Re: Security and encryption

From: kenneth r philp (kenneth.philp@chello.se)
Date: 07/10/02


From: "kenneth r philp" <kenneth.philp@chello.se>
Date: Wed, 10 Jul 2002 22:47:15 +0200

Toni,

> You could set up a Windows 2000 Server with the database files
> encrypted using Encrypted File System

Forgive me for asking, but are Encrypted File System part of Windows 2000 Server?

>and set up an IPSec-VPN
> between the lawyers and the datacenter.

Doesn't an IPSec-VPN require some hardware channels also? And if there's a lot of customers it also requires a lot of VPN channels?

>You must assure that
> the datacenter technicians are not administrators on the server,
> so depending on what kind of hosting contract you have (managed
> versus co-location) this might defeat your purpose for
> outsourcing the hosting.

I haven't yet decided what kind of hosting contract I'm gonna have with the webhotel.

> As a rule of thumb, never assign full control of your SQL Server
> computer to someone you don't trust to keep the data secure.

That I do believe in.

I have this idea of delivering an intranet app with the lawyers database inhouse but with security control done with an ActiveX control on the client side thus forcing clients to use MSIE browser. Perhaps using TCP as communication between clients and a server controlled by me.

/Kenneth



Relevant Pages

  • password protection
    ... In our office we have LAN including Linux and Windows ... On this server we have Samba v.2.2 for Windows based Desktop ... couldn’t find a tool that mounts encrypted file system on a Windows ...
    (Debian-User)
  • password protectoion
    ... In our office we have LAN including Linux and Windows ... On this server we have Samba v.2.2 for Windows based Desktop ... couldn’t find a tool that mounts encrypted file system on a Windows ...
    (RedHat)
  • Re: Run Fax Service under a different User Account gives "Win32 Error Code: 1307" error
    ... How about running Fax under Network Service and giving Network Service ... access to files in the Encrypted File System. ... > On a Windows Server 2003 server, I am attempting to run the Fax Service on ... > an account other than the "Network Service" account, ...
    (microsoft.public.win2000.fax)
  • Run Fax Service under a different User Account gives "Win32 Error Code: 1307" error
    ... On a Windows Server 2003 server, I am attempting to run the Fax Service on ... an account other than the "Network Service" account, ... member of the local Administrators domain, ... with the Encrypted File System, but this is not yet configured so this is ...
    (microsoft.public.win2000.fax)
  • SecurityFocus Microsoft Newsletter #154
    ... MICROSOFT VULNERABILITY SUMMARY ... ISS RealSecure Server Sensor SSL Denial Of Service Vulnerabi... ... Roger Wilco Remote Server Side Buffer Overrun Vulnerability ... available for Microsoft Windows operating systems. ...
    (Focus-Microsoft)

Quantcast