Smart firms can minimize their risks by conducting weakness appraisals, choosing experienced security personnel and establishin

admin2010-06-11  39

问题     Smart firms can  minimize their risks by conducting weakness appraisals, choosing experienced security personnel and establishing-and then enforcing-robust security policies and procedures.
    First, recruit responsible, experienced network administrators consultants and in-house security officers, experts’ advice. Run background checks on any individuals who will be given privileged access to your company’s computer system, lf your firm lacks the resources to properly monitor security around-the-clock, consider giving the job to a qualified security company.
    Security personnel should conduct regular tests to search for weakness and stay informed of software upgrades and updates, especially for popular programs such as Microsoft Office. Remember, hackers read security bulletins and manufacturer releases shout program flaws, too.
    Finns with slack security are easy prey for what experts call "social engineering" crimes, the oldest form of hacker attacks. In these schemes, individuals assume false identifies (as utility workers, telephone repairers, messengers, or computer technicians) to deceive employees into disclosing their passwords and other information. Some hackers even take temporary positions on night cleaning crews so they can browse files, poke through trash or install devices to extract information.
    To combat such break-ins, instruct employees to report unfamiliar visitors and refrain from typing their password and other confidential data when others are nearby. Company telephone and communications closets should remain locked at all times, too.
    Employees also should be told to fever reveal passwords (even when asked by a network administrator). Other reckless behavior to be avoided includes keeping "password reminders" on monitors, tacked to cork boards, or trader keyboards Under no circumstances should employees select easy-to-guess passwords such as their nickname or the name of their child, spouse, pet or car
    Whenever possible, encourage employees to create seven-character passwords consisting of small and capital letters, numbers and symbols. Such passwords prove tough for hackers; they can take months to crack. Conversely, short four-letter passwords, composed entirely of small letters, are straightforward to crack and can be deduced in only a few minutes. Hackers sometimes employ "dictionary attacks"--running programs that lay every word in the dictionary--to crack passwords.
    One solution to password management problems is what’s called "two-factor access." Employees are given security tokens that display regularly changing information that must be typed during log-in. The employees then type their own password to further verify their identity.
According to the author, password management problems may______.

选项

答案be solved in different ways

解析 参见文章第七段和第八段,介绍的都是密码管理方法。第八段大意是:解决密码管理问题的方法之一是所谓的“双重代理访问”。给予工作人员安全代码,在登录时,需要键入这些显示定期改变信息的代码。然后工作人员需键入他们自己的密码,以便进一步证实其身份。既然是“方法之一”,那就暗示解决密码管理问题有各种方法。
转载请注明原文地址:https://kaotiyun.com/show/0vKK777K
0

最新回复(0)