home *** CD-ROM | disk | FTP | other *** search
- Newsgroups: comp.os.vms
- Path: sparky!uunet!munnari.oz.au!bunyip.cc.uq.oz.au!citec!sgccmjw
- From: sgccmjw@citec.oz.au (Mark Wilton 23313)
- Subject: Re: BACKUP Question
- Organization: CITEC
- Date: Mon, 9 Nov 1992 22:15:17 GMT
- Message-ID: <1992Nov9.221517.2306@citec.oz.au>
- References: <9211062238.AA11641@hermann.barra.COM>
- Lines: 56
-
- louis@BARRA.COM (Louis Dunne) writes:
-
- >On Nov 3, 10:04pm, Mark Wilton 23313 wrote:
- > course your sysop loads it into the drive, and goes home for the evening.
- When you leave for the evening, if the backup comfile/whattever allocates
- the tape drive then surely nobody can use it untill its dismounted
- which could be done next morning when you arrive???
-
-
- > Then someone else *ANYONE* (unless you do something to stop them - see
- > below) mounts that tape device and starts reading data off the tape.
- > This is easily done (I've done it). You can go and pick up the
- > SYSUAF.DAT and start checking it with a PD password checker and
- > you're in business. I'm not advocating this of course, but I don't
- > think it's something that a lot of people are aware of.
-
- Do you know where you can get password checkers??? Its something
- we should do to now and again (Checking the suitability of passwords
- not cracking them 8^] )
-
- > There are many steps you can do to prevent everyday users from using
- > your tape drive(s) and/or tapes. My suggestion would be a device
- > level ACL on the tape device(s), and change the device protection to
- > prevent world (and maybe group) access. Then grant that identifier
- > to the "authorized" users of the device. If there are a small number
- > of users who you want to restrict, then do the resverse. Put an ACL
- > on the device which prevents access by a set of users; then grant
- > that identifier to those users. I think this is the reasonably
- > easy "painfree" solulion.
-
-
- This is a good idea!!
- > Remember, it's important to do something about this if it affects
- > your site. If you don't you'll get hit eventually. Esp if your
- > an educational institution with students who have a spare time
- > playing with this kind of thing!
- In my day (2 years ago) Students didnt have time spare time etc!! 8^]
-
-
-
- --
- __________________________________________________
- |o |Mark Wilton - Centre for Information|o | / /
- |o |sgccmjw@citecuc.citec.oz.au Technology |o | \ \/ /
- _____|o_| Brisbane Australia |o_|_ \/\/
- |\ |o_|___________________________________________|__| \
- | \_______________________________________________________\ Amiga
- \ | on [] off | ForeveR
- \|_______________________________________________________|
- "Informatics isn't a terminal disease it's a Software Engineering Degree"
- -----------------------------------------------------------------------------
-