in the loop.

The real problem here is people-related: There's a time and a place for using reply-all, and when people get lazy or don't think things through, the situation can become spammy, annoying and time-consuming. When it's useful it's very useful. When its misused it's a real pain.

Given that fact, taking the all-or-nothing, binary technology approach and removing the functionality entirely seems to be a poor method for dealing with is - at it's root - a people behavior problem.

In fact, for years there have been other options available. One example is the Reply to All Monitor (pay software, try code RA26BA50 for a possible 50% price reduction). There are other apps out there, as well. If you don't want to buy software, you can also program some VBA code to modify Outlook's behavior and prompt the user before they can send ("Are you sure you want to reply-all?"). Plus, there are a variety of ways to configure all your Outlook instances to use a plugin or your own VBA code. Of course, if you're removing the reply-all button from all the Outlook instances at a company, you probably already know this.

Imagine: Someone else might have had this problem and found a smart way to solve it. I guess the thing that really bothers me is what looks and feels like a reactive decision, likely made by people without complete information. Do you really want to completely disable all reply-all's, or is the true intent and desire to try to get people to think before they send, while allowing reply-all in cases where it makes sense?

Anyhow, I think you get the point. You can't really solve people problems with technology. Instead we should use technology to try to support people in behaving in the way we need then to. But in the end, it's all about the person's behavior, not the computer's.

Or you could say, "Buttons don't reply-to-all, people reply-to-all."



Add/Read: Comments [6]
Tech | Things that Suck
Saturday, January 31, 2009 1:20:41 PM (Pacific Standard Time, UTC-08:00)
#  Trackback
 Monday, January 26, 2009

Although there's not a specific release date or price available yet, AT&T has posted some information on their web site that points to the future release of their new, in-home 3G cell station, which I mentioned here a couple weeks ago.

Engadget has some details about the device from the AT&T web site (details since removed from att,com, copied below), and images (like the one above) have started to show up on AT&T's site, as well. The pictures show two manufacturer names: Cisco on the case and Scientific Atlanta on the model/serial number label.

I'm looking forward to this, as I technically live outside the usable AT&T service area and can only occasionally/barely get a wireless signal at my home.

What is an AT&T 3G MicroCellâ„¢?

AT&T 3G MicroCell acts like a mini cellular tower in your home or small business environment. It connects to AT&T's network via your existing broadband internet service (such as DSL or cable) and is designed to support up to 10 3G capable wireless phones in a home or small business setting. With AT&T 3G MicroCell, you receive improved cellular signal performance for both voice calls and cellular data applications, like picture messaging and surfing the web for up to 4 simultaneous users.

Device Features:

  • Enhanced coverage indoors - supports both voice and data up to 5000 square feet.
  • Available unlimited minute plans - Individual or Family Plan.
  • 3G handset compatible - works with any AT&T 3G Phone.
  • Up to 4 simultaneous voice or data users supported.
  • Device is secure - cannot be accessed by unauthorized users, easy and secure online management of device settings
  • Seamless call hand-over - start calls on your 3G MicroCell and continue uninterrupted even if you leave the building.

Device Requirements:

  • 3G wireless phone/device
  • Broadband service over DSL or cable
  • Computer with internet access for online registration

Additional Information:

  • Installing your device near a window is strongly recommended to ensure access to Global Positioning System (GPS). A GPS link is needed to verify the device location during the initial startup.
  • The 3G MicroCell device is portable. The device may be moved, provided the new location is within the AT&T authorized service area and properly registered online.


Add/Read: Comments [10]
Mobile | Tech
Monday, January 26, 2009 6:40:12 PM (Pacific Standard Time, UTC-08:00)
#  Trackback
 Friday, January 09, 2009

Microsoft has turned loose its Windows 7 Beta release to the public, and you can download it now. The beta times-out in the fall (it is a test version, after all), and is apparently limited to 2.5 million installs (product keys). You can learn more about the Windows 7 Beta release in our interview with Microsoft's Stephen Rose on RunAs Radio.

As of 11:45 a.m. Pacific time, the "profile.microsoft.com" servers responsible for the first phase of getting the new software were - not surprisingly - too busy. Try again later. We might see things improve in a few minutes (Update: no change after the advertised time, just to many excited people), since the official release time is actually noon Pacific time (GMT -8). But it would be unusual for TechNet to post the page without the software being rolled out.

TechNet Plus subscribers (only) should download the software here.

You can use a program like ImgBurn (cool little app) to put the ISO image on your writable blank DVD.

I already have my downloaded copy and key, so time to install it on my HP laptop machine now that I have some spare time available for the next hour or so.



Add/Read: Comments [1]
Geek Out | Tech | Windows
Friday, January 09, 2009 11:48:15 AM (Pacific Standard Time, UTC-08:00)
#  Trackback
 Wednesday, January 07, 2009

The CES Keynote is over, so now you can listen to our exclusive Windows 7 interview with Microsoft Sr. Community Manager for Windows Client IT Pros, Stephen Rose, available at these links:

RunAs Radio Web Site | Download MP3 file | Download WMA file

Alongside a core message of stepping up expectations in technology despite the economy, Microsoft announced this evening that it's releasing its Windows 7 Beta (build 7000) to the public for open testing and feedback. Last week Richard Campbell and I interviewed Microsoft's Stephen Rose for today's episode of RunAs Radio to discuss today's beta release, which was officially announced by Steve Ballmer during his keynote at CES tonight.

The general public gets it to download it this weekend, while MSDN and TechNet customers can get it now (product keys through the standard methods). Our interview with Stephen Rose contains some details about the how's and when's of getting the beta software for different people, as well as what one can expect from Windows 7.

It's good to see Microsoft adopting an open-beta model, where anyone who wants to can participate in the feedback process. It's going to be quite the undertaking to manage so many downloads and users, but I imagine it will be very much worth it in the end.

Of course, running a beta OS (which I tend to do regularly) isn't for the timid nor faint of heart. But for those who are comfortable, I think you'll be pleasantly surprised with the new version and what it has to offer when you check it out. Note that both 32- and 64-bit editions are available and the beta expires/times-out in the fall of this year.

Links for more information about and access to the Windows 7 Beta:



Add/Read: Comments [0]
Geek Out | Tech | Windows
Wednesday, January 07, 2009 6:56:11 PM (Pacific Standard Time, UTC-08:00)
#  Trackback

Unfortunately, I'm not one of the customers that AT&T has apparently been reaching out to in their testing of in-home micro wireless stations. I wish I was, since I live in the sticks and barely get service at all on my AT&T wireless phone. This is exactly what I need: A broadband-connected device that gives you local 3G coverage in your home.

Ars Technica reports that AT&T has described the device this way:

"AT&T's new product is a small, security-enabled cellular base station that easily connects to your home DSL or Cable Internet, providing a reliable wireless signal for any 3G phone in every room of your house. The device allows you to have unlimited, nationwide Anytime Minutes for incoming or outgoing calls."

If anyone from AT&T happens to be reading, I'd be ecstatic to try the device out and provide detailed feedback. Feel free to contact me, my email and phone number are over in the sidebar. I'm just sayin' ... :-)



Add/Read: Comments [3]
Mobile | Tech
Wednesday, January 07, 2009 3:49:31 PM (Pacific Standard Time, UTC-08:00)
#  Trackback