I missed the story about brothers convicted of harvesting emails the first time. Well, I noticed a followup.
Back around 2001, the CIO received complaints about performance for the web server. So, I went log trolling to see what the web server was doing. A single IP dominated the HTTP requests. This one IP passed various last names into the email directory. Some quick research revealed Apache could block requests from that IP. That calmed things down enough for me to identify the owner of the IP. The CIO then bullied the ISP to provide contact information for the company involved.
Previous little adventures like this landed me a permanent job, so I jumped at similar challenges.
Well, a few years later, it happened again. This time my boss had made me develop a script for the dissemination of the anti-virus software package to home users. Basically, it used email authentication for verification if someone could get the download link. So, I applied the same technique to the email directory. Well, this upset some people who legitimately needed email addresses. So the human workers would provide email addresses to people with a legitimate need.
I’m glad since I’ve left, VSU no longer looks up email addresses for people. (I thought some of the requests questionable.) Also, my little email authentication script was before LDAP was available to the university. I think the new solution much better.
One the more vocal complainers about my having stopped non-VSU access to the email directory was my current employer. We apparently list email addresses for employees freely. Which makes me wonder how much spam we get is due to the brothers described at the beginning of this story? Or other email harvesters? Just hitting the send button potentially exposes the email address.
No worries. I’m sure Glenn is protecting me.

What does a CIO do?
August 3, 2008 in University by Ezra S F | No comments
I guess it depends on who you ask.
Self-reporting is a notoriously bad means of measuring behavior. So I take these sorts of things with a grain of salt.
I have read many times the view CIOs need to educate higher education administrators about technology to help shape the vision of where higher education is headed. When Joe Newton at Valdosta State took over as CIO, he found Ronald Zaccari, expected more than just “putting PCs on desks”. Ron also expected seamless services, a data warehouse, IT to work with every facet of the university, and even to help the cabinet shape its direction by providing how technology can help. The previous president didn’t even check his own email. So to have one who better understood technology meant having to step up to a higher standard.
Another aspect I found interesting was about degrees. Wayne suggested a positive direction was CIOs having degrees in technology management. A commenter preferred CIOs having a Ph.D. in an academic discipline and secondarily “technology qualifications” so they would understand teaching and learning. I find this hilarious because all too often I hear complaints Ph.D. programs teach people how to do research and present… not teach.
Also, the comments make a distinction between presidents and provosts versus deans and department heads. The latter are the “academic administrators”.
All that said, I just want a CIO to figure out what management wants done, prevent them from having too high expectations, and provide the resources for me to do it.
Related posts