Educause Security Discussion mailing list archives
Re: Multiple of Single User Accounts
From: "Stanclift, Michael" <michael.stanclift () ROCKHURST EDU>
Date: Thu, 22 Oct 2009 08:41:01 -0500
We sync passwords, we'd be sunk without it. Michael Stanclift Network Analyst Rockhurst University http://help.rockhurst.edu (816) 501-4231 Think before you print! -----Original Message----- From: The EDUCAUSE Security Constituent Group Listserv [mailto:SECURITY () LISTSERV EDUCAUSE EDU] On Behalf Of Flynn, Gerald Sent: Thursday, October 22, 2009 7:50 AM To: SECURITY () LISTSERV EDUCAUSE EDU Subject: Re: [SECURITY] Multiple of Single User Accounts
-----Original Message----- Another issue that is rarely mentioned in this debate is the need to protect some credentials more than others. A situation has recently come to light here where a privileged user here exposed their credentials to key infrastructure while accessing student systems. The exposure was obscure (and certainly unintentional) but exists none the less. Keeping accounts separate helps mitigate that accidental exposure of credentials.
Speaking of account credentials, sync outsourced student email passwords with campus passwords or not? I vote no. Too many external account/password integration and syncing and phishing threats. Federation, when it becomes available, is a better and acceptable solution. But until then...no automated password syncing. Outsourced faculty collaboration cloud accounts? This one could be trickier depending upon what sort of data faculty place in the cloud.
Current thread:
- Re: Multiple of Single User Accounts, (continued)
- Re: Multiple of Single User Accounts Barrera, Connie (Oct 21)
- Re: Multiple of Single User Accounts Morrow Long (Oct 21)
- Re: Multiple of Single User Accounts Stanclift, Michael (Oct 21)
- Re: Multiple of Single User Accounts Mark Borrie (Oct 21)
- Re: Multiple of Single User Accounts Gregg, Christopher S. (Oct 21)
- Re: Multiple of Single User Accounts Michael Fertig (Oct 21)
- Re: Multiple of Single User Accounts Eric Case (Oct 21)
- Re: Multiple of Single User Accounts Flynn, Gerald (Oct 22)
- Re: Multiple of Single User Accounts Flynn, Gerald (Oct 22)
- Re: Multiple of Single User Accounts Flynn, Gerald (Oct 22)
- Re: Multiple of Single User Accounts Stanclift, Michael (Oct 22)
- Re: Multiple of Single User Accounts Basgen, Brian (Oct 22)
- Re: Multiple of Single User Accounts Jesse Thompson (Oct 22)