Sun, Jun 26 2005 23:16
bradley
The knock at the door
Update - read Dana's view of the knock on the door
From the mailbag today comes the question...what do you do if you see traces of someone banging on your accounts?
Now here comes the controversy...some say they like account lockout as it shows when you are getting nailed...some like Steve Riley and Dr. Jesper Johansson in their book on Protecting your Windows network say that if you have the proper passwords...[great passwords are akin to great strong locks on your doors].... you can let them bang on those doors all you want because you are snug behind those locks.
So what should you do when you see the door rattling?
Ask yourself if your locks [i.e. your passwords] are good enough. If they are...roll over and go back to. bed... because it would take them eons of time to break down the door if the lock is good enough. If, however, you have your doubts... then you need to replace your current lock [password] with a better lock [passphrase].
P.S. In SBSLand we DO know when folks are knocking on the door because of our monitoring email. Anytime there is a login failure we see it in the emails. I personally want my ISA server logs more 'in my face' and heck..even RSSable.
Filed under: Security