Recent Comments
- Doug on Credit card security fail
- T.Rob on Encrypting passwords in config files – secure or not?
- Gustav on Encrypting passwords in config files – secure or not?
- Kalpana on WMQ Security in v7.1
- T.Rob on Hang on – switching hosting providers
-
Recent Posts
Archives
Categories
Blogroll
Stack Exchange MQ Q&A- Can create Websphere Queue Manager but not connect – stackoverflow.com
- WebSphere MQ Performance – stackoverflow.com
- Test sending of mqseries messages without installing WebSphere MQ – stackoverflow.com
- Getting MQ queue statistics in Java – stackoverflow.com
- MQMessage read or delete – stackoverflow.com
- WebSphere MQ 7, can I use one machine to send message to remote queue – stackoverflow.com
- WebSphere MQ: Consuming Messages in Batches – stackoverflow.com
- WebSphere Message Broker MQMD Report – stackoverflow.com
- com.ibm.mq.MQException: MQJE001: Completion Code '2', Reason '2035' – stackoverflow.com
- IBM MQ - Moving messages between queues using Java MQ APIs – stackoverflow.com
Meta
Category Archives: General
Encrypting passwords in config files – secure or not?
Not long ago a colleague told me he wished that he could use a .kdb format keystore for his Java applications. When I inquired as to why, he said he liked that the .kdb includes the ability to stash an … Continue reading
Posted in General, WMQ Security
2 Comments
Posted WMQ v7.1 “What’s New” presentation
The much-awaited “What’s New in WMQ v7.1″ session has been surrounded by technical issues. On the first day of the conference it was completely omitted from the agenda. The repeat is listed on the agenda with the wrong title. Today … Continue reading
Posted in General
Leave a comment
WSTC 2011 WMQ/WMB presentations
The WebSphere MQ and WebSphere Message Broker presentations scheduled for the 2011 WebSphere Technical Conference in Berlin next week are listed after the break. When I’m not presenting or meeting you can probably find me in one of the security-related … Continue reading
Posted in Events, General
Leave a comment
Lab materials actually posted this time!
The link I gave out earlier http://bit.ly/WMQSecurityLab is actually a good link, the problem was that after uploading the files, I neglected to update the index page to point to them. That’s been fixed now and the session materials have … Continue reading
Posted in General
Leave a comment
Avoiding insider threat
Passing along this article from Adam Bosnian of Cyber-Ark Software: Practical advice on avoiding the insider threat. The whole article is worth reading but one item stood out: Best Practice #4: Secure Embedded Application Accounts Up to 80 percent of … Continue reading
Posted in General
2 Comments
Wrapping up IMPACT 2009
Well, this is the last day of IMPACT. It’s always lightly attended as many folks take Friday as a travel day. I have one more session this morning though. It’s the WMQ ESE introduction. Overall the WMQ security sessions were … Continue reading
Posted in Events, General, News, WMQ
Tagged Conferences, Events, General, News, security, WebSphere MQ, WebSphere MQ Security, WMQ, WMQ Security
Leave a comment
When automatic translators go wrong…very wrong!
I just found a blog post about WMQ security that has, I believe, been run through an automated translation service with unintentionally hilarious results. Here’s an excerpt: WMQ Adventurer authenticating a connexion to a queue director For both waiter and … Continue reading
Posted in General, Humor, WMQ, WMQ Security
Tagged Humor, WebSphere MQ, WebSphere MQ Security, WMQ Security
Leave a comment
Mission:Messaging: Migration, failover, and scaling in a WebSphere MQ cluster
Certain aspects of service orientation are best served using an IBM® WebSphere® MQ cluster. The cluster provides the location independence, run time resolution of names, and concurrency required by SOA applications. For these reasons, adoption of SOA is driving migrations … Continue reading
Posted in General, Publications, WMQ
Tagged Best Practices, clustering, SOA, WebSphere MQ, WMQ
5 Comments
Puzzled by WMQ vulnerability advisory
Well, I knew this one was out there but never looked at the CVE for it – there is a memory corruption vulnerability in the WebSphere MQ ( CVE-2007-6044) that is network exploitable. What I can’t figure out is why … Continue reading
Posted in General, WMQ, WMQ Security
Tagged advisory, CVE, MITRE, vuln, vulnerability, WMQ, WMQ Security
Leave a comment
Choosing a PCI DSS Auditor? Does WMQ awareness count?
James DeLuccia’s post about choosing a PCI DSS QSA auditor has some good advice. I would add to his list a criteria one of my own: the auditor should at least know how to spell WMQ. Or JMS. Or “message … Continue reading →