Skip to main content

I need your permission to continue.

I've spent a few days now with Windows Vista (Ultimate). It is the ultimate many things, but I sure hope that it's not the ultimate operating system. In a way it seems to me that Vista is sort of like a really shallow, hot girlfriend - You have to pay her lots of attention, work hard constantly to keep her happy and in return, she looks gorgeous and drives you absolutely insane with her stupidity and nagging...

I'm talking particularly about User Account Control. This one single 'feature' has the potential to make people throw their machines across the room in all their shiny transparent aero glory. Essentially, the way it works is this: anytime you do anything that could possibly affect the configuration of your computer, Windows prompts you to enter your username and password again, to confirm that you really meant for the action to occur.

This may seem like a cool idea. I understand the point. The theory goes that no nasty virus or spyware will ever be able to do anything mean or nasty, without the user knowing. But, it seems to me, that in this case, as in many things, that Microsoft's heart is bigger than it's brain...

Things that trigger a UAC event include: installing software, re-configuring software, starting a program, saving files (to certain locations), connecting anything to the Internet, starting a windows service, opening a management console, renaming certain files - In short, pretty much everything.

You know, configuring my new OS today(as a local administrator), I think I must have typed my username and password over one hundred times. If a malicious or evil program had somehow been one of those 100 times, would I have typed it in? Chances are, I probably would have. Hell, after about the first 5 UAC events, I was ready to give my username and password to any stupid dialog that popped up and asked. I mean, occasionally I found myself just typing it randomly into e-mails, out of habit...

It reminds me of a story Paula was telling about an organization making a password policy so complex, that users were forced to write passwords down on sticky notes and stick them to their monitors. It devalues the whole thing. My password has been commoditized. It's nearly worthless to me.

So, UAC doesn't solve the problem that it was built to solve - it actually makes it worse. If users aren't prepared to get a whole lot looser with their passwords, then they won't be able to install anything, or make windows perform properly. Either way, it will drive users around the twist. (There were some really choice swear-words coming out of my cube today. )

Sure, you can turn UAC off. But in what may be the 'ultimate' irony, if you do, Windows helpfully nags you constantly to turn it back on!

Comments

Popular posts from this blog

Going West vs Going to Sleep

Phew! That was one busy adventure to the other side of this wide brown land (It is wide, and brown, but mainly wide) TUF 2005 in Perth was the launching ground for our new product, ice. Stilly and I were presenting the keynote, which was based around showing off ice, and talking about collaboration and other reasons why a bunch of customers might want to buy it. In a stroke of genius\insanity, we decided to let the audience pick the demonstration platform based on random outcomes - we built a giant cardboard die with various operating systems and platforms written on each side - then we'd let a volunteer from the audience roll the dice(die?) to determine which platform we should do our demo on. ice (the italics belong to the marketing department) works on any platform, so we were pretty confident that we would be okay. But, what I hadn't counted on (those italics are mine), was my crummy laptop (which was acting as the server) deciding that it would be a good idea to hibernat...

Considerably smaller than Texas...

Well, after jonron 's nagging, I figured I better post something! It's weird - being so far away from home and in such a strange foreign place - you'd think that I'd have all kinds of things to say, but in truth most of the time I'm either so busy with work that I don't have time to post, or so lonely that I don't want to burden you all with my misery... (sob!) Anyway - I'm currently posting from the Best Western Hotel in Corpus Christi, Texas . (We have a TRIM Customer here who needs some help with configuring their records management system, so Simon and I have been helping out. ) I'm not sure that I'd ever want to stay at the Worst Western. Or even the Average Western, but no matter... Texas has been a pretty entertaining place to visit. Our efforts at finding a place to park ended in a church parking lot where the sign said "Clergy Only - Sinners Will be Prosecuted (and towed)" When we finally found the office, there was another gi...

Still Crazy

When I started with TOWER Software four years ago, I was keen to get on with the job. You know, new project manager guy and all, trying to figure out what was what, and who was who. As part of this breaking-in process, I went around and asked each developer what they were working on, and how long they estimated that their current project would take. I'll admit that I had a secret agenda - it's important to find out who are the overly optimistic guys, and who are the more seasoned realists, because you're supposed to adjust your project schedules accordingly.. Anyway, I collected all this data and feed it into a secret Gantt chart I had somewhere. Most of the team were working on features that were being shipped in the next few months, and I got the broad range of overly positive responses, which is pretty common. I know I'm a terribly optimistic estimator. (Incidentally, if you're like me, my advice is to always multiply your estimate by the value of pi in order to ...