Re: Tar backups creating secure tape image?

From: David Magda (dmagda+trace030823_at_ee.ryerson.ca)
Date: 08/26/03


Date: 26 Aug 2003 15:17:42 -0400

Marc David Ronell <marc_ronell@highstream.net> writes:

> Most places I have been in do not, unfortunately , have a tape
> vault. Also, doesn't it seem silly to have logins and password
> protection on normal machine access, but not on backups? If one
> cannot break into a machine, it is trivial to borrow a recent
> backup tape.

Except when you have to restore from a set of tapes from two years
ago. What are the passwords? Were they recorded (securely)? How often
do you rotate passwords?

Then there's the wonderful political question of who gets to know the
passwords?

-- 
David Magda <dmagda at ee.ryerson.ca>, http://www.magda.ca/
Because the innovator has for enemies all those who have done well under
the old conditions, and lukewarm defenders in those who may do well 
under the new. -- Niccolo Machiavelli, _The Prince_, Chapter VI


Relevant Pages

  • Re: Oh Dear, Where to start?!
    ... > sort of security solution? ... > use, passwords, physical security, backup/disaster ... > admin, network admin, tech support, programming, and ... Theres lots of software out there for backups. ...
    (Security-Basics)
  • Re: Recommendation for Password App
    ... database needs as well. ... I don't know about Mac backups, ... I am looking for an palm app to store passwords. ...
    (comp.sys.palmtops.pilot)
  • Re: Thank God for backups!
    ... critical data. ... But thanks to my backups I didn't. ... But I was forgetting that I use the KDE wallet (ie. password ... manager) to store all my private data (I have a LOT of passwords). ...
    (Ubuntu)
  • Re: Defense plan
    ... Require passwords meet complexity rules, and be changed on a regular ... I have considered physical security, but I forgot to add it to my list, good ... I have a backup plan, and while I consider backups very important, I ... and I've been removing the cd-rom and disk drives from the workstations ...
    (Security-Basics)