Showing posts with label windows update. Show all posts
Showing posts with label windows update. Show all posts

Friday, October 14, 2016

Microsoft's flawed update strategy


Let's talk about updates.  Specifically, lets talk about updates in the context of Windows 10.

When Microsoft launched Windows 10 it was supposed to be the cure-all to the Woes of Windows.  It was to be everything to everybody regardless of your chosen device.  It would be the gateway to what you wanted to do instead of the sandbox (or litter box) for the things you HAD to do.

When it works it can be all that.  Unfortunately, it really isn't.

I've listened to the pundits and Microsoft apologists for over a year now.  How they go on touting its merits while in the same breath decrying their frustrations.

Simply put, Microsoft can't be trusted with the power Windows 10 gives them.

I've had my own frustrations with it having seen my production machine blue screen for no apparent reason over a dozen times in the past year.  In the 3 years prior the same machine running Windows 7  may have done it twice.



I'm tired of constant updates churning in the background while I'm trying to do actual work.  Sick of waiting 15 minutes for a system shutdown because Windows decided it was time to do some housekeeping.

My eyes bleed at the sight of full event logs warning of failed telemetry connections.  All because I refuse to turn my daily workflow into an episode of The Truman Show.  Spybot Anti-Beacon takes care of that but the price is endless bitching.

My PC is not a lifestyle device, my data under my and nobody else's purview. I expect to control my own environment.  I have no use for Cortana.  Quite simply, I don't have the buying or search habits to make it or anything like it benefit me.  Meaning I have no reason to be so forthcoming.

Am I a troglodyte?  Hardly, I just prefer to not have Microsoft curating my search results or my computing habits for that matter.  Even if they do consider it a "Feature."

But Microsoft doesn't see it that way.

The best example is the update process.  It's common knowledge that Windows 10 has essentially taken away your ability to exercise any disposition of updates.  Even if they brick your device.

Take the recent update that disabled millions of webcams.  We've come to find out that it was all due to one lone Microsoft Engineer who took the unilateral action to remove a codec without bothering to pass it through Q&A.  ( Thurrott said that on Windows Weekly 487 BTW)

I appreciate employee empowerment and all.  It works great for the auto industry in fact most auto workers have the power to stop an entire assembly line if they see a problem.  What comes next is a structured process to address it.  

But nobody makes the ultimate call by themselves.  Unless they work for Microsoft that is.  Where one poorly executed update can be unleashed on millions of devices worldwide without as much as a peer review.

If you're using Windows 10 there's no doubt you've spent at least a few minutes observing the update process.  It's all very clandestine: even the event logs won't provide you any illumination as to what's going on.  You just sit and watch that screen, cross your fingers, and hope the update goes well as it reboots 2, 3, 5 times...



The latest atrocity?  The endless loop of death from KB3194496 that for many users will never install correctly without first manually applying an out of cycle patch ( <--that links to it BTW) 

We reap what we sow and the crop is a load of manure.  In the old days we could just simply uncheck the update once we found out it was problematic.  Today we have to beg the good graces of Microsoft to acknowledge the problem in the first place.  Meanwhile our workflows and production goes to hell while Microsoft whitewashes it's official response.

I could care less what Microsoft's "telemetry" is telling them about the severity of the issue.  If they can't get a patch right why should I trust their telemetry as an indicator of anything?

Laissez-faire may be great for Free Market policy wonks but it's got no place in a platform that 20% of the planet relies on to actually accomplish something.

The user base should demand that the next patch they release give us back control of the update process.  At this point it's obvious Microsoft can't be relied upon to do it themselves.  

Here's a proposition...

I'll meet you half way Microsoft.  Let the users curate their own patches but turn off Cortana or the Store while it's disabled.  

I think that's a fair compromise and for those invested in the Microsoft way of doing things, it would be a reminder to turn the updates back on when the inevitable storm has passed.




Thursday, May 21, 2015

Windows 10, A Mandatory update?



So if you're reading this there's a good chance you've already read my rant about Microsoft's clandestine little plan to shove Windows 10 down your throat whether you want it or not. 

It came in the form of an "Important" patch (KB3035583) with a fairly innocuous description that gives no indication of its true intent.

"Update enables additional capabilities for Windows Update notifications..."

Now some of you out there think I'm making much ado about nothing.  I'm told, " People want it, it's no big deal. "

Hey, I want it too but when I get a patch that that tries to automatically install itself and gives no indication as to its true intent, I get suspicious.

Maybe I've just been around this business too long but if there's anything I've learned in 20+ years of being a server jockey it's that you never take anything Microsoft says on face value.

It's a company that's built their business on ambiguity and misdirection.



I've said for years that Microsoft wants your toaster and with Windows 10 they may finally get it. 

That's fine, so long as you know what you're buying into and right now we most undeniably don't.

Which is why I have a new rant directed simultaneously at Microsoft and a certain Windows podcast produced Weekly on a network named after a gentrified term for a moron (TWIT).

This week said podcast (Windows Weekly) was primarily focused on the impending release of Windows 10.  In it we found that Microsoft had for the most part reiterated the obvious and essentially told us nothing new.

Except...

We found out that whether you're a business customer or a lowly consumer, Windows 10 was going to update itself whether you liked it or not.

With Windows 10 Microsoft seeks to put the days of a la' carte updates behind them.  Meaning if Microsoft wants to force a nag screen onto your desktop to promote the latest version of Office or Skype, you are, in the words of Mary Jo Foley, "Going to take it and like it.

Now I've noticed that Skype keeps showing up as an "Important" update over the past 3 months on all my Windows 7 machines. 

Thing is, I only use Skype on one of them and then it's very sparingly.  I don't like Skype, I don't like its constant nagging and I sure as hell don't like Microsoft goading me into installing it when I don't want it!

With Microsoft's new update directives, however, Skype would be considered a new "feature."

That goes for enterprise customers too by the way.  It's just like it sounds guys.  Microsoft has seen fit to take the burden of desktop management off your hands.  I wonder if they'll take the support calls too...

You enterprise guys do get some reprieve, however.  You can choose to "delay" updates for short period of time but if you don't allow those "feature updates" to deploy you run the risk of losing security updates for your entire business.

In their grand plan, to paraphrase Mary Jo Foley, Microsoft is seeking to eliminate third party desktop management and essentially control the desktop build regardless of the needs of your enterprise.

Like Manage Engine instead of System Management Server?  Too bad, it's all or nothing baby...

If you're not quite an "Enterprise" customer then Microsoft lumps you in with all those other "consumers"  Meaning you don't get the option to delay your updates.  No a la' carte either.

It also means that if Microsoft happens to roll out an update that blue screens half the Windows PC's on the planet you have no recourse. 

I'm thinking there's going to be a whole lot of business continuation insurance policies sold in the next year.

Am I blowing things out of proportion?  I don't think so for two reasons. 

    1. It's happened before.  Actually it's a fairly regular occurrence but the smart IT pro knows better than to just blindly allow updates to install without at least reviewing the descriptions.  That option disappears for consumer versions of Windows 10 (and largely for Enterprise as well)                                                            
    2. This could be disastrous for small businesses who rely on applications that may not be 100% compatible with a given update.  I don't want to hear about how stupid people keep using old software either.  It's not always their choice and it shouldn't be Microsoft's either.


Mary Jo Foley attempted to explain the new update strategy by claiming that some security updates could be dependent on other non-security updates.  Potentially causing issues if the current update model was allowed to continue.

This is where my rant about Windows Weekly starts...

By what stretch of the imagination should a SECURITY  update ever be tied to a FEATURE update?  By their very nature security updates are meant to address an existing security vulnerability not support new features or deal with compatibility issues. 

That's why even Microsoft classifies them.   You see, it's done that way because all those silly IT managers have this bad habit of wanting to know what the hell an update is going to do to their user base BEFORE it gets deployed. 

It's an example of Microsoft marketing speak.  It comes from the same people who describe an update that adds a  nag screen and background downloader as "additional update capabilities."

I have to wonder what color the sky is in a tech journalist's world...

It is this fundamental disconnect with the way that IT works that's put me at odds with tech journalists like Paul Thurrott (who still thinks Windows Vista was ok) and Mary Jo Foley.

For god's sake, the woman covers enterprise computing!  Is she just reading the sales brochures??  How could she not understand that taking away control of update deployments from IT departments is a VERY real problem.

Look, I get it.

Until recently, Thurrott and Foley were on the outs with Microsoft.  A condition that only recently changed around the time of Satjay Nadella taking the helm.

Since then I've noticed a far less critical point of view on Windows Weekly.  It's understandable if they don't want to jeopardize their newfound access but really now.

If you can't be objective then don't cover the topic.  That's what good journalists do.  Further, I don't want to hear anybody's ruminations on how enterprise IT works who's never had to do it for a living.  Report what you find but keep your admonitions to yourself.

Don't get me wrong, I believe Windows 10 will be a better Windows OS but to ignore the price it's going to exact is just naive. 

Ignore me if you want, just don't come crying if Microsoft decides that your 5000 seat enterprise should be using Lync for all its messaging some sad Monday morning.

Eyes open kids...


Tuesday, May 19, 2015

KB3035583 and Windows 10, why you shouldn't install it


No, No, No a thousand times NO!

They're at it again...

In case you didn't notice, an "Important" patch (KB3035583) showed up today or should I say showed up again.  Originally hidden in a batch of updates last April, Microsoft was planning on installing "nag screens" on every copy of Windows from version 7 and above to promote the upcoming release of Windows 10.  Nag screens are bad enough but some clever engineer discovered there was more than just the suggestion to upgrade.   

Of course the description of KB3035583 is dripping with ambiguity meaning most people will just blithely install this latest "important" update without a thought.  

That's a bad thing...

The patch includes not only a series of marketing nag screens but code to install Windows 10 as well.  That's a problem due to the fact that by default many Windows PC's are set to automatically install updates deemed "important" of which KB3035583 is one.  Reportedly, Windows 10 will be distributed similar to the 2014 Windows 8.1 update meaning unless you turn off automatic updates, the upgrade could begin without your knowledge.

But this is all just supposition right? Surely nothing can go wrong with a description like...

" This update enables additional capabilities for Windows Update notifications when new updates are available to the user..."

It's wise practice to question what Microsoft deems "important" and what exactly is meant by "additional capabilities"  especially when those capabilities have the potential to become a pain in the posterior.

Which is why I'm disappointed.  I had hoped that the "New" Microsoft under Nadella would have done away with Ballmer era subterfuge.  Surely the days of clandestine updates that killed off email attachments and upgrade nag screens were over or so I thought.

This latest update lays the foundation for the upcoming Windows 10 rollout.  Yes this latest and reportedly last version of Windows may finally cure the evils of its predecessor but there are still far more questions than answers. 

Questions like, is Windows 10 really free or am I going to get a bill for it in a year.  If I don't want to upgrade immediately what will the "retail" versions cost?  Worse, what happens if I have to reinstall the operating system when it inevitably blows up after the "free" period expires.

For now I suggest that you hide this update.  It's not Microsoft's decision whether or not you upgrade to Windows 10 and you sure as hell don't need to conform to their timeline.


For the next few months keep a close eye on those "Important" Windows updates and if KB3035583 is already installed, remove it.

Wednesday, August 20, 2014

Microsoft's Bloody Tuesday

Originally published on Kupeesh as Fear and Loathing of a Microsoft Patch



Poor Microsoft, it's been a tough couple of years for the software giant as it's gone through management upheavals, a failed operating system and a lackluster foray into the mobile market.

It seems they just can't catch a break...

That doesn't preclude them, however, from breaking things.

Case in point.  Last week's round of "Patch Tuesday" updates was filled to the brim with security and operating system fixes that millions of Windows PC's dutifully installed via automatic updates.

Normally keeping an operating system up to date is a good idea if you want to keep the bad guys out of your stuff.  But what do you do when the supposed good guys blow up your computer?

That's a question thousands of Windows users are asking as they now find themselves between the rock of Internet security threats and the hard place of a botched update.  

Even longtime Microsoft watchers like Paul Thurott (Windows Weekly, Winsupersite) can only answer with, "That's a tough one."

The patch causing so much trouble is a seemingly innocuous update to the Russian Ruble currency symbol in the windows font library (KB 2970228).  Apparently some users are experiencing everything from screwed up fonts to Blue Screens of Death (BSOD) after its installation.  As a workaround Microsoft is currently advising users to remove it and 3 other updates (KB2982791,KB2975719,KB2975331) that contain the offending code.  In addition, the download description pages for the affected update patches have had their download links removed while Microsoft, "investigates the issue."

Windows 7 and 8 are arguably the most robust operating systems Microsoft has ever produced.  So the return of the BSOD nemesis from the days of Windows XP is going to raise some eyebrows.  BSOD's only arise when a core operating system function has failed beyond recovery.  

That's something we thought we left behind when the house of cards that was Windows XP finally shuffled off the stage.  So with so much progress, how could Microsoft allow an obviously unvetted update to be distributed on platforms from Server 2003 to Windows 8.1.

Yes I know, Microsoft, unlike Apple, doesn't control every variant of hardware that runs their software.  But it's for exactly that reason that one would think their update policy would err on the side of caution.  That goes double in a week that also saw major outages of the company's Azure cloud services.

Instead Microsoft seems bent on releasing new products (patches included) like automakers release new cars.  But operating systems aren't Chevy's and rushing new products to market always leaves something to be desired.  Just ask GM about taking shortcuts in a process for proof.

So what's the answer when a strategy of "rapid release" seems to rule the day.  Unfortunately it's "Caveat Emptor," Buyer Beware.  Microsoft appears committed to shooting out software patches and asking questions later.  So for now, you may just want to switch those automatic updates to "manual" and wait a week after Patch Tuesday to install those non-critical updates.


In this case the cure was worse than the disease.