home *** CD-ROM | disk | FTP | other *** search
- Path: sparky!uunet!news.claremont.edu!nntp-server.caltech.edu!SOL1.GPS.CALTECH.EDU!CARL
- From: carl@SOL1.GPS.CALTECH.EDU (Carl J Lydick)
- Newsgroups: comp.os.vms
- Subject: Re: HELP!!! Security problem for gurus. [Directories]
- Date: 10 Jan 1993 10:16:26 GMT
- Organization: HST Wide Field/Planetary Camera
- Lines: 32
- Distribution: world
- Message-ID: <1iot1qINN372@gap.caltech.edu>
- References: <1imh53INNg7a@gap.caltech.edu>,<61050112@acf3.NYU.EDU>
- Reply-To: carl@SOL1.GPS.CALTECH.EDU
- NNTP-Posting-Host: sol1.gps.caltech.edu
-
- In article <61050112@acf3.NYU.EDU>, tihor@acf3.NYU.EDU (Stephen Tihor) writes:
- >Just a note for the purists SECURITY is often misapplied as meaning only
- >PRIVACY but in its own technical domain Security means a triad of basic interests and one additional concern at least:
- >
- >Security = Privacy + Integrity + Availablility
- > + Accountability
-
- I've heard bad things about the New York educational system in the past, but
- didn't think it was this bad. (C'mon, "triad," then a list of four items?) :-)
-
- >Now different real world enviornments may tip the balance among these items
- >so we as professional must make tradeoffs among them and the usual cost and
- >performance parameters [although some argue that performance is part of
- >availability.]
- >
- >Of course most people are most used to the Privacy aspect of Security since its
- >the one that gets the highest weight with most National Security information and
- >thrillers.
-
- Hmmm. I'd've thought that the integrity aspect would be the better known (at
- least among computer users and managers); after all, once integrity is
- breached, the other three are vulnerable (admittedly, some privacy breaches can
- have the same effect [e.g., if someone violates privacy by snagging a
- privileged username/password combination]).
- --------------------------------------------------------------------------------
- Carl J Lydick | INTERnet: CARL@SOL1.GPS.CALTECH.EDU | NSI/HEPnet: SOL1::CARL
-
- Disclaimer: Hey, I understand VAXen and VMS. That's what I get paid for. My
- understanding of astronomy is purely at the amateur level (or below). So
- unless what I'm saying is directly related to VAX/VMS, don't hold me or my
- organization responsible for it. If it IS related to VAX/VMS, you can try to
- hold me responsible for it, but my organization had nothing to do with it.
-