Thursday, July 17, 2008

Great Case for password expiration

The next time you are slightly miffed or you have an employee complain about rotating our your passwords just point them to this Abcnews article:

http://abcnews.go.com/Technology/story?id=5390020&page=1

In the story an employee was fired, and then accessed the system via backdoors he created. These are easily avoided traps if you system is designed in the correct way.

Using Active Directory, along with some sort of Two Factor Authentication would have saved the City of San Francisco millions. If your business is on a budget sticking with an unified account management plan and making use of Radius or Tacacs authentication could save you from a militant ex-employee. Just make sure to auto disable accounts that have not logged in within 30 days.

No comments: