Educause Security Discussion mailing list archives

Re: Skype in the production environment


From: "Basgen, Brian" <bbasgen () PIMA EDU>
Date: Wed, 11 Jun 2008 07:11:48 -0700

 Well referenced Pat. We have the same policy.

~~~~~~~~~~~~~~~~~~
Brian Basgen
Information Security
Pima Community College


-----Original Message-----
From: The EDUCAUSE Security Constituent Group Listserv
[mailto:SECURITY () LISTSERV EDUCAUSE EDU] On Behalf Of Patrick P Murphy
Sent: Wednesday, June 11, 2008 7:00 AM
To: SECURITY () LISTSERV EDUCAUSE EDU
Subject: Re: [SECURITY] Skype in the production environment

On Wed, 11 Jun 2008 08:07:52 -0500, Todd Bossaller
   <bossallert () MOVAL EDU> said:

I have had a couple questions about using Skype in our production
environment.  What security risks does Skype pose?  The articles I
read have been somewhat positive and somewhat negative.  Does anyone
else use Skype?

I used to, but I gave it up for these reasons:

   1) http://www.csoonline.com/read/030105/machine.html
   2) http://ask.slashdot.org/article.pl?sid=06/02/01/215211
   3)
http://lists.sans.org/pipermail/unisog/2006-May/thread.html#26440
   4) http://safecomputing.umn.edu/safepractices/skype.html

Technically, the Skype EULA and supernode capability are in direct
conflict with our adopted Computing Security Policy.

 - Pat

--
 Patrick P. Murphy, Ph.D.     NRAO Webmaster, Computing Security
Manager
 http://www.nrao.edu/~pmurphy/          http://chien-
noir.com/maze.shtml
 "Inventions then cannot, in nature, be a subject of property."
                                    -- Thomas Jefferson, August 13,
1813

Current thread: