|
Focus on Microsoft
Workstation Shutdown / Logoff Policy Aug 16 2006 02:23PM kfoutts orenickcompanies com (4 replies) RE: Workstation Shutdown / Logoff Policy Aug 16 2006 04:42PM Thaddeus McNamara (tk coast-radio com) (1 replies) RE: Workstation Shutdown / Logoff Policy :VSMail mx1 Aug 16 2006 07:18PM Jamie Fullerton (Jamie Fullerton ndbt com) (2 replies) Re: Workstation Shutdown / Logoff Policy :VSMail mx1 Aug 17 2006 03:55PM Thor (Hammer of God) (thor hammerofgod com) (5 replies) Re: Workstation Shutdown / Logoff Policy :VSMail mx1 Aug 18 2006 05:24AM Greg Mulholland (gmulholland aanet com au) RE: Workstation Shutdown / Logoff Policy :VSMail mx1 Aug 18 2006 03:26AM BARRETT,WILL (BARRETW airproducts com) RE: Workstation Shutdown / Logoff Policy :VSMail mx1 Aug 17 2006 07:46PM Maloney, Michael (MMaloney middlesexcc edu) RE: Workstation Shutdown / Logoff Policy :VSMail mx1 Aug 17 2006 06:19PM Mike McMahon (Mike McMahon us wdsglobal com) RE: Workstation Shutdown / Logoff Policy Aug 17 2006 06:16PM William J Bova (wbova austin utexas edu) RE: Workstation Shutdown / Logoff Policy :VSMail mx1 Aug 17 2006 02:55PM Thompson, Scott (scott thompson orion-sys com) (1 replies) RE: Workstation Shutdown / Logoff Policy :VSMail mx1 Aug 17 2006 07:13PM Kirk Foutts (kfoutts orenickcompanies com) (3 replies) Re: Workstation Shutdown / Logoff Policy :VSMail mx1 Aug 22 2006 05:17PM Allan Seyberth (nullconnect gmail com) RE: Workstation Shutdown / Logoff Policy :VSMail mx1 Aug 22 2006 01:12PM Peter Eden (peter eden utoronto ca) Re: Workstation Shutdown / Logoff Policy :VSMail mx1 Aug 22 2006 05:43AM Susan Bradley, CPA aka Ebitz - SBS Rocks [MVP] (sbradcpa pacbell net) (1 replies) Whole disk encryption Aug 24 2006 04:47PM Sarah (sfelske bgsu edu) (5 replies) RE: Whole disk encryption Aug 24 2006 06:06PM Erik Anderson (eanders pobox com) (3 replies) RE: Whole disk encryption Aug 25 2006 03:24PM Brad Judy (Brad Judy colorado edu) (1 replies) Re: Whole disk encryption Aug 28 2006 02:30PM chuck (chuck chuckherrin com) (2 replies) Re: Whole disk encryption Aug 28 2006 07:54PM Jason Thompson (securitux gmail com) (1 replies) Re: Workstation Shutdown / Logoff Policy Aug 16 2006 03:04PM Sebastian {En3pY} Zdrojewski (en3py itvc net) RE: Workstation Shutdown / Logoff Policy Aug 16 2006 02:51PM Finehout, David (Contractor) (dfinehout nrlssc navy mil) (1 replies) RE: Workstation Shutdown / Logoff Policy Aug 16 2006 09:32PM McLennan, James GS12 USA USAIMA (james mclennan us army mil) |
|
|
Privacy Statement |
hi group,
as a security auditor and consultant I normally suggest
(1) to implement as many security as available, but no more security
than really needed.
The need should follow an individual risk classification to all IT
assets / data of a company.
It doesn't make sense to encrypt a folder/partition with none critical
data on it.
But it really makes sense to encrypt folders/partitions of sensitive
data (e.g. internal strategics/business plans, internal financial
statements, company secrets, ...).
Everytime you encrypt / decrypt a file, folder or partition you will have
- file access to the harddisk,
- processor load,
- memory access
- ...
This influences the performance of each system. On some systems more
significant than on others.
So on company wide file servers, an encrypted partition should exist,
there people have to store their classified files aligned to their given
rights and according the company security policy / risk classification.
On mobile devices people should have an encrypted directory or
partition, which is access-protected by password or comparable methods
and can be mounted (dismounted), when needed (not needed) and there they
have to store their classified files according the company security
policy / risk classification.
This strategy follows the given suggestion (1).
Ok. When influenced by real great paranoia, a company also can create a
policy, that all HDD need to be encryted. But this is part of the same
category, like prohibiting the connection of any hardware to any
network. ;-)
Cheers,
Dietrich
>Sarah wrote:
>
>What is the consensus of the group on the use of whole disk encryption
in an enterprise environment?
>-----------------------------------------------------------------------
----
>-----------------------------------------------------------------------
----
------------------------------------------------------------------------
---
------------------------------------------------------------------------
---
[ reply ]