Educause Security Discussion mailing list archives

Re: End User Data Encryption


From: Mark Bruhn <mbruhn () INDIANA EDU>
Date: Tue, 27 Jan 2004 09:25:30 -0500

The only "organized" support of user encryption here at IU is with EFS.
And, if a user encrypts a document in EFS and loses the key, they have
to contact my office (the IT Policy Office), and we dynamically create a
master to retrieve the doc.  To my knowledge, we've never exercised the
procedure -- either because no one is using EFS or because no one has
forgotten the key.


Scott Bradner wrote:

If you choose asymmetric crypto, you may want to also plan for some
kind of key escrow, in case a user loses theirs, or departs and your
university needs their files decrypted.



how many organizations are doing this?

Scott

**********
Participation and subscription information for this EDUCAUSE Discussion Group discussion list can be found at 
http://www.educause.edu/cg/.



**********
Participation and subscription information for this EDUCAUSE Discussion Group discussion list can be found at 
http://www.educause.edu/cg/.

Current thread: