[lug] Re: securing files

j davis davis_compz at hotmail.com
Tue May 21 21:29:30 MDT 2002


I know this wont solve all your problems...but you can block your documents
from leaving on the network. If you embedded a pharse in your documents that
would not appear anywhere else then you can use the iptables -m string 
command
to drop packets containing the "phrase".  ...Then remove the floppy and no 
cdburner.

jd

>From: Peter Hutnick <peter-lists at hutnick.com>
>Reply-To: lug at lug.boulder.co.us
>To: lug at lug.boulder.co.us
>CC: Bear Giles <bgiles at coyotesong.com>
>Subject: Re: [lug] Re: securing files
>Date: Tue, 23 Apr 2002 20:04:17 -0600
>MIME-Version: 1.0
>Received: from [66.54.152.73] by hotmail.com (3.2) with ESMTP id 
>MHotMailBE8F5E1E00954004321F42369849135A0; Tue, 23 Apr 2002 19:06:23 -0700
>Received: (qmail 5998 invoked by uid 0); 24 Apr 2002 02:06:12 -0000
>Received: from localhost (HELO community.tummy.com) 
>(?zuncXainwGo7LDgqWH3whwGl+poofWNL?@127.0.0.1)  by localhost with SMTP; 24 
>Apr 2002 02:06:03 -0000
>Received: (qmail 5799 invoked by alias); 24 Apr 2002 02:05:06 -0000
>Received: (qmail 5796 invoked by uid 0); 24 Apr 2002 02:05:06 -0000
>Received: from perth.fpcc.net (root at 207.174.142.141)  by 
>community.tummy.com with SMTP; 24 Apr 2002 02:05:05 -0000
>Received: from frodo (zaphod.dotsplat.org [64.24.105.228])by perth.fpcc.net 
>(8.9.3/8.9.3) with ESMTP id UAA03062;Tue, 23 Apr 2002 20:03:15 -0600
>From lug-admin at lug.boulder.co.us Tue, 23 Apr 2002 19:08:00 -0700
>Return-Path: <alias-blug_dom-lug-owner at lug.boulder.co.us>
>Delivered-To: mailman-lists.lug.boulder.co.us-lug at lists.lug.boulder.co.us
>Delivered-To: alias-blug_dom-lug at lug.boulder.co.us
>X-Mailer: KMail [version 1.4]
>References: <200204232243.QAA02369 at eris.coyotesong.com>
>In-Reply-To: <200204232243.QAA02369 at eris.coyotesong.com>
>Message-Id: <200204232004.20164.peter-lists at hutnick.com>
>Sender: lug-admin at lug.boulder.co.us
>Errors-To: lug-admin at lug.boulder.co.us
>X-BeenThere: lug at lug.boulder.co.us
>X-Mailman-Version: 2.0.8
>Precedence: bulk
>List-Help: <mailto:lug-request at lug.boulder.co.us?subject=help>
>List-Post: <mailto:lug at lug.boulder.co.us>
>List-Subscribe: 
><http://lists.lug.boulder.co.us/mailman/listinfo/lug>,<mailto:lug-request at lug.boulder.co.us?subject=subscribe>
>List-Id: Boulder (Colorado) Linux Users Group -- General Mailing List 
><lug.lug.boulder.co.us>
>List-Unsubscribe: 
><http://lists.lug.boulder.co.us/mailman/listinfo/lug>,<mailto:lug-request at lug.boulder.co.us?subject=unsubscribe>
>List-Archive: <http://lists.lug.boulder.co.us/pipermail/lug/>
>
>-----BEGIN PGP SIGNED MESSAGE-----
>Hash: SHA1
>
>On Tuesday 23 April 2002 04:43 pm, Bear Giles wrote:
> > > > But neither is really supported on Linux, partially due to the
> > > > odd fetish for SSH/SSL....
> > >
> > > I think that the . . . frequent use of OpenSSH is for very good 
>reasons.
> > >
> > > It is a good, inter operable, Free implementation of a reliable, open
> > > protocol.  It has a good history of not having an excessive number of
> > > security problems.
> >
> > It also eliminates the pressure to implement SSL/TLS in the protocols
> > and software and thus keeps everything at a "barely good enough" stage.
>
>[snip big 'ole rant]
>
>Your whole rant is rendered moot by the fact that I made a typo.  I was, of
>course, talking about Open_SSL_.  In fact I referred to it as a library in
>the first draft of my explanation.
>
>When I said protocol I /meant/ the SSL protocol, not SSH.
>
>Sorry to make you waste a whole rant, Bear!
>
>- -Peter
>
>- --
>/"\ ASCII Ribbon campaign against HTML e-mail
>\ /
>  X   Get my PGP key at http://hutnick.com/pgp
>/ \  6128 5651 6F23 EC17 6EBD  737D 960A 20E6 76CA 8A59
>-----BEGIN PGP SIGNATURE-----
>Version: GnuPG v1.0.6 (GNU/Linux)
>Comment: For info see http://www.gnupg.org
>
>iD8DBQE8xhKhlgog5nbKilkRAqMVAJ4payUnFegrfWYW2z8TC1b1AlS8tgCeMMWi
>pwUdWkL8gzMEdJ2NcOrwnt8=
>=ghi3
>-----END PGP SIGNATURE-----
>
>_______________________________________________
>Web Page:  http://lug.boulder.co.us
>Mailing List: http://lists.lug.boulder.co.us/mailman/listinfo/lug
>Join us on IRC: lug.boulder.co.us port=6667 channel=#colug




_________________________________________________________________
MSN Photos is the easiest way to share and print your photos: 
http://photos.msn.com/support/worldwide.aspx




More information about the LUG mailing list