Cisco Blogs


Cisco Blog > Security

Oracle Java Zero Day Vulnerabilities Risks and Mitigations Part 2

In the previous Part 1 post, I discussed the initial response, risk, and mitigations for the recently-disclosed zero day Oracle Java vulnerabilities that attackers have used in attacks against vulnerable end-user systems. Since then, Oracle has released software updates that correct the original flaw documented in IntelliShield alert 26751, as well as for additional vulnerabilities, as documented in IntelliShield alert 26831.

Attacks leveraging the Java vulnerabilities have increased, with reports indicating that tens of thousands of systems have been compromised. The malicious software toolkit BlackHole, documented in IntelliShield alert 25108, has incorporated the previously-reported Metasploit exploit and can be used to build exploits for use in attacks. Observed exploits have installed the Poison Ivy remote access trojan, and other malicious software may also be downloaded and installed using Poison Ivy, once installed on a vulnerable system.

Read More »

Tags: , , , ,

Cisco is First Partner to Announce Oracle NoSQL Database Solution on Cisco UCS

At the recently concluded Oracle OpenWorld 2011, Cisco announced a comprehensive “Oracle NoSQL Database” Solution on Cisco UCS that helps organizations deploy Big Data solutions quickly, with configurations that scale easily and predictably as demand dictates. Cisco UCS is the first platform partner certified for “Oracle NoSQL Database” and we are very excited about that.

The Cisco solution for Oracle NoSQL database is fully tested, certified and designed to meet your scalability requirements with a modular, easy-to-deploy Cisco UCS  infrastructure that accelerates time-to-value and reduces risk.

Oracle NoSQL Database is a new product from Oracle – a distributed, highly-available key-value storage platform for large-volume, latency-sensitive applications or web services. It is built based on Oracle Berkeley DB Java Edition High Availability storage engine. It can provide fast, reliable, distributed storage to applications that need to integrate with extract, transform, and load (ETL) processing.

The  Joint Ciso-Oracle solution on Cisco UCS platform offers enterprise robustness and stability with the Oracle NoSQL database as the underlying storage engine . The solution is based on the proven data center architecture using Cisco UCS™ C-Series Rack-Mount Servers powered by Intel® Xeon® processors. Customers can choose to deploy Cisco UCS C200 M2 or Cisco UCS C210 M2 servers depending on their business needs. Cisco Nexus® switches support the high-bandwidth and low-latency needs of Big Data solutions, improving infrastructure agility and scalability at lower costs, without arbitrary restrictions.

Check the Oracle NoSQL Database on Cisco UCS Solution presentation for additional details.

Tags: , , ,

Cisco John Chambers brought a lot of substance today at Oracle OpenWorld

October 5, 2011 at 11:42 am PST

Some people with probably think that I drank the Kool aid- Well our CEO and Chairman did a fantastic job this morning as a key note speaker at Oracle OpenWorld! Not as controversial as other CEOs , but certainly a speech which makes employees very proud to work for Cisco.

John McAbel who has been involved in the preparation of this speech warned me couple of days ago

“We are very excited to have John Chambers at Oracle OpenWorld this year.  It’s the first year he is a key note speaker in four years at the conference  I think it’s a reflection of the growth of the UCS within the Oracle ecosystem  We have now hundreds of customers who are running UCS today , many of these customers are running large Oracle mission critical workload, such as EMC, Qualcom, University of Colarado, and others . So I think that John being here is a reflection of this growth, but also of the overall commitment of the partnership between the two companies Openworld in fact runs on Cisco networking gear and we  run a lot of Cisco on  Oracle eBusiness  Suite  and  Oracle data base . So there is a nice synergy between the two companies

I think you’ll find this  key notes unlike other key notes at Oracle OpenWorld , where we are going to have demonstration on stage of Cisco UCS running Oracle codes, we are also going to show how we can take that technology to help improve how customers will process words and some of the processes you will find them entertaining !”

- He was right !I saw this morning a constant flow of appreciative tweets on John’s speech Here are some of them starting with  Marc Benioff  from SalesForce.com  “John Chambers is delivering one of the best keynotes in our industry. Watching him is humbling. He is as good as they get.”( @benioff)

“Have to say, Cisco CEO John Chambers is an excellent speaker, nice mix of biz, tech and vision RT “(@mfauscette)
“That winds up John Chambers. Impressive talk! I learned a lot.”(@Oracleheretic)
“Keynotes focusing on substance, not style issues. Other keynoters should take note, emulate“(@carterlusher)
“Vendors that speak at industry conf’s should replay John Chambers #oow11 keynote. Very  good balance of Thought Leadership + Product Pitch” (@sameerpatel)
“John Chambers is the best speaker in our industry. #oow11 He sets the bar.”
“Bold & consistent if nothing else” (@ca_bshimmin)
“Great ideas! John Chambers, Cisco President, at Oracle OpenWorld”

I will not go through all the rich content of this entertaining and some times provocative speech  (“If you agree with everything I say today, I haven’t done my job”. John Chambers).  I hope to be very soon in a position to point to a the slide deck or even the recording of the speech -- So stay tuned
But here are some talking points (as perceived by the audience) , as well as the first reactions  on this speech about change from The Register and The New York Time

Read More »

Tags: , , , , , ,

Cisco at Oracle OpenWorld- Meet the experts – An interview with John McAbel -Part 1

October 3, 2011 at 9:04 am PST

As a large crowd of IT professionals are gathering in the Moscone Center in San Francisco , I asked John McAbel, A Cisco architect for Oracle Applications and a speaker at the conference to share his excitement about the partnership between Cisco and Oracle, starting today with what to expect from Cisco on the show floor -- So in this part 1 of the interview, we talk about the demos, the experts and the Cisco Validated Design practice.

John  Tell us what the visitors can expect when paying a visit to our booth (#721) ?

“Amongst the demos , we will demonstrate big data on Cisco UCS . And for the customer who are looking beyond the big data market, we will have the ability to show demonstration of Oracle  Ebusiness Suite , Oracle data base ,and RAC cluster architecture ,and we will talk about some of the scalability test we have done . We got a number of Cisco Validated Designs. We will talk about Oracle scalability, both on bare metal and also on hypervisor type environment So we will have Cisco experts in the booth able to talk about some of the benchmarks we will announce at the conference , between 3 and 5 benchmarks – So I Think that visitors will be very excited  to hear about the leading performances that we continue to drive both in the application space and in the Oracle middleware space.

In addition of the demos, please check on the booth a series of theater presentations delivered by Cisco experts and Cisco partners .

Talking about the experts, can you tell us who they are ? What they bring on the table ?

Read More »

Tags: , , ,

Sneak Peek into Oracle Deployment at Cisco IT

September 29, 2011 at 3:30 am PST

Oracle OpenWorld is definitely around the corner -- Our speakers are now  fine tuning their presentation . But I couldn’t resist to contact some of them with the hope to have valuable  insights. As I was interviewing John McAbel (Oracle VM consolidation and Path to the cloud on Cisco UCS) , and Siva Sivakumar (Cisco UCS Reference  Achitecture for Oracle Solutions) in San Jose, I sent Amy Lewis , our favorite roving reporter (actually competing with Aneel ) for an impromptu meeting with Dan Loomis, as both of them are living in RTP (remember the recent opening of the RTP data center ?)

Dan Loomis is a System/chief  architect for the customer services area. His passion is definitely about aligning business and technology architecture, and working on strategic planning .Dan intends to share with the audience in his speaking session (Service Transformation: Building Process Automation for Complex Service Offerings ) framework and methodology learned.

httpv://www.youtube.com/watch?v=6J01YMdBfzE

Here is the extract of the session

High-technology companies have an increasing focus on creating and enabling services to grow profits and customer satisfaction by expanding value, differentiation, and capabilities. These services create extensive requirements to help companies successfully support the new service models. In this session, Cisco discusses its rigorous approach to platform transformation that brings together thorough performance metric identification and evaluation and combines with new strategy requirements to define its next platform.
Read More »

Tags: , , ,