Secure Coding Questions


asked by:
0 pts.

Fixing violation errors found with CHKOBJITG
I have just begun running the command to check object itegrity on my system. I have encountered 2 basic errors – BADSIG & ALTERED. Can you please explain how I now correct these errors? The objects are basic IBM supplied code (i.e. ADDTCPLNK in QTCP library). I have no idea how these objects were compromised, [...]

Answer Question   |  February 15, 2006  7:19 AM
Access control, Application security, backdoors, Biometrics, Browsers, Compliance, configuration, CRM, Current threats, Database, Digital certificates, Disaster Recovery, Encryption, Exchange, filtering, Firewalls, Forensics, Hacking, human factors, Identity & Access Management, Incident response, Instant Messaging, Intrusion management, Network security, patching, PEN testing, Platform Security, Policies, provisioning, Risk management, Secure Coding, Security, Security Program Management, Security tokens, Servers, Single sign-on, Spyware, SSL/TLS, Trojans, Viruses, VPN, vulnerability management, Web security, Wireless, worms
asked by:
0 pts.

asked by:
0 pts.

Exam question Antivirus – VPN – related
Hi I would like to offer a sincere thank you for reading this far. Im in deep trouble and need to answer a theory question for a presentation and would really appreciate any thoughts you can offer me. I only have the below information to go on and need to explain and present a soultion [...]

Answer Question   |  January 29, 2006  9:11 PM
Access control, Application security, backdoors, Browsers, Current threats, Database, Encryption, Exchange, filtering, Firewalls, Forensics, Hacking, human factors, Incident response, Instant Messaging, Interoperability, Intrusion management, Network security, Networking, Secure Coding, Security, Servers, Software, Spyware, SSL/TLS, Tech support, Trojans, Viruses, VPN, Web security, Wireless, worms
asked by:
0 pts.

Deleting old userids
I used to display the last signon date on a specific user profile to know if it was still used, if it was older than 3 months, it was deleted. Now there are more & more user profiles defined to the system for other applications than the “green screen”, like FTP, ISeries Navigator, ODBC, etc…. [...]

Answer Question   |  January 13, 2006  5:55 PM
Application security, Biometrics, Database, Digital certificates, Encryption, Exchange, Firewalls, Forensics, Identity & Access Management, Incident response, Instant Messaging, Intrusion management, Network security, provisioning, Secure Coding, Security, Security tokens, Single sign-on, VPN, Wireless
asked by:
20 pts.

data encryption/decryption
We are in the process of building encryption/decryption applications. We are using the IBM QC3ENCDT AND QC3DECDT API’S. I’ve starting testing against our database using apprx 3000 records to encrypt and then decrypt. Out of that 3000 records, there are 17 instances of failure to decrypt to clear data and it is always the same [...]

Answer Question   |  January 11, 2006  10:39 AM
Application development, Application security, Database, Encryption, Exchange, Instant Messaging, Secure Coding
asked by:
0 pts.

Symantec Resources
Our company has just partnered with Symantec and being new to their products, I’m finding myself a bit overwhelmed. Are there any websites that offer mailing lists or online forums that can help with some of the issues I’m running into? This seems like an interesting concept for user-to-user support, but it’s not the friendliest [...]

Answer Question   |  January 13, 2006  10:14 PM
Access control, Application security, backdoors, Backup & recovery, Brightmail, Browsers, Compliance, configuration, CRM, Current threats, Database, DataCenter, Desktop management applications, Disaster Recovery, Encryption, Exchange, filtering, Firewalls, Forensics, Hacking, human factors, Incident response, Instant Messaging, Intrusion management, McAfee, Microsoft Windows, Network security, Patch management, patching, PEN testing, Platform Security, Policies, Risk management, Secure Coding, Security, Security Program Management, Servers, Software, Spam, Spyware, SSL/TLS, Symantec, Systems management software, Trojans, Veritas, Viruses, VPN, vulnerability management, Web security, Wireless, worms
asked by:
0 pts.

Email encryption
Dear Colleagues: What is the best way of detecting whether email messages are transmitted as cleartext? I want to determine whether our company email messages are encrypted or not when they are transmitted within and out of the corporate network. Thank you very much!

Answer Question   |  January 9, 2006  8:26 AM
Application security, Database, Encryption, Exchange, Instant Messaging, Secure Coding, Security
asked by:
0 pts.

asked by:
0 pts.

Outlook Express compacting
Hi All, I am currently facing a problem with outlook express compacting folders option. One of my colleague complained that last 3 months of emails are removed from Deleted Emails folder after Outlook Express finished compacting the folders. However there is no option is selected to delete the messages while compacting in maintinance tab page [...]

Answer Question   |  December 15, 2005  8:50 AM
Application security, Backup & recovery, Database, Encryption, Exchange, Exchange security, Instant Messaging, Secure Coding, Tech support
asked by:
15 pts.

Encrypted files on External HD, host machine formatted but recoverable
Here is the lowdown, we have an external HD, and we backed up all the data needed too it. What i wasnt told was that the backup was being encrypted as it was being saved to the HD. So the pc was given to me to format and reinstall windows on. I did and now [...]

Answer Question   |  January 11, 2006  4:54 PM
Application security, Biometrics, Database, Digital certificates, Encryption, Exchange, Identity & Access Management, Instant Messaging, provisioning, Secure Coding, Security, Security tokens, Single sign-on
asked by:
0 pts.

VPn solution required for remote IP telephony
We would like to have remote ip telephony connectivity for our office so that it will be helpful for our remote users and our Royal customers to have ip soft phone which will be connected to our network through VPN tunnel to our IP PABX and dial out locally. We are having ADSL modem connectivity [...]

Answer Question   |  November 27, 2005  11:40 AM
Application security, Availability, Cabling, Database, Encryption, Exchange, Firewalls, Forensics, Hardware, Hubs, Incident response, Instant Messaging, Intrusion management, Network security, Networking, Nortel, Routers, Secure Coding, Security, Switches, VoIP, VPN, Wireless
asked by:
0 pts.

Group Policy Management
Has anyone looked into Group Policy Management products (outisde of the functionality provided by Microsoft’s Active Directory)? I’m trying to choose a product, and wanted to compare based on what current users thought (rather than what the sales departments tell me). The products I’ve been able to identify so far are FullArmor’s GPAnywhere and Intellipolicy [...]

Answer Question   |  November 22, 2005  2:54 PM
Application security, Compliance, configuration, CRM, Database, Disaster Recovery, Encryption, Exchange, Firewalls, Forensics, Incident response, Instant Messaging, Intrusion management, Network security, patching, PEN testing, Platform Security, Policies, Risk management, Secure Coding, Security, Security Program Management, VPN, vulnerability management, Wireless
asked by:
0 pts.

asked by:
0 pts.

asked by:
0 pts.

asked by:
0 pts.

Company policies on protecting personal data
I’d like to know what policies other companies have in place to protect personal data of employees, customers, etc.(data such as Social Security numbers, credit card numbers and the like) For example, is encryption required for transfer outside the company? How about inside the company? It is required in transmission? Is it required in storage? [...]

Answer Question   |  November 7, 2005  11:04 PM
Application security, Biometrics, Compliance, CRM, Database, Digital certificates, Disaster Recovery, Encryption, Exchange, Identity & Access Management, Instant Messaging, Laws, Policies, provisioning, Regulations, Risk management, Secure Coding, Security, Security Program Management, Security tokens, Single sign-on, standards
asked by:
0 pts.

regarding vpn
hi , i have to do project in vpn using l2tp.i have to test it between two linux machines. can anyone give me the steps to do that ? It will very useful for me if u give the websites regarding to that. thanks in advance. with regards, Nirmala.

Answer Question   |  November 7, 2005  10:08 PM
Access control, Application security, Biometrics, Browsers, Database, Digital certificates, Encryption, Exchange, filtering, Firewalls, Forensics, Identity & Access Management, Incident response, Instant Messaging, Intrusion management, Microprocessors, Network security, provisioning, Secure Coding, Security, Security tokens, Servers, Single sign-on, SSL/TLS, VoIP, VPN, Web security, Wireless
asked by:
0 pts.

Copying Windows RAS Properties to Different Users
I have a user who uses a dial-up connection to perform her daily duties. She is getting ready to go on maternity leave and their is someone who will be filling her position temporarily. The new user needs to be able to use the same dial-up or RAS properties as the full-time employee. The dial-up [...]

Answer Question   |  November 5, 2005  11:23 AM
Application security, Database, DataCenter, Desktops, Encryption, Exchange, Instant Messaging, Management, Microsoft Windows, OS, Secure Coding, Security, Servers, SQL Server, Tech support
asked by:
0 pts.

User circumventing security
We have a rogue user who knows more than she should. She can grant herself and other users the authority to access files that are supposed to be secured. Does anyone know of how we can monitor her activity or go back and review what she has done or anything that we can do. We [...]

Answer Question   |  April 16, 2010  8:04 AM
Application security, Database, Encryption, Exchange, Instant Messaging, Secure Coding, Security
asked by:
0 pts.