Just follow the instructions … no wait, not that instruction to lock everyone out of everything
- Reference: 1668407467
- News link: https://www.theregister.co.uk/2022/11/14/who_me/
- Source link:
Our story starts with "Harry" who, back in that far-off time we call "the day," was an install engineer – a grunt, basically – for a scientific instrument company. The company used kit from Digital Equipment Corporation (DEC), the [1]minicomputer maestro eaten alive by Compaq . DEC made great kit but, as anyone with experience from the era might recall, computers of the era were not exactly plug-and-play.
Luckily for the grunts like Harry, the denizens of IT had prepared a series of helpful leaflets detailing the precise processes required to get things done.
[2]
On one occasion, Harry was tasked with installing a new computer to connect with a particular scientific instrument. Obviously this would mean the existing machine had to be backed up before it was switched off so that important work (and high scores) would not be lost.
[3]Run a demo on live data? Sure! What could possibly go wrong? Hang on. Are you sure that's not working?
[4]The boss worked in a fishbowl, so office tricks were a treat
[5]Data loss prevention emergency tactic: keep your finger on the power button for the foreseeable future
[6]Loathsome eighties ladder-climber levelled by a custom DOS prompt
As was the standard practice, Harry went to the IT department and requested the relevant guide. "Just type in exactly what is written in the guide on your local machine," he was told. So of course, he did just that.
All went well, for a while. He got to page three of the procedure, in which he logged in as super user, logged everyone else out so they couldn't make changes, and began the backup process …
[7]
[8]
At which point he noticed a squad of distraught-looking IT personnel interrogating one user after another, coming ever closer to Harry's workstation.
Seeing they had found the source of their woes, they told Harry to take his hands off the keyboard and back away, touching absolutely nothing.
[9]
Since Harry did not feel lucky, he complied with the request.
It transpired that the particular guide he was using for the "back up and switch off" procedure had been written by the same IT guru who had developed the "daily backup of the company servers" procedure.
The processes were somewhat similar so there had been extensive copy-pasting between the two.
[10]
Including the username and password for the company's main server – to which grunts like Harry were not meant to have access.
In trying to lock users out of the individual machine he was replacing, Harry had locked everyone out of everything. Simply by following instructions.
In the end no permanent harm was done, and the company got an important lesson in checking its documentation.
How about you? Do you have a story of doing the right thing, only to find that the right thing turned out to be the wrong thing? Well, we want to hear about it. Go ahead, [11]make our day . ®
Get our [12]Tech Resources
[1] https://www.theregister.com/2001/06/25/farewell_then_alpha_hello_compaq/
[2] https://pubads.g.doubleclick.net/gampad/jump?co=1&iu=/6978/reg_onprem/front&sz=300x50%7C300x100%7C300x250%7C300x251%7C300x252%7C300x600%7C300x601&tile=2&c=2Y3Ifzl80DYqWBF3jmcDJ0wAAAQQ&t=ct%3Dns%26unitnum%3D2%26raptor%3Dcondor%26pos%3Dtop%26test%3D0
[3] https://www.theregister.com/2022/11/07/who_me/
[4] https://www.theregister.com/2022/10/31/who_me/
[5] https://www.theregister.com/2022/10/24/saved_by_the_analog/
[6] https://www.theregister.com/2022/10/17/who_me/
[7] https://pubads.g.doubleclick.net/gampad/jump?co=1&iu=/6978/reg_onprem/front&sz=300x50%7C300x100%7C300x250%7C300x251%7C300x252%7C300x600%7C300x601&tile=4&c=44Y3Ifzl80DYqWBF3jmcDJ0wAAAQQ&t=ct%3Dns%26unitnum%3D4%26raptor%3Dfalcon%26pos%3Dmid%26test%3D0
[8] https://pubads.g.doubleclick.net/gampad/jump?co=1&iu=/6978/reg_onprem/front&sz=300x50%7C300x100%7C300x250%7C300x251%7C300x252%7C300x600%7C300x601&tile=3&c=33Y3Ifzl80DYqWBF3jmcDJ0wAAAQQ&t=ct%3Dns%26unitnum%3D3%26raptor%3Deagle%26pos%3Dmid%26test%3D0
[9] https://pubads.g.doubleclick.net/gampad/jump?co=1&iu=/6978/reg_onprem/front&sz=300x50%7C300x100%7C300x250%7C300x251%7C300x252%7C300x600%7C300x601&tile=4&c=44Y3Ifzl80DYqWBF3jmcDJ0wAAAQQ&t=ct%3Dns%26unitnum%3D4%26raptor%3Dfalcon%26pos%3Dmid%26test%3D0
[10] https://pubads.g.doubleclick.net/gampad/jump?co=1&iu=/6978/reg_onprem/front&sz=300x50%7C300x100%7C300x250%7C300x251%7C300x252%7C300x600%7C300x601&tile=3&c=33Y3Ifzl80DYqWBF3jmcDJ0wAAAQQ&t=ct%3Dns%26unitnum%3D3%26raptor%3Deagle%26pos%3Dmid%26test%3D0
[11] mailto:whome@theregister.com
[12] https://whitepapers.theregister.com/
Never ever trust a manual you have not written yourself, got lost, found again, buried in soft peat for three months and digested by the Beast of Traal.
Would that the smaller cousin of the Bugblatter beast or its larger cousin?
I can't check the guide its currently updating......
It is the Ravenous one.
You missed the "recycled as firelighters" stage.
"Who? Me?" is one of my favourite columns on El Reg, but the stories seem to have got a lot less dramatic recently. Time to take a break?
I have to agree. +1. Perhaps all the good stories have been told? They are relying on reader contributions for the stories*. However, this is really just part of the vanillaization (the opposite of vandalization?) of El Reg, now known as Reg.com.
*I know I don't see some user handles in the comments any longer. Have they gone AC? Doubtful, they probably aren't visiting Reg.com and this brain drain is affecting the quality of columns like Who? Me? and On Call.
I think the problem is that they are trying to fill two columns... "On Call" and "Who? Me?"... and it's getting a bit like terrestrial TV competing with Netflix, Prime, NowTV, Disney+, Discovery+... it's diluting the magic
Well, yes, but no... On Call is saving the day, Who? Me? is the other side of the coin.
Poor flake
If you want entertainment then this is the wrong place. The Register is about enlightenment . Who Me and On Call are lighthearted and not meant to feature wide-screen, technicolor horror for the benefit of hedonistic comentards.
Re: Poor flake
No, El Reg was always about both. Or haven't you ever read BOFH, SFTW or Stob?
"the stories seem to have got a lot less dramatic recently."
Wait until you hear about the time I left a USB cable on my desk...
True to form
> the company got an important lesson in checking its documentation.
One that, if they are like every other company I have experienced, they continued to ignore.
After all, if you check (or test) something, that might turn up errors. Errors cause delays and they aren't in the release timetable.
As someone who ends up writing a lot of documentation you never put passwords in the documents, refer to a (hopefully) controlled system. There are two reasons for this, the first is when someone updates the passwords the documentation doesn’t need to be rewritten, the second is if you shouldn’t use it then you shouldn’t have access to the password.
The other problem is someone changing the process from what the document says and not updating the document, so the process is as good as useless.
As someone who has spent a large amount of time on call for various jobs I know that good documentation is invaluable especially when having to fix something at 3am when you have just been woken up….
...at 3am when you have just been woken up.
At that time you need simple words and large letters. Like written for a 6-year old during the day.
Topping it off with the text "DON'T PANIC" in soothing letters.
At 3am you ask the person who called you to put tje problem in writing which gives enough time for the laptop to boot up and the vpn to connect.
And your brain to start before having to do anything else
At 3am my brain's so low on caffeine that it entered a vegetative state. So, for it to start it needs strong tea in sizable quantity, which takes time to prepare - that's before I'd even be able to locate the laptop let alone its VPN connection. And that's why I better don't do on call.
When recently I was asked to submit some management and backup/restore documentation for a software we developed, when I submitted passwords in a separate KeePass file I was told that wasn't nice....
I remember an old colleague telling me a story (so it may be apocryphal) of a company who had a written procedure for a delicate task. It was the kind of task that only got done when things were going VERY pear shaped, and it had been about 3 years since the last time t had been needed.
My old colleague, then just a junior PFY, dutifully went and obtained the procedure from the guide, and started to follow the steps precisely, as he had been instructed to do. About 2/3 of the way through he went to visit his boss and asked who Dave ********* was? His boss looked at him funnily, and told him to stop being a troublemaker and get back to work. My colleague returned to his desk collected the guide, returned to his boss, and told him he was stuck on Step 24.
The Boss grumbled, scanned down the page, and upon reaching Step 24, proceeded to turn white as a sheet, and mouth something along the lines of "Oh Sh%t!". The Instruction read something along the lines of "For the Password to System X, please contact Dave *********."
Apparently, this Dave had left the company about 18 months before, and it had not been a happy breakup. So the chances of getting the password were Zero.
I dont remember, what my old colleague said happened, apart from a lot of wailing and gnashing of teeth, but he and the company learnt a valuable lesson. Never entrust sensitive information to a single person. And better yet, dont entrust it to a person at all, but use a safe (or for the modern case), a password locker.
Documentation that does not match reality is worse than lying, it's outright FRAUD.
Select "bulk import", select "Choose file"....
THERE
IS
NO
'CHOOSE FILE'
OPTION!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!
One of these days I'm going to visit London, find the people responsible for our software and educate them with a two-by-four. There. Will. Be. Blood.
All went well, for a while. He got to page three of the procedure,
Hopefully the documentation wasn't in The Sun...
Well, it did almost go titsup at that point...
> Well, it did almost go titsup at that point...
Well played Sir -->
Hopefully the documentation wasn't in The Sun...
Well things did go TITSUP (Total Inability To Support User Passwords)
"Hopefully the documentation wasn't in The Sun..."
He might have made a right tit out of himself instead.
Better than being left behind
My first rule would be, don't give superuser access to anybody that doesn't understand the commands they are typing.
Yes, I know in theory, you can have a documented procedure and give the job to a simpleton who simply follows that procedure to the letter. I've worked in places where they do that.
I know people whose first response in any situation is to pull out the notes from a 2 day training course and follow the instructions they were given 5 years ago by a tutor who has probably never actually done it themselves. It's great for people who work in the kind of organisations where everybody needs to keep their head down and their arse covered at all times.
But things can go bad very quickly when something unexpected happens that doesn't match the documentation. IMHO It's better to employ somebody that actually understands the system inside and out and doesn't need to read a manual to know what to do.
a) The manual was out of date the day it was published
b) The manual was written by a tech writer and sales reps
'nuff said.