WinFS - Who Will Actually Use It?
Hel Toupee asks: "Tom's Hardware is running an article about the file system to be employed in Windows Longhorn, the to-be-long-overdue successor to Windows XP. According to the information that the authors could get out of Microsoft, WinFS seems to be little more than an indexing and searching service that sits on top of NTFS or FAT. It is also very flexible and extendable, which, for Microsoft, can mean 'slow' and 'exploitable'. For instance: quite a bit of the inner workings of WinFS rely on XML data tags which can allow 'for instance, that developers will additionally be able to automatically display or execute commands linked to items located by a specific search'. This seems to imply that the new generation of spyware only has to change a bit of XML and it can add entries to your context menus, or open webpages when you click on a file, or, since files can be grouped by content in 'virtual folders', spyware could effectively add entries to these folders, or reorganize your entire filesystem on the fly -- all with slight tweak in some XML file! Am I being paranoid? WinFS seems fairly insecure, and I will not be using it if given a choice. What's your take?"
Yes, spyware won't do anything if it can't get root access. If everyone used safe software, or if Microsoft improved iexplore, there would be nothing to worry about.
I would assume that the security would have improved at least a little until the Longhorn release. When is that, by the way? No I did not read the article, or the newspost very carefully.
And maybe, for some reason, people would not surf the dangerous web using the administrator account? It's not a Good Thing to do, it is more like a DANGEROUS kernel feature. You don't know if it will do anything, but when it does... it's too late.
Well, if WinFS is default, million of users _will_ use it. They don't care or know what's in the bottom. They just use the system that came with the PC. Only the future will tell what this will do to your system,
after all we weekly encounter new and exciting ways spyware/viruse/worms/etc. screws up windows.
"What's your take?"
It's too fscking early to say.
Stop talking out your ass and speculate on something important, like Episode III.
Joe
http://www.joegrossberg.com
What's your take?
Well, we have absolutely no information about how WinFS works, nobody here has actually used it, and it isn't even finished yet... but it comes from Microsoft, so it's probably slow, exploitable, and an attempt to abuse their monopoly powers.
Tarsnap: Online backups for the truly paranoid
Security isn't my primary worry, at least at first. The indexing data is stored in an SQL database. I've had my share of registry corruption to know that when Microsoft stores a pile of critical information in a centralized database, you'd better keep that database backed up. At the very least, it'd be wise to stay away from the new formats until everyone else has debugged them.
This is America, damnit. Speak Spanish!
The programmers at Microsoft are surely aware of these sorts of issues. It might be a good idea to wait until the product is complete before deciding that it's terribly insecure.
Right now, all spyware has to do is a few simple registry entries to add itself to context menus, startup, Internet Explorer default search engine, etc. What's the difference between a simple reg tweak and a simple XML tweak? Same "exploits", just different interfaces.
And thank you btw for explaining what Windows Longhorn was..
Who will use it? 98% of the desktop market. And yes, we all know linux users will not be. Next question plz..
I know this might be a shock for you Linux users, but it's time to move on: Files are no longer files as we know them.
Why? Because using normal files is just too slow. E.g. How do we know which part of a 1gb file should lie in memory, and which should not? We need attributes, we need information, and this information are also files. You see? We end up describing what I would like to call another step for Operating Systems; Object-oriented file systems. Windows allready has some of this in their AD structure.
This will of course need a better file-handling tool. It's just like a big database where we need good rules of what's good and what's not. And this is what WinFS is trying to give us. I'm sure Microsoft takes the step that Unix should had taken years ago.
I'm sure I'll be hearing from /. about how all the concepts in WinFS would be wonderful to have... just as soon as we hear something new about Reiser4. Seriously, just adding some extra metadata to a filesystem doesn't have to make it insecure; in fact, in Reiser4, they're doing it to make the filesystem *more* secure.
/.'er, but let's wait until WinFS is actually released to start picking it apart, ok? Until then, it's still vaporware, and there's no guarantee that it'll get released in 2005, 2006, or any other time.
Now, I know about MS' track record with security just as well as the next
And if it just ends up being a layer on top of NTFS that lets people sort their music and vacation pictures, well, I'm not too worried about it yet. And if it turns out that it's a security risk, then you *turn it off*, or just use FAT32.
pb Reply or e-mail; don't vaguely moderate.
In the HFS filesystem, a file has two forks, a data fork, that corresponds to the file data in Windows or Unix file-system, and a resource fork, that contained structured data, basically bits of data that had an attached id, name and type.
Resources were used to store all kinds of stuff. This was very convenient, as you could for instance store the window shape of a text document in the resource fork without affecting the content of the file (data fork). This was also used to store custom icons, text styling without actually affecting the data. You could even use it to embed fonts into word documents.
The trick is, the OS used resources extensively, an application typically had an empty data fork and lots of resources (icons, pictures, sounds, windows, dialogs), including 68K code segments.
One Macintosh virus, WDEF, used this mechanism to propagate. What the virus did, was add resource of type WDEF to the database file describing all the icons on the desktop. WDEF resources were window definition code. So when the Finder (file explorer) opened this database file for a given volume, the resource would get loaded and overloaded the default window drawing code, thus enabling the virus to execute and spread.
"Am I being paranoid ?"
:)
Talking about a filesystem that you never used, as a user/developper/hacker, and criticizing it's features 2 years before it is out, for me is not a solid argument.
So IMHO you are paranoid...well, for the moment
____
nico
Nico-Live
It is feasible that even home users will be encouraged by the variable structure to adapt file management functions such as searches or the file explorer to their own specifications, for example by standardizing search paths.
In short, everyone who will benefit from a unified way to organize their data regardless of type. Heh.
Your question doesn't make any sense, nor is there any information available to base an answer on, because:
Complete implementation of the system, on the other hand, is likely to take one or several years to come to fruition.
Solution:
You will not have a choice.
Conformity is the jailer of freedom and enemy of growth. -JFK
What do we do now to protect our computer from spyware? Regularly update and run adaware. What will we do with WinFS? Regularly update and run adaware longhorn. No problem. I haven't had spy/adware in freaking years; of course, it helps that I've switched to a superior browser...
Condemnant quod non intellegunt.
Who will use it? Probably the millions of people who buy it or a those who buy a new computer with it already installed. Let's put our thinking cap on here people.
Support the First Amendment. Read at -1
The IBM iSeries has been on the market for some time, as has its predecessor, the AS/400, and its predecessor, the System/38.
I hope the USPTO considers expired patents in their prior art searches on the WinFS IP submissions.
The living have better things to do than to continue hating the dead.
The scary thing about WinFS will be the patent protection.
We've seen too many patents granted for which there certainly appears to be prior art. Someone else brought up the moniker, "Object Oriented Filesystems," and danced around the concept of single-level-store. That stuff goes back to the old IBM System/38, whose patents have probably expired. (It actually goes back further, but S/38 made it out the door.)
As others have said, metadata has been on the Apple resource fork since 1984, and OS/2's HPFS had Extended Attributes (OS/2 even had Extended Attributes kludged onto FAT.) prior to 1990. Then you (and others) bring up Reiser4.
I wonder what the patent filings on WinFS will look like. Reiser4 is obviously "published", but it would be good if there were some way to make the USPTO aware.
The living have better things to do than to continue hating the dead.
is it'll take forever for the kernel to have write drivers for it :p
Yes this is Microsoft, and have we forgotten about the little WinXP BS that happend? I will tell you that I'm not half as tech savy as any one else on this site, but even I've been shown the flaws in XP. If Microsoft even cared about a good prodoct any more, there wouldn't be any flaws in the final product in the first place.
---For philosophy and fun,---
THERE IS NO POWER GREATER THAN X
How timely, as yesterday MSDN posted a thick article on WinFS.
While the article date is December 2003, the date on the front page of msdn.microsoft.com is January 28, 2004.
"For traditional file-based data, such as text documents, audio tracks, and video clips, WinFS is the new Windows file system. Typically, you will store the main data of a file, the file stream, as a file on an NTFS volume. However, whenever you call an API that changes or adds items with NTFS file stream parts, WinFS extracts the metadata from the stream and adds the metadata to the WinFS store. This metadata describes information about the stream, such as its path, plus any information that WinFS can extract from the stream. Depending on file contents, this metadata can be the author (of a document), the genre (of an audio file), keywords (from a PDF file), and more. WinFS synchronizes the NTFS-resident file stream and the WinFS-resident metadata. New Longhorn applications can also choose to store their file streams directly in WinFS. File streams can be accessed using the existing Win32 file system API or the new WinFS API."
So, it seems that the files themselves are still stored in a filesytem, it's only the metadata that is stored in "WinFS".
The data itself does *not* live as a blob in a giant database.
Nice, call people idiots based on your (most likely) incorrect interpretation of something you haven't seen, or (it seems) researched.
Even from the quick description you gave, it sounds pretty safe to me. Not modifying the underlying file system is IMHO a good idea and mitigates all the paranoia you are having.
.jpg should run a certain image viewer. This is not done in the file system it is instead done by another program that reads normal files and determines this information from the normal files. Now we all know that those file associations can be mucked with (ie hijacked to run another program) but in fact any such messing with it can be determined by a program reading the setup files, and easily avoided by a program using *less* code to run a program.
.jpg extension would be a real and unfixable disaster. But in fact they are avoiding this if your description is at all accurate. This is a *good* thing.
Windows already has the file associations like knowing that clicking a
Compare with a worst-case scenario where the system only had a "run this file" command and you could not determine what it did because it was encrypted into the file system (sort of what you really fear WinFS would do). Then somebody hijacking the
I do worry about some peoples intentions for meta data. In my opinion meta data should be used *only* as a "cache" of data that could be determined from the file itself. An obvious example is an image preview. But the file type and program should also be figured out using a program like the Unix "file" command and the result cached in the metadata. You could even make schemes by which the author, owner, permissions, date and time, and even filename are considered cached metadata and determined from the file contents. We should not have to rely on the correct transmission of anything other than the "data" bytes and the file length in order for a program using a file to do the correct and predictable thing.
I am worried that in fact most recent ideas in filesystems are going exactly the wrong way, and in fact Microsoft may be doing this right for a change.
I don't see how this is much different from the registry, through which one can do a lot of the things you mention. And you don't even have to be buzzword compliant to use it!
[quote]It is also very flexible and extendable, which, for Microsoft, can mean 'slow' and 'exploitable'.[quote]
Prepare for Karma burn in 5..4..3..2..
I guess nothing in the Linux world considered "flexible" and "extendable" can be considered "slow" or "exploitable"?
*cough* *cough* X-Windows *cough*.
Seriously, I don't like Microsoft any more than the next guy, but this kind of comment right on the front page shows why Slashdot has to be taken with a huge grain of salt to begin with. Let's all try to be a little bit more to the point and less editorial when posting news, mmmkay?
-JackAsh
Let's see:
- It isn't slated for release until late 2005, early 2006.
- This suggests to me that what we're looking at in the current Longhorn builds is, in effect, early beta software.
- Microsoft have a long track record of changing their software quite dramatically through the creation process -- a la NT5.
- I don't particularly plan on upgrading to a Windows OS on my home systems if I can help it anyway. It'd have to have a hell of a lot of "must have" features before I'd consider doing so, since that would require an architectural switch for a lot of my equipment (Mac and Solaris to PC).
- At work, the IT department can bother with issues involving security/spyware and so on. Of course, the IT department's past history suggests we'll be upgrading to Windows XP about the time that Longhorn is finally released, and that any worms/virii won't be of much concern to them...
No, I don't think Microsoft will produce a particularly stable or reliable OS, or at least, not one which is much more stable or reliable than what they've released to date. Doubtless there'll be improvements, and doubtless there'll be new features to exploit. There always is, and I dare say always will be.Bravo, sir! I love flamebaits.
ReiserFS is where I am hoping to see these kinds of revolutionary features emerge. Version 4 is about to be released and it already has a number of features that are hard to find in general purpose filesystems. If you really want to expand your thinking about data storage and access, read Hans Reiser's vision for the future of ReiserFS. Your ideas would definitely be implementable in his model.
The logical move for them would have been to go with the original story - create a whole NEW filesystem - preferrably taking in as many enhancements from ext3 and Reiser - keeping as much of NTFS as possible - and adding some incredible new "WinFS" features. This would have been totally acceptable in my book. Indexing services and filesystem add-ons, no way. I learned my lesson with DoubleSpace/DriveSpace years ago.
...if they upgraded ext2 so that file metadata was stored in something standard like XML. Maybe consolidated into an SQL database for easily accessible and centralized storage. Think of how neat that would be!
Depending on file contents, this metadata can be the author (of a document), the genre (of an audio file), keywords (from a PDF file), and more.
This sounds exactly like the Desktop Database in Mac OS8/9, with a few extra fields.
Now, how is this new exactly?
You're just jealous because the voices only talk to me.
They are becoming the only real way to keep your data safe from the host operating system since there is not all that much any os can do about an external box (other than complain about not being to offer extra "features" you probably don't want).
Tom's a long winded person who tries to impress by using big words unnecessarily.
I'll use it. In fact I'm looking forward to it. I think it will be easy to program for, and make it easy to find and sort things into classes. I take many digital photos and I will definately appreciate being able to add meta data to the file that gives background on where it was taken, when, and the circumstances. Much like a photo-album where you scribble remarks under the photos.
I was led by other Slashdottoers to believe that Mac's can't have a virus