funsec mailing list archives

Re: [privacy] U.S. OMB Sets Guidelines for Federal Employee Laptop Security


From: "Dude VanWinkle" <dudevanwinkle () gmail com>
Date: Tue, 27 Jun 2006 16:09:20 -0400

On 6/27/06, Fergie <fergdawg () netzero net> wrote:
Via The Washington Post.

[snip]

The Bush administration is giving federal civilian agencies 45 days to
implement new measures to protect the security of personal information
that agencies hold on millions of employees and citizens.

The new security guidelines, issued Friday by the White House Office of
Management and Budget, cap a month marked by data thefts or disclosures
at five different agencies that compromised Social Security numbers and
other private data on millions of people.

To comply with the new policy, agencies will have to encrypt all data
on laptop or handheld computers unless the data are classified as
"non-sensitive" by an agency's deputy director. Agency employees also
would need two-factor authentication -- a password plus a physical
device such as a key card -- to reach a work database through a remote
connection, which must be automatically severed after 30 minutes of
inactivity.


Also included inthe guidelines were :

1: Encrypt your hard drive with (Tru/Drive)Crypt
2: DONT LEAVE IT IN YOUR CAR YOU FUCKING IDIOT!!

-JP<who hopes that was at least in the first draft>
_______________________________________________
privacy mailing list
privacy () whitestar linuxbox org
http://www.whitestar.linuxbox.org/mailman/listinfo/privacy


Current thread: