The Student Room Group

Remote Access security issues?

Hi there I'm currently studying for my Graded Unit in admin and IT and I've been given a sample question that I don't quite understand. I was wondering if anyone could explain it to me a bit.
(edited 11 years ago)
- Admin staff shouldn't be sharing logon and password details

- If there are no management protocols in place for files then audit is impossible therefore how would you know if someone was pilfering data

- There's probably a sneaky little security risk in sharing printers that way, if secure dox are being printed then they should be using print stations with password release
Reply 2
Original post by zxcasdqwe
Hi there I'm currently studying for my Graded Unit in admin and IT and I've been given a sample question that I don't quite understand. I was wondering if anyone could explain it to me a bit. I've to identify 4 security issues in the following case study:




I can think identify maybe one and it would just be a security issue with using remote access in general... what am I missing?


any help appreciated.


1) Windows XP operating system - Outdated, and windows is highly hackable/prone to viruses due to its programming structure via email and general networking, Linux would be better.

2) Administrative staff share inkjet printers - Could be on a wireless network, and as it does not state it is internal/not wireless or password protected, this is one possible entry for an advanced hacker by hacking the port.

3) Each employee has a network drive and there are a number of shared drives holding information on clients and insurance companies - It does not state the network is internal, thus I assume its wireless, this is a risk to data protection due to shared drives holding information on clients and insurance companies from outside influence; however the fact that so many members of staff have access to these files gives and their shared components equals another internal risk.

4) Not all administrative staff have the same access to the shared drives. This results in administrative staff sharing logon and password details to be able to access information - This one is self explanatory, sharing logon and password details is directly comprising network security, as it could be shared within internal or external circles.

5) On the shared drives, there are no file management protocols and everyone seems to file information where they themselves think is suitable - No Protocols is a BAD idea, due to anyone in any department from any network could find and access these fairly easy, also is a risk to the data protection act.

I'm by no means doing a computer related degree, quite the opposite... however, I hope this gives you some ideas.
(edited 11 years ago)
Reply 3
thanks alot, things i didnt even consider... but what are the security risks of staff sharing login details
Reply 4
what are you studying shadow, i'm doing business and i'm not great with technology. =/
Reply 5
Original post by zxcasdqwe
thanks alot, things i didnt even consider... but what are the security risks of staff sharing login details


4) Not all administrative staff have the same access to the shared drives. This results in administrative staff sharing logon and password details to be able to access information -

This one is self explanatory, sharing logon and password details is directly comprising network security, as it could be shared within internal or external circles.

It's a remote access risk due to the password's being handed out; thus if the password ends up in the hands of a hacker, the security of the network e.g Firewall would be useless and network security would be seriously comprised.

Original post by zxcasdqwe
what are you studying shadow, I'm doing business and I'm not great with technology. =/


I'm applying for University this year; hoping to gain a place on a Physiotherapy course in September. But I have had lots of personal experience with networking and database (SQL, specifically) security/setup when I was younger as a Lead Moderator on an networking forum. :smile:
(edited 11 years ago)
Hi zxcasdqwe

How did you get on with that sample question last year? I've got it now to do but finding it difficult. We've not got it as a Graded Unit exam sample we've got it as an assessment in Office Technologies class. We've to write it as a report.

Shona
:redface:)
Ive had the same questions any help for solutions would be very appreciated :smile:

Quick Reply

Latest