Security Basics mailing list archives

Re: Disabling application/network accounts


From: "Dan Anderson" <dan-anderson () cox net>
Date: Thu, 11 Sep 2008 14:17:25 -0400

This sounds like a "good practice" - I'm increasingly uncomfortable
with "best practice".

I'd also consider locking their account during their once-a-year
mandatory 5+ day vacation if you have such a policy.

Dan

On Tue, Sep 9, 2008 at 2:49 PM,  <s0h0us () yahoo com> wrote:
Can anyone share their thoughts on disabling accounts for employees who are out on extended vacations or medical 
leaves? what is considered "best security practice", specifically in the financial industry? We have a policy that 
requires accounts to be disabled for employees who will be away from the company for 10 or more consecutive days.

thanks in advance for your comments.



Current thread: