Portable applications: Network panacea or pest?

Opinion
Mar 5, 20093 mins

* Application portability can solve a lot of common problems in the corporate network, but can also create another level of security concerns

A class of application portability is emerging that aims to solve a lot of common problems in the corporate network and, not surprisingly, will create yet another level of concern about corporate network security. This capability is enabled by software that is installed on a portable storage device, such as a USB flash drive or an SD memory card, which acts like a “regular” application when running on any computer.

We started exploring this capability because of a true need. With our travel schedules and general need for portability, it’s a true pain to move critical information – such as e-mail – from the “production computer” to a “travel computer.” In Steve’s case, he was constantly moving information from his way-too-heavy not-very-portable notebook to his two-pound “netbook.” The most important application is e-mail, and, due to the size of the files, the moving process was taking about 45 minutes.

So, with inexpensive USB drives and SD cards with 8GB and even 16GB capacity, Steve decided to give this a try. Seemed so simple. Put both the e-mail program AND the e-mail data on a flash drive, and then just plug the flash drive into the appropriate computer. In spite of a couple of glitches (mostly caused by a combination of human error and pickiness about the “registry”), the overall idea seems to be a qualified success.

So we see some really cool applications for this. For instance, when your “corporate notebook” is needed for a repair or upgrade and you’re essentially out of service for the day, you simply plug the flash drive into ANY computer and it works. And if you have a desktop computer at work but you need portability for “home” work, again, very cool. And it’s a great solution for having personal e-mail available at work without having it stored on the corporate computer.

But here’s the rub… This application, when run from a computer that’s on the corporate net, becomes a part of the corporate net. So it also can carry viruses and trojans. Also, it further compromises the corporate security in terms of policies for keeping company information on the corporate computers.

Let’s face it. There’s no way that these devices won’t make it into your network. So the best approach is “forewarned is forearmed.” Policies can be developed prohibiting these devices, but that’s difficult to enforce. And probably the most troublesome aspect of all is that a device as small as a flash drive (or smaller) can easily be lost – along with the proprietary information that it probably contains.

At this point, there are two “portable apps” programs that we’ve looked at. Steve used “U3” because it was preinstalled on the USB drive that he ended up with. PortableApps.Com might be even better, especially since it supports SD cards, which should have better performance.

Let us know your thoughts about these devices and your corporate policies to control them, and we’ll pass the hints along in a future newsletter.

Jim has a broad background in the IT industry. This includes serving as a software engineer, an engineering manager for high-speed data services for a major network service provider, a product manager for network hardware, a network manager at two Fortune 500 companies, and the principal of a consulting organization. In addition, Jim has created software tools for designing customer networks for a major network service provider and directed and performed market research at a major industry analyst firm. Jim’s current interests include both cloud networking and application and service delivery. Jim has a Ph.D. in Mathematics from Boston University.

More from this author