Re: secure password communication



On 2008-12-21 sfmailsbm@xxxxxxxxx wrote:
we need to communicate first-time application passwords to remote
users; wanted to know what are the practices implemented out there to
ensure that password is communicated in a secure, fast, cost-effective
way

encrypted mails is not feasible for the time being, printing PIN
Mailers and sending by post will be too lengthy

AFAICS the only other option is to call them by phone.

Regards
Ansgar Wiechers
--
"All vulnerabilities deserve a public fear period prior to patches
becoming available."
--Jason Coombs on Bugtraq



Relevant Pages

  • Re: RWW Security was compromised.
    ... NOTHING is secure. ... Use best practices... ... LENGTHEN the password time on failed logins. ... > to stop brute force attacks on the administrator account, ...
    (microsoft.public.windows.server.sbs)
  • Re: Preventing ALL text SQL Injection by removing single-quotes ?
    ... Considering all the good and relevant advice you've ... It simply doesn't matter. ... ignore widely accepted best practices and now you want to justify that ... knowledge that says your chosen methodology is not the most secure, PERIOD, ...
    (microsoft.public.sqlserver.security)
  • general security question
    ... anti-virus and firewall setup properly. ... What are some good practices for making 2000/XP clients ... secure as possible? ... what are some good practices for making 2003 Server ...
    (microsoft.public.windows.server.sbs)
  • Windows 2008 ADDS and DNS security setup
    ... I did install Windows 2008 and kind of set AADS and DNS, is there a recipe ... to check how secure or a guide on best practices? ...
    (microsoft.public.windowsxp.security_admin)

Loading