FW: RF Keyboards

From: Stacy Olivas (olivas@digiflux.org)
Date: 09/17/02


From: "Stacy Olivas" <olivas@digiflux.org>
To: <security-basics@securityfocus.com>
Date: Tue, 17 Sep 2002 06:52:12 +0200

Sorry, forgot to CC the list. :)

-----Original Message-----
From: Stacy Olivas [mailto:olivas@digiflux.org]
Sent: Tuesday, September 17, 2002 6:49 AM
To: 'James Lee Gromoll'
Subject: RE: RF Keyboards

At least he asked.

As absurd as it may seem, I've actually seen places get away with murder
in picking and choosing what they thought were the regs they fell under
and willingly turned a blind eye to the rest, and gotten away with it.

Cordless devices are cool, but he's right, you need to pull out all the
INFOSEC regs and run a risk assessment on it (even tough reading through
all them will take some time) . Let the people who implement policy at
the upper levels take the heat if anything goes wrong..

-Stacy

-----Original Message-----
From: James Lee Gromoll [mailto:jgromoll@hotmail.com]
Sent: Saturday, September 14, 2002 3:49 AM
To: EOgden@collegesofcc.cc.ca.us; john.cronican@peregrine.com;
justin.cohen@us.army.mil; security-basics@securityfocus.com
Subject: RE: RF Keyboards

ummmm.... I saw the dot mil address... and can't help but give you what
my
20 plus years of military computing background says, "You must be high."

Sorry, not trying to be an agitator, but rf keyboards and mice are a
security hole as big as the Grand Canyon. The only acceptable place to
use
them are places were RF emission beyond the walls of the space you are
in is
assured, which is a pretty slick trick anyhow. My advice, if you really
think you would like to use the cordless stuff, would be to dig out all
those INFOSEC regulations and run the thing through a risk assesment,
then
present it to your decision makers and let them do what they get paid
for,
make a decision and take the rap if its a bad one.

jim

>From: "Ogden, Earl" <EOgden@collegesofcc.cc.ca.us>
>To: 'John Cronican'
><john.cronican@peregrine.com>,"'justin.cohen@us.army.mil'"
><justin.cohen@us.army.mil>,security-basics@securityfocus.com
>Subject: RE: RF Keyboards
>Date: Thu, 12 Sep 2002 14:25:21 -0700
>
>Good Afternoon,
>
> Not sure about KB logging of a user, but I have found issues
with
>other RF devices. MS and Logitech brands interfere with several brands
of
>Cordless phones, vice versa. They also can interfere with RF LAN
systems,
>if close enough to the AP. We have discontinued their use for these
>reasons.
>
>Regards,
>
>Earl Ogden
>Network Specialist
>Regional Training Institute
>CCCCD
>925-930-8366 xt 8209
>Cell: 925-768-0030
>
>
>-----Original Message-----
>From: John Cronican [mailto:john.cronican@peregrine.com]
>Sent: Wednesday, September 11, 2002 11:27 AM
>To: 'justin.cohen@us.army.mil'; security-basics@securityfocus.com
>Subject: RE: RF Keyboards
>
>I think the DoD/Army TEMPEST Regulations would apply.
>John
>
>John G. Cronican, Jr. (CISSP)
>Director, Corporate Security
>Peregrine Systems, Inc.
>
>3611 Valley Centre Drive
>San Diego, CA 92130
>(858) 794-7550 (voice)
>(858) 212-1803 (cell)
>(858) 481-1751 (fax)
>jcronican@peregrine.com
>www.peregrine.com
>
>
>-----Original Message-----
>From: justin.cohen@us.army.mil [mailto:justin.cohen@us.army.mil]
>Sent: Wednesday, September 11, 2002 6:22 AM
>To: security-basics@securityfocus.com
>Subject: RF Keyboards
>
>
>
>Has anyone implemented any policies regarding RF keyboards
>(and/or other peripherals)? Recently, there has been some
>debate within my office of the feasibility of remote
>keystroke logging from these devices and I was wondering
>if anyone has researched this topic or done any testing.
>
>
>Thanks,
>
>~Justin

_________________________________________________________________
Send and receive Hotmail on your mobile device: http://mobile.msn.com



Relevant Pages

  • Re: Photos
    ... He plays the guitar, keyboards and piano, drums, violin and I ... john in worcester ...
    (alt.vacation.las-vegas)
  • RE: RF Keyboards
    ... >To: 'John Cronican' ... >Subject: RE: RF Keyboards ... MS and Logitech brands interfere with several brands of ... They also can interfere with RF LAN systems, ...
    (Security-Basics)
  • Re: If CW is dead....
    ... the internet in regards to the pony-express or the US Postal System... ... While in the future there will be keyboards, it would make as much sense ... John ... > even think of programming when they think of keyboards. ...
    (rec.radio.amateur.policy)
  • Re: Heaven help me, RSPW...
    ... keyboards, was finally able to type out the following: ... I have John Cena's theme stuck in my head. ...
    (rec.sport.pro-wrestling)
  • Re: This is no "fun" anymore. Now its time to separate from real criminals.
    ... with the help of a thousand monkeys ... banging on keyboards, was finally able to type out the following: ... JOHN HENRY!!!!! ...
    (sci.astro)