Windows Vista, an operating system released by Microsoft in November 2006, has received substantial criticism by reviewers and users. Due to issues with privacy, security, performance, and product activation, Windows Vista has been the subject of a number of negative assessments by various groups.
[edit] SecurityAccording to CNET, some critics are unenthusiastic about the Vista security features, claiming that Vista "offers mostly basic protection and is not the best of its class." Natalie Lambert, an analyst with Forrester Research, stated, "There is no doubt that Vista will be Microsoft's most secure operating system. However, most secure is not equivalent to secure."[1] In February 2008, Bitlocker was shown to be vulnerable to a cold boot attack.[2] According to the researchers, the risk can be mitigated by configuring two-factor authentication (e.g. a boot PIN in conjunction with a TPM), and by disabling power standby mode. [edit] User Account ControlThe following concerns have been raised about the new User Account Control (UAC) security technology: Many third-party programs do not follow the principle of least privilege and therefore need be run as an administrator, triggering UAC prompts. For some time, Microsoft has recommended that programs be written to run as a standard user. However, because nearly all users are administrators by default in previous versions of Windows, many developers have incorrectly assumed that their applications will always execute with these privileges, or have not regression tested their code for LUA bugs.[3] Microsoft added file and registry virtualization technology as well as application compatibility shims to reduce the number of these legacy applications that trigger UAC prompts.[4] User Account Control can be disabled through the Control Panel; however, this also disables privilege separation features such as Internet Explorer 7's Protected Mode, which relies on UAC for its operation. [edit] Driver signing requirement64-bit versions of Windows Vista allow only signed drivers to be installed in kernel mode; this feature cannot be easily overridden by system administrators.[5][6] In order for a driver to be signed, a developer will either have to pay Microsoft for the driver to be tested by Microsoft's WHQL Testing.[7] or, if WHQL testing is not required, to purchase a "Software Publisher Certificate"[8] with which to sign the driver. The following criticisms/claims have been made regarding this requirement:
Unsigned drivers could initially be installed through the use of tools included with Vista,[14]as well as some third party utilities such as Atsiv[15]. However Microsoft has closed these workarounds with hotfix KB932596,[16] which is included in Service Pack 1. [edit] Flaws in memory protection featuresSecurity researchers Alexander Sotirov and Mark Dowd have developed a technique that bypasses many of the new memory-protection safeguards in Windows Vista, such as Address space layout randomization. The result of this is that any already existing buffer overflow bugs that, in Vista, were previously not exploitable due to such features, may now be exploitable.[17][18] Note that this is not in itself a vulnerability: as Sotirov notes, "What we presented is weaknesses in the protection mechanism. It still requires the system under attack to have a vulnerability. Without the presence of a vulnerability these techniques don’t really [accomplish] anything."[19] The vulnerability Sotirov and Dowd used in their paper as an example was the 2007 animated cursor bug, CVE-2007-0038. Security researcher Dino Dai Zovi has claimed that this means that it is "completely game over" for Vista security.[20] Sotirov himself, however, has refuted this, saying that "The articles that describe Vista security as 'broken' or 'done for,' with 'unfixable vulnerabilities' are completely inaccurate. One of the suggestions I saw in many of the discussions was that people should just use Windows XP. In fact, in XP a lot of those protections we’re bypassing [such as ASLR] don’t even exist."[19] [edit] Digital rights managementAnother common criticism concerns the integration of new forms of digital rights management (DRM) into the operating system, specifically the Protected Video Path (PVP), which involves technologies such as High-bandwidth Digital Content Protection (HDCP) and the Image Constraint Token (ICT). These features have been added to Vista due to an agreement between Microsoft and major Hollywood studios.[21] Microsoft claims that movie studios and other providers of "premium content"[citation needed] will only allow their data to be played back on personal computers if sufficient protection is granted. This will concern, among other things, play-back of protected content on HD DVD and Blu-ray discs, but it will not be enabled until at least 2010. The Protected Video Path mandates that encryption must be used whenever content marked as "protected" will travel over a link where it might be intercepted. This is called a User-Accessible Bus (UAB). Additionally, all devices that come into contact with premium content (such as graphics cards) have to be certified by Microsoft.[21] Before playback starts, all the devices involved are checked using a Hardware Functionality Scan (HFS) to verify if they are genuine and have not been tampered with. Devices are required to switch off or artificially degrade the quality of any signal outputs that are not protected by HDCP. Additionally, Microsoft maintains a global revocation list for devices that have been compromised. This list is distributed to PCs over the Internet using normal update mechanisms. The only effect on a revoked driver's functionality is that high-level protected content will not play; all other functionality, including low-definition playback, is retained.[21][22] [edit] Notable criticsPeter Gutmann, a computer security expert from the University of Auckland, New Zealand, has released a whitepaper[23] in which he raises the following concerns against these mechanisms:
Steve Gibson of Gibson Research Corporation has stated during his Security Now! show that he agrees with Peter Gutmann in principle and that what he proposes is a factually accurate description of what is found in the specification from Microsoft.[24] The Free Software Foundation is conducting a campaign called "BadVista" against Vista on these grounds. Apple Inc, Microsoft's major competitor, frequently made Vista a target of its "Get a Mac" advertising campaign. [edit] Reaction to criticismEd Bott, author of Windows Vista Inside Out, has published a 3 part blog which rebuts many of Gutmann's claims.[25] Ed Bott's criticisms can be summarized as follows:
Technology writer George Ou claims that Gutmann's paper relies on unreliable sources and that Gutmann has never used Windows Vista to test his theories.[26] Gutmann has responded to both Bott and Ou in a further article.,[27] which states that the central thesis of Gutmann's article has not been refuted and the response of Bott is "disinformation" Microsoft has published a blog entry with "Twenty Questions (and Answers)" on Windows Vista Content Protection, intending to refute some of Gutmann's arguments.[28] Paul Smith, a Microsoft MVP, has written a response to Gutmann's paper in which he counters some of his arguments.[29] Specifically, he says:
Microsoft also noted that content protection mechanisms have existed in Windows as far back as Windows Me.[31] [edit] Hardware requirements and performanceAccording to Microsoft, "nearly all PCs on the market today will run Windows Vista" and most PCs sold after 2005 are capable of running Vista.[32][33][34] In addition, many Vista early adopters faced hardware incompatibility problems due to drivers not yet being available for Vista.[citation needed] Service Pack 1 for Vista is said to fix many of these problems.[35] [edit] SpeedTom's Hardware published benchmarks in January 2007 that showed that Windows Vista executed typical applications more slowly than Windows XP with the same hardware configuration.[36]Ten of the 15 application tests that showed performance drops did not consider the radical design changes in Vista. Standard Performance Evaluation Corporation (or SPEC), the maker of those tests, states that such "results should not be compared to those generated while running Windows XP, even if testing is done with the same hardware configuration." SPEC acknowledges that an apple-to-apples comparison cannot be made in cases such as the one done by Tom's Hardware, calling such studies "invalid comparisons."[37] In the two tests involving real world applications, WinRAR and Adobe Photoshop, Vista was faster by 21.8% and 5.5% respectively. The remaining three application benchmarks showed negligible differences between XP and Vista, with both showing leads of less than 2% among the three. According to Devil Mountain Software, Windows XP Service Pack 3 outshines Windows Vista in performance and in other benchmarking tests.[38][39]
[edit] File operation performanceWhen first released in November 2006, Vista performed file operations such as copying and deletion more slowly than other operating systems. Large copies required when migrating from one computer to another seemed difficult or impossible without workarounds such as using the command line. This inability to efficiently perform basic file operations attracted strong criticism.[40] After six months, Microsoft confirmed the existence of these problems by releasing a special performance and reliability update,[41] which was later disseminated through Windows Update, and is included in Service Pack 1.[42] Nonetheless, one benchmark reported to show that, while improving performance compared to Vista's original release, Service Pack 1 does not increase the level of performance to that of Windows XP.[43] However, that benchmark has been questioned by others within ZDNet. Ed Bott both questions his colleagues' methods and provides benchmarks that refute the results.[44] It should also be noted that XP's file copy operation may seem faster than Vista's, when in fact it is not. This is because under XP the operation can be pushed off to cached I/O, meaning that the file copy dialog may be dismissed long before the file has actually been copied to disk.[45] [edit] Game performanceEarly in Vista's lifecycle many games showed a drop in frame rate compared to that experienced in Windows XP.[46][47][48] These results were largely the consequence of Vista's immature graphics processing units drivers, and higher system requirements for Vista Itself.[49][50] Recent benchmarks suggest that, as of mid-2008, Vista SP1 is now on par with Windows XP in terms of game performance.[51] [edit] Software bloatConcerns have been expressed that Windows Vista may contain software bloat. Speaking in 2007 at the University of Illinois, Microsoft "Distinguished Engineer" Eric Traut said, "A lot of people think of Windows as this large, bloated operating system, and that's maybe a fair characterization, I have to admit." He went on to say that, "at its core, the kernel, and the components that make up the very core of the operating system, is actually pretty streamlined."[52] Former PC World editor Ed Bott has expressed skepticism about the claims of bloat, noting that almost every single operating system that Microsoft has ever sold had been criticized as "bloated" when they first came out; even those now regarded as the exact opposite, such as MS-DOS.[53] [edit] Vista capable lawsuitTwo consumers sued Microsoft in United States federal court alleging the "Windows Vista Capable" marketing campaign was a bait and switch tactic as some computers originally installed with Windows XP could only run Vista Basic. In February 2008 a Seattle judge granted the suit class action status, permitting all purchasers in the class to participate in the case.[54][55] Released documents in the case, as well as a Dell presentation in March 2007, discussed late changes to Windows Vista which permitted hardware to be certified that would require upgrading in order to use Vista, and that lack of compatible drivers forced hardware vendors to "limp out with issues" when Vista was launched.[56][55] This was one of several Vista launch appraisals included in 158 pages of unsealed documents. [edit] Laptop battery lifeWith the new features of Vista, criticisms have surfaced concerning the use of battery power in laptops by Vista, which can drain the battery much more rapidly than Windows XP, reducing battery life.[57] With the Windows Aero visual effects turned off, battery life is equal to or less than Windows XP systems.[58] "With the release of a new operating system and its new features and higher requirements, higher power consumption is normal," as Richard Shim, an analyst with IDC noted, "when Windows XP came out, that was true, and when Windows 98 came out, that was true."[59] [edit] Software compatibilitySignificant problems have surfaced with other software running under Vista. According to Gartner, "Vista has been dogged by fears, in some cases proven, that many existing applications have to be re-written to operate on the new system."[60] Cisco has been reported as saying, "Vista will solve a lot of problems, but for every action, there's a reaction, and unforeseen side-effects and mutations. Networks can become more brittle."[61] According to PC World, "Software compatibility issues, bug worries keep businesses from moving to Microsoft's new OS."[62] Citing "concerns over cost and compatibility," the United States Department of Transportation prohibited workers from upgrading to Vista.[63] The University of Pittsburgh Medical Center, said the rollout (of Vista) is significantly behind schedule because "several key programs still aren't compatible, including patient scheduling software."[64] As of July 2007, there were over 2,000 tested applications[65] that were compatible with Vista. Microsoft has published a list of legacy applications that meet their "Works with Windows Vista" software standards[66] as well as a list of applications that meet their more stringent "Certified for Windows Vista" standards.[67] However, as of July 2007, software compatibility problems were still hindering adoption of Vista.[68] Microsoft has released the Application Compatibility Toolkit 5.0 application for migrating Vista-incompatible applications, while virtualization solutions like Virtual PC 2007 or those from VMware can also be used as a last resort to continue running Vista-incompatible applications under legacy versions of Windows. Microsoft also provides an Upgrade Advisor Tool (.NET must be installed and an Internet connection is required) which can be used on existing XP systems to flag driver and application compatibility issues before upgrading to Vista.[69] [edit] Removal of announced featuresMicrosoft has also been criticized for removing some heavily discussed features such as Next-Generation Secure Computing Base in May 2004, WinFS in August 2004, Windows PowerShell in August 2005 (though this was released separately from Vista prior to Vista's release, and is being included in Vista's successor, Windows 7), SecurID Support in May 2006, PC-to-PC Synchronization in June 2006.[70] The initial "three pillars" in Vista were all radically altered to reach a release date.[71] [edit] PricingMicrosoft's international pricing of Vista has been criticized by many as too expensive.[72][73][74] The differences in pricing from one country to another vary significantly, especially considering that copies of Vista can be ordered and shipped worldwide from the United States; this could save between $42 (€26) and $314 (€200). In many cases, the difference in price is significantly greater than was the case for Windows XP. In Malaysia, the pricing for Vista is at around RM799 ($244/€155).[75] At the current exchange rate, United Kingdom consumers could be paying almost double their United States counterparts for the same software.[76]
[edit] Software Protection PlatformVista includes an enhanced set of anti-piracy technologies, based on Windows XP's Windows Genuine Advantage, called Software Protection Platform (SPP).[78] In the initial release of Windows Vista (without Service Pack 1), a major component of this was a reduced-functionality mode, which is entered when it is detected that the user has "failed product activation" or that his or her copy is "identified as counterfeit or non-genuine."[79] The technology was described in a Microsoft white paper as follows:
This was criticised for being overly draconian,[81][82] especially given an imperfect false-positive record on behalf of SPP's predecessor,[83] and at least one temporary validation server outage.[84][85] SPP was significantly altered in Windows Vista Service Pack 1. Instead of the reduced functionality mode, an installation of Vista left unactivated for 30 days presents the user with a nag screen prompting them to activate the operating system when they log in, changes the desktop to a solid black colour every hour, and periodically warn the user about software counterfeiting with notification balloons. In addition, updates classified as optional are not available to unactivated copies of Vista.[86] Microsoft maintains a technical bulletin providing further details on product activation for Vista.[87] [edit] Sales figure inflationAccording to industry sources, as of late July 2008 Windows XP is still outselling Windows Vista, especially in business sales. According to HP, Microsoft is unethically manipulating and inflating Windows Vista sales figures.[88][89] An HP manager is quoted in APC:
[edit] Windows Ultimate ExtrasWindows Vista Ultimate users can download exclusive Windows Ultimate Extras. These extras have been released much more slowly than expected, with only four available as of June 2008, which has prompted some criticism.[90][91][92] Barry Goffe, Director of Windows Vista Ultimate for Microsoft states that they were unexpectedly delayed on releasing several of the extras, but that "Microsoft plans to ship a collection of additional Windows Ultimate Extras that it is confident will delight its passionate Windows Vista Ultimate customers."[93] [edit] See also[edit] References
[edit] External linksWikipedia, the Free Encyclopediaofferte voli | hoteles | precios | voli | die verzeichnis | annuarie web | stop smoking london | ||||||||||||||||||||