|
Colapse all |
Post message
FOSS Security 2006-08-03 Kosala Atapattu (kosalaa carcumb com) (2 replies) Hi All, Would there be any security concerns for Free / Open Source Software? FOSS with Security is a double edged sword where we can discuss in two ways. 1. Since the source is open any one can have look and fix bugs faster, and one can make sure there are no backdoors in the applications, where [ more ] [ reply ] RE: USB pen drive policy 2006-08-02 Artur Zebrowski (artzeb wp pl) Hi, And what about USB rights management in Novell environment on Windows XP platforms? Any ideas? Register key changing is not acceptable. -----Original Message----- From: Richard Bennison [mailto:richard (at) dayzerosecurity (dot) com [email concealed]] Sent: Wednesday, August 02, 2006 1:26 PM To: Artur Zebrowski Subject: R [ more ] [ reply ] RE: USB pen drive policy 2006-08-02 arindam mandal wipro com (1 replies) Mainly Office 2003 Suite, Winzip and Acrobat on Windows XP. We usually procure volume licences. I have no idea about license cost. You can contact Microsoft & other vendors for that. Arindam -----Original Message----- From: Artur Zebrowski [mailto:artzeb (at) wp (dot) pl [email concealed]] Sent: Wednesday, August 02, 2006 [ more ] [ reply ] Re: ISO 27001 question 2006-08-01 harshal mehta niiconsulting com Hi If you go through the standard there is a control 10.3.1 which states Capacity management. It emphasies on capacity planning. Capacity planning for future systems or upgrades and ensuring that enough budget is allocated for the same to give maximum returns. It could be done annunally or [ more ] [ reply ] RE: ISO 27001 question 2006-08-01 Mark Hofman (mhofman shearwater com au) (1 replies) Capacity planning is basically keeping track of your resources. Are servers running out of space, cpu, etc? is there enough storage? There are lots and lots more factors that can be taken into account. What they will be looking for is a process whereby you keep track of the capacity of your sys [ more ] [ reply ] ISO 27001 question 2006-07-31 Tornado (windows_guy bluebottle com) (1 replies) Hi group, I hope you can help me with this. Our company is in the process of implementing ISO 27001 certification. During the Pre-certification audit, Auditor referred to some sort Capacity Management documentation. Does any one can lighten up upong this concept ? Any information on the internet [ more ] [ reply ] RE: phishing threat 2006-07-27 Dhayalan, Karthikeyan \(Cognizant\) (Karthikeyan Dhayalan cognizant com) (1 replies) There are 3 factors of authentication. 1. Some thing you know (eg. Passwords) 2. Some thing you have (eg. Tokens) 3. Something you are (eg. Biometric) Use any two of the above methods or factors for two-factor authentication Thanks and Regards, Karthikeyan Dhayalan Global Informat [ more ] [ reply ] RE: phishing threat 2006-07-27 Dhayalan, Karthikeyan \(Cognizant\) (Karthikeyan Dhayalan cognizant com) Two factor authentications is not a definite preventive control for phishing attack. You cannot achieve success by just educating users to use two factor authentications to defeat Phishing attacks. It's important to educate users on safe browsing etiquette. Thanks and Regards, Karthikeyan Dhayal [ more ] [ reply ] Re: phishing threat 2006-07-27 shakti velu (shaktivelu88 gmail com) (1 replies) We spent lot of time educating users - please use two-factor, it will solve your phishing problems. Now we tell them Sorry, Two factor is of little use ! what next ? three factor , biometric ! On 7/27/06, mohamed.siddiqu (at) wipro (dot) com [email concealed] <mohamed.siddiqu (at) wipro (dot) com [email concealed]> wrote: Shakti Velu, > > > > End [ more ] [ reply ] Re: phishing threat 2006-07-27 Tim (pand0ra usa gmail com) (1 replies) Re: phishing threat 2006-07-27 shakti velu (shaktivelu88 gmail com) (2 replies) Re: phishing threat 2006-07-27 Domenico Rotondi (D Rotondi Computer Org) (1 replies) Re: phishing threat 2006-07-27 Peter Boosten (peter boosten valid nl) (2 replies) |
|
Privacy Statement |
People tends to lose focus on that specific debate. Organization must ask themselve if they are capable of self supporting themselve or to get an agreement with an adequate commercial organisation for their open source solution. If not, they have greater issues than security.
I
[ more ] [ reply ]