home *** CD-ROM | disk | FTP | other *** search
- Newsgroups: comp.sys.novell
- Path: sparky!uunet!nevada.edu!jimi!maniac
- From: maniac@unlv.edu (Eric J. Schwertfeger)
- Subject: Re: Hack.exe
- Message-ID: <1992Nov21.222518.3197@unlv.edu>
- Sender: news@unlv.edu (News User)
- Organization: Too many
- References: <jdsmith.50.722206331@novell.com> <7212@news.duke.edu> <1992Nov21.110530.22022@novell.com>
- Date: Sat, 21 Nov 92 22:25:18 GMT
- Lines: 34
-
- In article <1992Nov21.110530.22022@novell.com> donp@novell.com (don provan) writes:
- >In article <7212@news.duke.edu> low00001@bullnext.mc.duke.edu (Richard Low) writes:
- >>Ah, but as Eric J. Schwertfeger pointed out in his follow up posting,
- >>physicall access to a server is the determining factor. Even if the console
- >Isn't this just a characteristic of your hardware purchase? I mean,
- >all you're saying is that you can get control of your machine before
- >NetWare does. It's hard to fault NetWare for not doing something
- >before it gets control.
- >
- >I don't know if any PC manufactures have done this, but it wouldn't be
- >too hard to prevent this type of attack. Most PCs nowadays have a
- >CMOS configuration switch to force booting off the hard disk. Just
- >require a password to change CMOS, and then without the password the
- >server should be unstoppable, shouldn't it?
- >
- >Once you get this far, the direct break-ins would tend to be physical.
- >There's no end of physical escalation, so i tend not to worry about it
- >myself. Even with solid software protection, "all" the enemy has to
-
- I'm sorry I didn't actually state my point, that being that there's
- nothing Novell can do to prevent physical access, so it's a matter
- of "when does your information become valuable enough to warrant
- the effort of a physical breakin, and should you make an effort to
- make that more difficult?" For most purposes, Novell is quite secure
- all by itself, as long as the office you work in would notice a
- person sitting down and playing on one of the workstations. Even
- then, proper security will stop most of the hack attacks.
-
- > don provan
- > donp@novell.com
-
-
- --
- Eric J. Schwertfeger, maniac@cs.unlv.edu
-