Security Basics mailing list archives

RE: Security procedure question


From: "Nick Duda" <nduda () VistaPrint com>
Date: Tue, 3 Oct 2006 12:39:30 -0400


No to mention that a credit card is linked to the individuals personal
finanancial assets...of course a credit card would be considered sacred.
A password to some work place doesn't hold that same level of importance
with a user, big deal if someone takes it, at least I still have my cash
in the bank.

I suggest not putting anymore effort, thinking or reasoning into
this..my .02

- ND

-----Original Message-----
From: listbounce () securityfocus com [mailto:listbounce () securityfocus com]
On Behalf Of Mario A. Spinthiras
Sent: Tuesday, October 03, 2006 5:37 AM
To: Pranav Lal
Cc: security-basics () securityfocus com
Subject: Re: Security procedure question

Pranav Lal wrote:
Hi all,

I remember reading somewhere that one practice for having strong
passwords was to allow the users to write them down but treat the
paper on which they were written like a credit card. If I remember
correctly, the argument went that since people don't leave credit
cards lying around, they would not leave their passwords lying around
either.

Has anyone tried this approach?

Pranav


----------------------------------------------------------------------
----- This list is sponsored by: Norwich University

EARN A MASTER OF SCIENCE IN INFORMATION ASSURANCE - ONLINE The NSA has

designated Norwich University a center of Academic Excellence in
Information Security. Our program offers unparalleled Infosec
management education and the case study affords you unmatched
consulting experience.
Using interactive e-Learning technology, you can earn this esteemed
degree, without disrupting your career or home life.

http://www.msia.norwich.edu/secfocus
----------------------------------------------------------------------
-----


 
If that where the foolish case then the intoxicated gentlemen that wrote
the referred subject scenario that you read is mistaken. If this was
indeed the case then ATM PIN codes would be written on the credit cards
:)


Regards,
Mario A. Spinthiras

------------------------------------------------------------------------
---
This list is sponsored by: Norwich University

EARN A MASTER OF SCIENCE IN INFORMATION ASSURANCE - ONLINE The NSA has
designated Norwich University a center of Academic Excellence in
Information Security. Our program offers unparalleled Infosec management
education and the case study affords you unmatched consulting
experience.
Using interactive e-Learning technology, you can earn this esteemed
degree, without disrupting your career or home life.

http://www.msia.norwich.edu/secfocus
------------------------------------------------------------------------
---


---------------------
Confidentiality note
The information in this email and any attachment may contain confidential and proprietary information of VistaPrint 
and/or its affiliates and may be privileged or otherwise protected from disclosure. If you are not the intended 
recipient, you are hereby notified that any review, reliance or distribution by others or forwarding without express 
permission is strictly prohibited and may cause liability. In case you have received this message due to an error in 
transmission, please notify the sender immediately and delete this email and any attachment from your system.
---------------------

---------------------------------------------------------------------------
This list is sponsored by: Norwich University

EARN A MASTER OF SCIENCE IN INFORMATION ASSURANCE - ONLINE
The NSA has designated Norwich University a center of Academic Excellence
in Information Security. Our program offers unparalleled Infosec management
education and the case study affords you unmatched consulting experience.
Using interactive e-Learning technology, you can earn this esteemed degree,
without disrupting your career or home life.

http://www.msia.norwich.edu/secfocus
---------------------------------------------------------------------------


Current thread: