Re: CRIME Remote User System Validation

From: Joe St Sauver (JOE@private)
Date: Thu Mar 04 2004 - 17:41:09 PST

  • Next message: Andrew Plato: "RE: CRIME Remote User System Validation"

    Hi Derek,
    
    #I would like start a discussion in reference to the validation of rem=
    #ote users anti-virus DAT files, patch levels, installed software and =
    #so on. 
    
    The concerns you raise really touch on a couple of different issues -- 
    in some cases, one can empirically scan user systems and externally 
    ascertain whether they're still vulnerable to known exploits, or have
    applied required critical updates (at least if they *don't* have a 
    software or hardware firewall in place). 
    
    In the case of antivirus updates (at least for retail A/V products), and 
    when it comes to auditing installed software, etc., that implies a level 
    of access that isn't possible in a distributed model where users aren't
    running a managed desktop and aren't required to login to a central server 
    (unless you're assuming that a reporting agent gets installed on each end 
    user system). Is that the sort of scenario you've got in mind?
    
    Regards,
    
    Joe
    



    This archive was generated by hypermail 2b30 : Thu Mar 04 2004 - 18:09:05 PST