OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
From: Kurt Seifried (bugtraqseifried.org)
Date: Fri Jan 04 2002 - 15:46:38 CST

  • Messages sorted by: [ date ] [ thread ] [ subject ] [ author ]

    > On a slightly different (but relevant to network bandwidth) issue, what
    > would be the best way to monitor users who have installed Instant
    messaging
    > programs (AIM, Yahoo, MSN). I am trying to make a point to management
    that
    > not only are there serious security issues associated with Instant
    messaging
    > but it also affects productivity and uses excessive bandwidth. Any advice
    > would be appreciated. Thank you.
    >
    > Ed

    Seriously, these application level issues are best handled at the
    applicaiton level. Enforce what users can install/run on their systems (i.e.
    block them from doing so unless they must). Windows nt/2000 has support for
    policies/etc to accomplish this, on WIndows 9X there are options as well.

    <commercial>SecureEXE from SecureWave will accomplish this.
    www.securewave.com. In my opinion that is the right approach to this, not
    fiddling with the network (which is doomed to fail, peer to peer file
    sharing for example uses ports all over the map, new apps you never heard of
    come out, etc. SecureEXE will fix this.</commercial>.

    Kurt Seifried, kurtseifried.org
    A15B BEE5 B391 B9AD B0EF
    AEB0 AD63 0B4E AD56 E574
    http://www.seifried.org/security/