RE: Need a Full Drive Encryption program

From: Bassett, Larry (Larry.Bassett@marconi.com)
Date: 06/03/02


From: "Bassett, Larry" <Larry.Bassett@marconi.com>
To: security-basics@securityfocus.com
Date: Mon, 3 Jun 2002 11:32:04 -0400 

Greetings,

Try Protect from PointSec, it is full disk encryption for 95, 98, NT, W2K.

Thanks

Larry

__________________________________________________________________
Larry Bassett Phone: 520-241-2987
Information Security FAX: 724-742-7474
Marconi Main: 724-742-7444
14407 N. Copperstone Drive www.marconi.com
Oro Valley, AZ, 85737-9319 email: larry.bassett@marconi.com

-----BEGIN PGP PUBLIC KEY BLOCK-----
Version: 4.0 Business Edition

mQENAjJP6WAAAAEIALgtOtvlUAflrBq7bRpO1gSDj6u5jZFmVubCTHDW+EyejjQ+
plqn7C9MOc6ntm7EFgUrTwnTsAoBU6RkmLtUF89R9ORIaTMPKH41Z9k/S0ACvj6+
esw/hnWKsumTFMsvCoRUmsTv69RfJo++Pk61+I84TNYqOLvwt3KehxYTyfUh6gUL
aaY8a126u/DstNIDTxt1V3i6tbQW0+91ydauBdcwIrDudbZZ17hOvlq/EYamn2Mw
XLIuf+3fGvLsJxUC+dtSG94kNCa69BwPmbrqCrC048BkRtINeilRyQzrJbFiJVhi
JP9YQw0p6ieozDEF9HZ+7snlhmTKJ3J+FAKuXBMABRG0JExhcnJ5IFcuIEJhc3Nl
dHQgPGxiYXNzZXR0QGZvcmUuY29tPg==
=dtEq
-----END PGP PUBLIC KEY BLOCK-----

-----Original Message-----
From: Amram Peņa [mailto:admin@gotoentertainment.com]
Sent: Friday, May 31, 2002 2:12 PM
To: Trotter, Brian; security-basics@securityfocus.com
Subject: Re: Need a Full Drive Encryption program
Importance: High

Hi: here's a list of what you can do:

1. laptops usually have a security option in the BIOS config. if you don't
get passed that authentication, computer won't even boot up. That's
a start point at least..

what OS do they use ? if it's win2k you can:

1. create a user on they're system with a strong password (min 6 caract.,
combined numbers, symbols, spaces, etc). 2. activate EFS (encryption file
system) for the files and folders that contain critical info. 3. apply all
service packs and security patches 4. disable all unnecesary users, groups,
shares, and all microsoft defaults that could be used to crack into the
system as a valid user. 5. Implement a Digital Security policy using win2k.
Use the max encryption available.. 6. backup the encryption key at your
office and keep it in a secure place.

Since win2k encrypts based on kerberos v5, without that key, even if they
take the files out of the computer, they will be absolutely useless. The
only way for them to see the content of those files is if they logged in as
the specific user that owns the file. That's why a good password policy is
a must. Since it's encryption within a private enterprise, you can use
encryption higher than 128-bit.. This is just without having to look for
3rd party solutions in order to reduce costs and utilize the available
resources.. Keep in mind that no matter how good security can be, there's
always going to be somebody wise enough to crack it.. all you can do is
minimize and isolate the impact of a security breach..

         Amram Peņa
         Microsoft Certified Professional
         Email: admin@gotoentertainment.com



Relevant Pages

  • CryptoSurvey -- Results ..
    ... Many same or similar behavioral barriers for the ... effective utilization of many security solutions still exist limiting ... applications of encryption technologies currently in commercial ... Many people do not care about cryptography and/or security products ...
    (sci.crypt)
  • CryptoSurvey -- Results ..
    ... Many same or similar behavioral barriers for the ... effective utilization of many security solutions still exist limiting ... applications of encryption technologies currently in commercial ... Many people do not care about cryptography and/or security products ...
    (sci.crypt)
  • Re: OT - Kuwait
    ... > One place where I agree with you is that the scope of government intrusion ... > into the private matters of Americans is much greater than most Americans ... >>> strict security procedures to prevent unauthorized release of the keys. ... >> Feds Want to Control Encryption ...
    (alt.sports.football.pro.ne-patriots)
  • Re: OT - Kuwait
    ... Making the case for encryption standards that would allow the Feds to ... One place where I agree with you is that the scope of government intrusion ... into the private matters of Americans is much greater than most Americans ... >> strict security procedures to prevent unauthorized release of the keys. ...
    (alt.sports.football.pro.ne-patriots)
  • Re: National Security Backdoor in telnetd - all versions.
    ... >>against the Secret Service for their violations of civil rights. ... encryption techniques to protect critical resources. ... plants have absolutely horrid security resulting from these stupidities. ... Of course I doubt you have an NDA with the government - so ...
    (comp.os.linux.security)