Educause Security Discussion mailing list archives

Re: Password Cracking & Consequences


From: Wayne Wilson <wwilson () UMICH EDU>
Date: Mon, 30 Aug 2004 14:08:48 -0400

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Jere Retzer wrote:
| You can lessen the impact of
| seemingly draconian policies if you can persuade that you are overcoming
| a serious risk, ie why we accepted the substantial security
| inconveniences imposed on air travel post 9/11.
|
This is a much overlooked point, 'you can persuade'.  As Bruce Schneier
has demonstrated pretty well, most of the inconveniences imposed on air
travel post 9/11 were of the 'security theater' variety.
Theater can be fairly effective in persuading people of things at fairly
low cost.  In this case, passengers on airplanes needed to feel safe to
protect the air travel business.  That was the proposition.

The academic community does not have such a simple proposition at hand,
but essentially, Jere's concept of balancing user safety, regulatory
compliance, user expectations and user productivity is a succint summary
of our proposition.

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.4 (GNU/Linux)
Comment: Using GnuPG with Thunderbird - http://enigmail.mozdev.org

iD8DBQFBM20wY+HG7UEwVGERAvtYAJ444Z1u35DKps0/Fe4wwq64PtnaKgCg1FNQ
xOnjAOoj9/n9K6vwwq4J3D8=
=DVSt
-----END PGP SIGNATURE-----

**********
Participation and subscription information for this EDUCAUSE Discussion Group discussion list can be found at 
http://www.educause.edu/cg/.

Current thread: