Identity & Access Management Questions


expired credentials in Windows XP
We have one particular XP-Pro system that repeatedly throughout the day (5-6 times) will ank the user for their credentials again. After entering them will continue just fine. This is the only system doing this and is pretty annoying. Why is this happening?

Answer Question   |  May 26, 2005  7:33 PM
Biometrics, Digital certificates, Identity & Access Management, Microsoft Windows, Networking, provisioning, Security, Security tokens, Single sign-on
asked by:
0 pts.

asked by:
0 pts.

Resticting Members of BuiltinAdministrator to just be able to create Domain Trust
In windows 2000/2003, Can we restrict a BuiltinAdministrators member to have just enough rights so that he/she can only create/delete domain Trust. The requirement that we have is to be programmatically create trust with all the domains in a given forest. The other part of the requirement is to maintain the created trusts (i.e. recreate [...]

Answer Question   |  May 11, 2005  7:09 PM
Administration, Biometrics, Compliance, CRM, Development, Digital certificates, Disaster Recovery, Identity & Access Management, Installation, Management, Policies, provisioning, Risk management, Security, Security management, Security Program Management, Security tokens, Single sign-on
asked by:
0 pts.

Data vs. perimeter vs. network security
A short time ago, author Wes Noonan wrote some tips for SearchWindowsSecurity.com about <a href=http://searchwindowssecurity.techtarget.com/originalContent/0,289142,sid45_gci1007026,00.html>deperimeterization</a>. He explained how security is always pitted against business needs, and perimeters have become porous because businesses require traffic from SMTP, HTTP or VPNs to pass through the firewall. He then offered techniques for keeping data safe in spite of [...]

Answer Question   |  May 4, 2005  4:36 PM
Administration, Application security, Architecture/Design, backdoors, Biometrics, Compliance, configuration, CRM, Current threats, Database, Desktop vs network-based firewalls, Digital certificates, Disaster Recovery, Documentation, Encryption, Exchange, Features/Functionality, Firewalls, Forensics, Hacking, Host-based IDS/IPS, human factors, Identity & Access Management, IDS vs IPS, IDS/IPS management, Incident response, Installation, Instant Messaging, Intrusion management, Managed security services, Management, Network security, Network-based IDS/IPS, Networking, Outsourcing/Managed services, patching, PEN testing, Platform Security, Policies, Product evaluation, provisioning, Risk management, Secure Coding, Security, Security management, Security products, Security Program Management, Security tokens, Service and support, Signature updating/Management, Single sign-on, Software vs appliance, Spyware, Trojans, Viruses, VPN, Vulnerability Assessment & Audit, vulnerability management, Wireless, worms
asked by:
0 pts.

Stuck with WEP – will increasing key lengths help harden WLAN?
I have potential security issues on my wireless LAN because my equipment is older and I can?t use WPA. I’m worried that my data is vulnerable. If I increase my WEP key length from 40 to 128 or greater, will this help?

Answer Question   |  May 4, 2005  7:15 AM
Biometrics, Compliance, CRM, Digital certificates, Disaster Recovery, Identity & Access Management, Intrusion management, Policies, provisioning, Risk management, Security Program Management, Security tokens, Single sign-on
asked by:
225 pts.

asked by:
0 pts.

Internet Explorer vs. Firefox
Hello, I’m the Assistant Editor on SearchWindowsSecurity.com. I’m looking to start a discussion about what browser people are using and why. Also, is anyone considering switching from IE to Firefox, or are your plans to stay with IE? Here’s some food for thought… As of Feb. 2005, an estimated 35 million users had switched from [...]

Answer Question   |  June 29, 2012  2:14 PM
Addamark, Administration, Aladdin Knowledge Systems, Application security, AppSec, Architecture/Design, ArcSight, Bindview, Biometrics, Caymas, CipherTrust, Compliance, Computer Associates, configuration, Courion, CRM, Cylant, Database, DataCenter, Desktop management applications, Desktops, Digital certificates, Disaster Recovery, Documentation, e-Security, Emerging technologies, Encryption, Enterasys Networks, Entrust, Exchange, Features/Functionality, GuardedNet, Hardware, Host-based IDS/IPS, IBM/Tivoli, Identity & Access Management, IDS vs IPS, IDS/IPS management, Imprivata, Installation, Instant Messaging, Intellitactics, Internet Security Systems, Intrusion management, Juniper Networks, KavaDo, M-Tech, Magnifire, Managed security services, Management, Maxware, Microsoft Windows, Netegrity, NetForensics, NetIQ, Network Associates, Network-based IDS/IPS, NFR Security, NGS Software, Novell, Ounce Labs, Outsourcing, Outsourcing/Managed services, Passlogix, patching, PEN testing, Platform Security, Policies, Product evaluation, Product/Service evaluation, provisioning, Risk management, RSA Security, Sana Security, Secure Coding, Security, Security management, Security Program Management, Security tokens, Servers, Service and support, Service contracts, Service evaluation, Single sign-on, Snort/Sourcefire, SPI Dynamics, StillSecure, Tech support, Teros, Thor, Tripwire, TruSecure, Vendors, VeriSign, VPN, VSecure, Vulnerability Assessment & Audit, vulnerability management, Watchfire, Waveset/Sun Micro, Windows, Windows XP
asked by:
0 pts.

Safe user sandbox?
*This question is from a SearchWindowsSecurity.com reader: I’m in a position to redesign our IT systems (network, servers, PCs, software, etc.) this summer, and I am undecided on which path to take. I’d like to disconnect our systems from the Internet so that we don’t have to deal with all of the garbage that comes [...]

Answer Question   |  April 13, 2005  2:15 PM
Application security, backdoors, Biometrics, Compliance, configuration, CRM, Current threats, Database, Development, Digital certificates, Disaster Recovery, Encryption, Exchange, Hacking, human factors, Identity & Access Management, Instant Messaging, Intrusion management, Management, patching, PEN testing, Platform Security, Policies, Product evaluation, provisioning, Risk management, Secure Coding, Security, Security Program Management, Security tokens, Single sign-on, Spyware, Trojans, Vendors, Viruses, vulnerability management, worms
asked by:
0 pts.

I’ve been hacked — I think….
I’m an IT administrator with a little over 500 end users, running Windows 2000 and XP. One of our users is experiencing a problem with her Internet connection suddenly dropping for no apparent reason. When she restarts her computer, everything works fine for awhile, but then the connection drops again. The funny thing is, she’s [...]

Answer Question   |  August 2, 2009  9:52 AM
Administration, Application security, Architecture/Design, Bigfix, Biometrics, Cisco, Citadel, Compliance, Computer Associates, configuration, Configuresoft, CRM, Cylant, Database, DataCenter, Desktop antivirus, Desktop management applications, Digital certificates, Disaster Recovery, Documentation, Ecora, Encryption, Enterasys Networks, Exchange, Features/Functionality, Firewalls, Forensics, GFI, Hewlett-Packard, Host-based IDS/IPS, Identity & Access Management, IDS vs IPS, IDS/IPS management, Incident response, Installation, Instant Messaging, Internet Security Systems, Intrusion management, Juniper Networks, Managed security services, Management, Microsoft Windows, Network Associates, Network Elements, Network security, Network-based IDS/IPS, NFR Security, Outsourcing, Outsourcing/Managed services, patching, Patchlink, PEN testing, Platform Security, Policies, Product evaluation, Product/Service evaluation, provisioning, Redundancy, Risk management, Sana Security, Secure Coding, Security, Security Program Management, Security tokens, Service and support, Service contracts, Service evaluation, Shavlink Technologies, Single sign-on, Snort/Sourcefire, St. Bernard Software, StillSecure, Symantec, Tripwire, Vendors, VPN, VSecure, Vulnerability Assessment & Audit, vulnerability management, Wireless
asked by:
0 pts.

Unlocking Screensaver password
1st of all this is a win2k AD Domain w/all XP Clients and the extended GPManager Grouppolicy. Okay, so B/C of HIPAA I have to have my computers screensaver/password protected. Even though I’m forever telling’em to sign off when they leave computers my staff still doesn’t do it. Thusly the computer locks and (when I’m [...]

Answer Question   |  May 29, 2009  4:01 PM
Administration, Biometrics, Digital certificates, HIPAA, Identity & Access Management, Management, provisioning, Security, Security tokens, Service and support, Single sign-on, Tech support
asked by:
0 pts.

asked by:
0 pts.

Yearly Data owner review listing
Hi, We are currently on SAP 4.6C With SOX and other security settings we need to min. yearly prepare a user list per data owner, so that the data owner can review and sign-of on this. The data owner is determined per role. Now my question is, does anyone know a way of assigning a [...]

Answer Question   |  April 3, 2005  7:49 AM
Auditing, Biometrics, Digital certificates, Features/Functionality, Identity & Access Management, Information risk management, Installation, provisioning, Security, Security management, Security tokens, Single sign-on
asked by:
0 pts.

Accessing Linked Server in SQL Server 2000 (Urgent)
I have a server named say ‘SRVMAIN’. Using Enterprise Manager I added a linked server ‘LNKDSRVR1′ (existing server). I m able to access any database in ‘LNKDSRVR1′ by writing a query in query analyzer of ‘SRVMAIN’ as SELECT * FROM LNKDSRVR1.TESTDB.DBO.TESTTABLE Now if I have server as ‘linkedserver’. Again I added a linked server in [...]

Answer Question   |  March 24, 2005  10:47 PM
Administration, Availability, Backup & recovery, Biometrics, Digital certificates, Identity & Access Management, Migration, MySQL, Performance/Tuning, provisioning, Security, Security tokens, Servers, Single sign-on, SQL Server, SQL Server 2000, Standard Edition 2000, Tech support
asked by:
0 pts.

Installation issues with SQL Server and SPS on a member server.
I have a small windows 2003 domain.My domain controller runs Exchange server 2003 too.Wanting to set up a practice server for SPS2003, I introduced another Windows 2003 member server. I installed windows server 2003 and IIS 6 fine. When I got to the authentications stage during the installation of SQL server, I shose to use [...]

Answer Question   |  March 25, 2005  8:30 PM
Biometrics, DataCenter, Digital certificates, Identity & Access Management, provisioning, Security, Security tokens, Single sign-on
asked by:
0 pts.

telnet error-backup authentication
hi all, i did something really stupid and now i need a quick help.i have a cisco 3661 router.i was just roaming around and just having a look at the configuration.i don’t know what i did wrong but when i tried to telnet the next time, i m not able to enter the password for [...]

Answer Question   |  March 24, 2005  11:55 PM
Biometrics, DataCenter, DHCP, Digital certificates, DNS, Identity & Access Management, Networking, Networking Equipment, Networking services, provisioning, Routers, Security, Security tokens, Single sign-on
asked by:
0 pts.

Default Group Policy Objects in Active Directory – Windows 2000 Server
I’ve had to restore my Default Domain Policy and Default Domain Controller policy because somehow they disappeared. I’m using Sophos Enterprise Manager to automatically update all computers on the network. Everything is working as normal but I can’t update the 2 Domain Controllers on the system. It says there is a log on failure. The [...]

Answer Question   |  March 16, 2005  5:51 AM
Active Directory, Application security, Biometrics, Database, DataCenter, Digital certificates, Encryption, Exchange, Identity & Access Management, Instant Messaging, Microsoft Windows, provisioning, Secure Coding, Security tokens, Single sign-on
asked by:
15 pts.

ID Theft and National Security
If it turns out, as I believe, that enemies of the United States are behind a lot of the major ID thefts in the US, that would mean that a lot of money is going to our enemies. Can we therefore surmise that those who mishandle our identity information, by means of their poor stewardship [...]

Answer Question   |  September 21, 2010  10:35 PM
Application security, Auditing, Biometrics, Business/IT alignment, California Security Breach Information Act, Can Spam Act, Compliance, CRM, Database, Digital certificates, Disaster Recovery, E-business, Encryption, Exchange, Gramm-Leach-Bliley Act, HIPAA, Identity & Access Management, Incident response, Information risk management, Instant Messaging, ISO 17799, Laws, Policies, provisioning, Regulations, Risk management, Sarbanes-Oxley Act, Secure Coding, Security, Security management, Security products, Security Program Management, Security tokens, Single sign-on, standards, USA Patriot Act, Vulnerability Assessment & Audit
asked by:
75 pts.

How to do a Linux DMZ Intranet with Windows authentication?
I am designing a new network that has a DMZ containing Linux webservers and behind a firewall separating the DMZ a Windows backoffice . I want to run our company Intranet on the DMZ side using Linux but I want to limit access to employees both from the Internet and behind the firewall using windows [...]

Answer Question   |  March 23, 2005  11:58 AM
Biometrics, Digital certificates, Firewalls, Forensics, Identity & Access Management, Incident response, Intrusion management, Linux, Microsoft Windows, Network security, provisioning, Security tokens, Single sign-on, VPN, Wireless
asked by:
0 pts.

History of users for a particular userid.
I have an userid (username) which is named after a job function and there were changes on the actual owner of the Id. Is there a report or log that I can view who was the actual owner of the Id during a certain period of time? All I can get from the User Information [...]

Answer Question   |  March 4, 2005  11:43 PM
Auditing, Biometrics, Digital certificates, Identity & Access Management, provisioning, Security tokens, Single sign-on
asked by:
0 pts.

Authorization in MIGO
I would like to grant a user authorization to object S_TCODE MIGO (Goods Receipt specifically for Purchase Order (movement type 101) where they could then enter any related data but restrict their activity to HOLD. A subsequent user would have the authorization to POST the document. I have checked SU24 but fail to see any [...]

Answer Question   |  February 27, 2005  1:52 PM
Application security, Biometrics, Compliance, CRM, Database, Development, Digital certificates, Disaster Recovery, Encryption, Exchange, Identity & Access Management, Instant Messaging, Policies, provisioning, Risk management, Secure Coding, Security Program Management, Security tokens, Single sign-on
asked by:
0 pts.