Educause Security Discussion mailing list archives

Re: Password Cracking & Consequences


From: Theresa M Rowe <rowe () OAKLAND EDU>
Date: Fri, 27 Aug 2004 12:13:11 -0400

It isn't at all about what I think.  It is about what my
culture and community thinks.  We don't operate as "IT big
brother" over here, checking on them, policing them, etc.
We partner with them.  So my questions are about how this was
marketed to the community.

---- Original message ----
Date: Fri, 27 Aug 2004 10:37:46 -0400
From: Gary Flynn <flynngn () JMU EDU>
Subject: Re: [SECURITY] Password Cracking & Consequences
To: SECURITY () LISTSERV EDUCAUSE EDU

Theresa M Rowe wrote:

I just cannot imagine even trying that in our culture.  I
am
surprise that this is being done at some organizations.
Can
you share more specifics about the process:
What campus involvement did you get prior to making the
decision - this couldn't have been just an IT decision.
How did you market it?
How did your faculty react?
Theresa Rowe
Assistant Vice President
University Technology Services
www.oakland.edu/uts - the latest news from University
Technology Services

What do you think is being lost here if a system
administrator tests password strength to protect
the system and users? If they're the system
administrator and have root access, they're not
gaining anything they don't already have.

--
Gary Flynn
Security Engineer
James Madison University

**********
Participation and subscription information for this EDUCAUSE
Discussion Group discussion list can be found at
http://www.educause.edu/cg/.
Theresa Rowe
Assistant Vice President
University Technology Services
www.oakland.edu/uts - the latest news from University Technology Services

**********
Participation and subscription information for this EDUCAUSE Discussion Group discussion list can be found at 
http://www.educause.edu/cg/.

Current thread: