Home page logo
/
educause logo
Educause Security Discussion Mailing List

Securing networks and computers in an academic environment.

List Archives

Jan–MarApr–JunJul–SepOct–Dec
2012674181
2011428358478392
2010825660728388
2009759751657702
2008596624430484
2007446520301516
2006536473507498
2005409416431349
2004495359552336
2003147163405234
200248755

Latest Posts

Re: Hard Disk Degaussers SCHALIP, MICHAEL (May 15)
We use "The Terminator"......sounds silly, but - we also wind up selling the ground up bits for $.50 - $.60/lb......who
would have thought that shredded hard drives are worth more ground up than in one piece....?? And - they are disposed
of through a certified recycler......very "green".....

Thanks,

Michael

From: The EDUCAUSE Security Constituent Group Listserv [mailto:SECURITY () LISTSERV EDUCAUSE EDU] On Behalf Of...

Hard Disk Degaussers Kern, Paul (May 15)
We are looking for a good hard disk degausser, and possibly a shredder as well. Does anyone have any suggestions? I
am looking at the Garner TS-1 Degausser, and it looks interesting.

Paul Kern
Associate Security Officer
South Dakota Board of Regents (RIS)
605.367.7594
Paul.Kern () sdbor edu<mailto:Paul.Kern () sdbor edu>

IT Security Administrator Position at SUNY Oneonta Bidwell, Lesley (May 15)
IT SECURITY ADMINISTRATOR
(SENIOR PROGRAMMER / ANALYST)

The Division of Finance and Administration at SUNY Oneonta invites applications for the position of Information
Technology (IT) Security Administrator. Expectations include administration of a comprehensive IT Security Program,
overseeing compliance with security standards and regulations, and working with the College community to assure the
confidentiality, integrity and availability...

Managing 3rd party supplier risk, infosecurity vendor assessments, etc John Hoben (May 11)
How are you handling information security risk management with your
respective third party vendors?

We've worked with banking, finance, securities, insurance (BFSI), health
care and other for profit sectors on developing solutions / providing
onsite information security assessments and wondered where this risk
management need is in the educational area priority list and how it is
being handled.

Please let me know if there is interest...

Security Analyst - Medical University of South Carolina (Charleston, SC) Richard H Gadsden (May 11)
The Medical University of South Carolina is hiring a Security Analyst to
join our team in the Information Security Office.

About MUSC:

Founded in 1824, and located in the historic seaport city of Charleston,
MUSC is the state's only free standing academic health sciences center,
providing a full range of professional education, clinical services and
biomedical research.

Job Summary:

The Security Analyst II reports to the Senior...

Re: IPv6 and DHCP Kern, Paul (May 10)
I agree with John. I think SLAAC is most appropriate in very small, private (meaning personal) networks such as home
networks. For larger networks, especially those that must be closely monitored and managed (think log checking,
firewall rules, etc.), I think DHCPv6 is the future. This is especially if you have a network that requires Option
82-type capabilities. I don't think SLAAC offers any mechanism for tracking or controlling IP...

Re: IPv6 and DHCP John Ladwig (May 10)
I think even within the IETF there's no longer a strong assumption that IPv6 will be "self-managing" in all, or even
most, networks.

Since we're in a security forum, I think it's pretty easy for us to realize that "self-managing networks" would need an
awful lot of bolt-around management/monitoring tricks to keep up with the normal sorts of incident response that we
deal with daily in IPv4 networks.

My...

IPv6 and DHCP Martin Manjak (May 10)
If you're running IPv6, and you've tested, or deployed, DHCP tools, we
are interested in what you may have discovered.

Our staff were using the following as a starting place for looking into
this issue: https://en.wikipedia.org/wiki/IP_address_management

Granted, we could have a debate about whether it makes sense to manage
an addressing protocol designed to be self-administering. But I think we
have to first determine whether or not...

Re: Acquiring/Capturing Memory Louis APONTE (May 10)
Lance

I do not have much occasion to capture memory outside of a wayward process misbehaving or failing. The activity monitor
feature where you can pick the process and then sample a particular PID in memory really works well. It is limited to
a few hundred samples with a millisecond between samples for about 3 seconds. I do not think this is what you are
looking for, but it may help someone else supporting Macs. I think it was available...

Acquiring/Capturing Memory Lance Pritchard (May 10)
Can anyone recommend a utility/tool to acquire memory from Mac OS for
forensic analysis. Free is preferred, but welcome all input.

Thanks

Lance

lance.pritchard () utsa edu

210-458-7218


Re: E-mail Archiving Policy & Software (E-mail Management Platform i.e. Netmail.com, etc.) Drew Perry (May 10)
At Murray State University, we use MailArchiva for email archive. Our email
policy is very simple and is available at
https://sites.google.com/a/murraystate.edu/information-security/policy/email
It is of note that we currently do not actively monitor email content,
however we often retroactively review messages in case of a spam or
phishing compromise. We also utilize the system for litigation holds.

Drew Perry
Security Analyst
Murray State...

E-mail Archiving Policy & Software (E-mail Management Platform i.e. Netmail.com, etc.) Carlos Lobato (May 10)
All,

If you have an e-mail archiving policy and use an "E-mail Management Platform/software" to monitor i.e. ensure
compliance, would you share a copy of your policy and let us know the name of the tool your University uses.

Thanks,

Carlos S. Lobato, CISA, CIA
IT Compliance Officer

New Mexico State University
Information and Communication Technologies
MSC 3AT PO Box 30001
Las Cruces, NM 88003-8001

Phone: 575-646-5902
Fax:...

Information Security Officer - Boston, MA Sabourin, Justin (May 10)
Wentworth is accepting applications for an Information Security Officer position.

Full details are available at http://jobs.wit.edu/hr using the generic username and password below. Yes, I appreciate
the irony.

Job Title

Information Security Officer

Requisition Number

0573

Job Description

To view full position description please click here<http://jobs.wit.edu/hr> and login.
Username: positionview
Password: wentworth

The ISO is...

Webcast May 21 regarding the next discounted pricing window for SANS training Beth Young (May 09)
SANS, REN-ISAC, and CACR training partnership program

Substantially discounted pricing is available for exceptional SANS
training programs:

- Securing The Human security awareness training
- OnDemand technical training, and
- Voucher Credits for live training

... during the purchasing window of June 1 - July 31

This opportunity is made possible through a partnership of REN-ISAC, the
Indiana University Center for Applied Cybersecurity...

Re: Guest Wireless Restrictions Childs, Aaron (May 08)
Good Afternoon Mark,

At Westfield we've had Guest access on our wireless for a while. They get a splash screen with a copy of our
acceptable use policy which they must click accept at the bottom. We restrict it to web browsing (http & https) and
the establishment of VPN connections. All other traffic is blocked.

Have a good day,
Aaron

Aaron Childs, CCNA
Associate Director, Networking
Information Technology
www.westfield.ma.edu/it...

More Lists

Dozens of other network security lists are archived at SecLists.Org.


[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]