TechTips / Security


Partner TechTip: Remember the IFS! PDF Print E-mail
Tips & Techniques - Security
Written by Robin Tatam   
Friday, 13 July 2012 00:00

Eliminate IFS vulnerability and make security risks disappear.

robin tatamWritten by Robin Tatam

Ask any security professional which area of IBM i security is most often ignored and the response will likely be "the Integrated File System." Although it's been around since V3R1, the IFS remains a shrouded mystery that represents significant risk.

Last Updated on Friday, 13 July 2012 00:00
Read more...
 
User Rating: / 1
PoorBest 
TechTip: Audit Your Exit Points PDF Print E-mail
Tips & Techniques - Security
Written by Jean-Paul Lamontre   
Friday, 06 July 2012 00:00

Did the previous administrator leave the machine clean, or did he leave a time bomb somewhere?

jean-paul lamontreWritten by Jean-Paul Lamontre

Suppose it's the beginning of a new year, and the first time the human resources manager logs into payroll, he unknowingly sends the file of annual salaries to an email address it shouldn't go to, by directly Telnet-ing port 25, something discreet and undetectable.

Last Updated on Friday, 06 July 2012 00:00
Read more...
 
TechTip: DSPSSTUSR: Get Quick Information About Your Service Tools Accounts PDF Print E-mail
Tips & Techniques - Security
Written by Steve Pitcher   
Friday, 11 May 2012 00:00

IBM i 6.1 and 7.1 gave us many new commands and functions, including Display Service Tools User ID (DSPSSTUSR), which is very useful and should be part of your regularly scheduled security audits.

steve_pitcherWritten by Steve Pitcher

System Service Tools (SST) accounts can perform moderate maintenance on your Power Systems and IBM i operating system. You can work with disk configuration and partitions, view the product activity log, and much more. Dedicated Service Tools (DST) require the system to be in manual mode and allow you access to additional functions, such as working with the Licensed Internal Code (LIC). The same accounts are set up to access both SST and DST. Ideally, you want to ensure that these Service Tools accounts are under the watchful eye of your most trusted administrators. Any oddities should be investigated.

Last Updated on Friday, 11 May 2012 07:38
Read more...
 
User Rating: / 1
PoorBest 
Partner TechTip: IBM i Security: Nine Years of the Same Scary Story? PDF Print E-mail
Tips & Techniques - Security
Written by Robin Tatam   
Friday, 11 May 2012 00:00

PowerTech readies the 2012 "State of IBM i Security" study.

robin_tatamWritten by Robin Tatam

Since 2004, when we published the first edition of PowerTech's popular security study, we've seen many exciting enhancements in the operating system we now call IBM i. Unfortunately, when it comes to changes in the configuration of the server's security controls, the story is much darker.

Last Updated on Friday, 11 May 2012 00:00
Read more...
 
User Rating: / 1
PoorBest 
Partner TechTip: Is Your IBM i "House" Built on a Solid Foundation? PDF Print E-mail
Tips & Techniques - Security
Written by Robin Tatam   
Friday, 13 April 2012 00:00

PowerTech Compliance Monitor 3 lets you preview the effect of security level changes.

robin_tatamWritten by Robin Tatam

Each year, PowerTech's popular "State of IBM i Security" study reports on the assigned value of the IBM security system value, QSECURITY. While many systems now are running at the IBM recommended minimum level of 40, there are still numerous organizations that are running at level 30 and even (gasp!) level 20.

Last Updated on Tuesday, 10 April 2012 12:43
Read more...
 
Partner TechTip: The Road to Security: Evaluate Your Server for Free PDF Print E-mail
Tips & Techniques - Security
Written by Robin Tatam   
Friday, 02 March 2012 00:00

PowerTech's Compliance Assessment performs a valuable service to hundreds of IBM i shops each year.

robin_tatamWritten by Robin Tatam

With the New Year and a new operating budget, it's time for many companies to start a security project. However, based on some of the calls I've received recently, there remains a lack of clear direction regarding the tasks and priorities.

Last Updated on Friday, 02 March 2012 00:00
Read more...
 
User Rating: / 1
PoorBest 
Partner TechTip: Our System Administrator Did WHAT? PDF Print E-mail
Tips & Techniques - Security
Written by Robin Tatam   
Friday, 20 January 2012 00:00

Are your powerful users accountable for their actions?

robin_tatamWritten by Robin Tatam

One of the greatest challenges an organization faces when securing an IBM i environment is protecting the system from the very people who are charged with its care: programmers, administrators, and security officers. While these power users often need access to restricted objects and commands, they rarely need that level of access 24 hours a day—and definitely not without accountability.

Last Updated on Tuesday, 17 January 2012 13:24
Read more...
 
Partner TechTip: What's Your Compliance Score? PDF Print E-mail
Tips & Techniques - Security
Written by Robin Tatam   
Friday, 16 December 2011 00:00

PowerTech Compliance Monitor scorecards make easy work of a tedious, but critical, task.

robin_tatamWritten by Robin Tatam

One of the most common requests I receive from customers is a way to provide the management team and auditors with a simple dashboard-type report of a system's configuration and its conformance with a baseline policy. For single systems, this can be a time-consuming task, prone to human error. When there are tens, or even hundreds, of system partitions, the work involved can become prohibitive.

Last Updated on Friday, 16 December 2011 00:00
Read more...
 
User Rating: / 1
PoorBest 
<< Start < Prev 1 2 3 4 5 6 7 8 9 10 Next > End >>

Page 2 of 16

WHITE PAPERS

The following White Papers can be found at the MC White Paper Center

 

 


   MC-STORE.COM