Great Circle Associates Firewalls
(July 1996)
 

Indexed By Date: [Previous] [Next] Indexed By Thread: [Previous] [Next]

Subject: Re: Request for Advice
From: "Bryan D. Boyle" <bdboyle @ erenj . com>
Organization: Exxon Research and Engineering Co.
Date: Thu, 25 Jul 1996 07:55:22 -0400
To: Bob Konigsberg <bobk @ manzanita . dev . 3com . com>
Cc: firewalls @ greatcircle . com
References: <9607241638 . AA03325 @ manzanita . DEV . 3Com . COM . noname>

Bob Konigsberg wrote:

***DELETIA*** of real good stuff..

> 
> Remote Access servers
> o Don't identify your organization in the welcome string
>   Use welcome phrases like "Welcome to Remote Access server #1"
> o Log all login successes, failures, login times, durations, etc.
>   The amount of information you can glean from these is amazing.

Just as an aside, there have been many cases of attempted prosecution
of crackers and vandals that have been dismissed because the companies
put up banners that start with "Welcome to ....", which the courts
in more than one state have held constitutes an offer of 'welcoming' 
entry by anyone that wanders by.

'Tis better to be obnoxiously blunt, which gives you (and the local
constabulary...) some room to prosecute the netscum than to be polite
and have a perfectly good chance of nailing some miscreant get dismissed
because some judge decides that your warning banner that starts with 
the word "welcome" is actually an invitation to any user.

As always, consult your local lawyer for this.  Other countries, I have
no idea what your legalities are.  

-- 
Bryan D. Boyle        | EMAIL: bdboyle @
 erenj .
 com  908-730-3338    
#include <disclaimer> | http://www.access.digex.net/~bdboyle/index.html
"The myth that Bill Gates has appeared like a knight in shining armor to
lead all customers out of a mire of technological chaos neatly ignores 
the fact that it was he who, by peddling second-rate technology, led 
them into it in the first place, and continues to do so today."
--Douglas Adams


References:
Indexed By Date Previous: Re: Protecting our INTRANETS
From: Justin Mason <jmason @ iona . com>
Next: Solaris Doc
From: rusty . merrell @ smtpgate . crestar . com
Indexed By Thread Previous: Re: Request for Advice
From: bobk @ manzanita . DEV . 3Com . COM (Bob Konigsberg)
Next: Re: Request for Advice
From: "Terry L. Wright" <tlwright @ convergence . com>

Google
 
Search Internet Search www.greatcircle.com