[ale] [OT] Good Server Documentation - Best Practices
James P. Kinney III
jkinney at localnetsolutions.com
Wed Jan 29 21:07:39 EST 2003
Yeah, but if the only person with the root password gets hit by a bus...
At Emory, we had an envelope that was sealed that contained root and
admin passwords. But the paper inside had "match the machine to the
password" diagram. Machines on the left, big space, passwords on the
right. Then there were hand drawn line to connect the two. The passwords
were not in order as the machines. Then we tore the paper in half
lengthwise. one half went in a separate envelope. The halves were stored
in separate locations.
I had a copy of the entire list encrypted with a large key on my palm
pilot using gnu-keyring. So did the NT guy. We also had the password set
on the palm pilots so it was locked after a short time. The only way to
unlock it was to hard reset it, which wiped it. The database copy on the
backups was stored encrypted on the PC. Gnu-keyring would only run on
the pilot OS so it would have been very difficult to unlock it with out
a palm. Which would be a terrible environment to brute force from :)
Probably could have done it with the palm simulator for linux, though.
But my password was nearly 30 characters of complete gibberish.
On Wed, 2003-01-29 at 18:47, Jeff Hubbs wrote:
> On Wed, 2003-01-29 at 18:38, Dow Hurst wrote:
> > I've got a bound notebook with the essential stuff in case I die so the
> > research project can be picked up by someone else.
> >
> > Essentials are *****root passwds*****...
>
> Oooooh, <shiver>
>
> _______________________________________________
> Ale mailing list
> Ale at ale.org
> http://www.ale.org/mailman/listinfo/ale
--
James P. Kinney III \Changing the mobile computing world/
CEO & Director of Engineering \ one Linux user /
Local Net Solutions,LLC \ at a time. /
770-493-8244 \.___________________________./
GPG ID: 829C6CA7 James P. Kinney III (M.S. Physics) <jkinney at localnetsolutions.com>
Fingerprint = 3C9E 6366 54FC A3FE BA4D 0659 6190 ADC3 829C 6CA7
This is a digitally signed message part
More information about the Ale
mailing list