Does making security too tight weaken overall security


Biff , Friday, 13th of August 2010 11:35:41 AM

This is primarily about computer security but the concept may come from 
Biff
physical security.

l remember hearing somewhere that if you 
Registered User
make entry for authorized users too complex or cumbersome, that overall 
Joined: Saturday, 8th of May 2010, 10:48:33
the system becomes less secure.Do you know of any formal writings on this 
Posts: 550
subject that might make good sources for an proposal or essay?
Viewed 8772 times
/>Here are some examples l can think of:
1.Requiring passwords that 
are so complex and difficult to remember.The user simply writes them on a 
piece of paper next to their computer.
2.Requiring a cumbersome 
series of authentications when logging in.The user, in their frustration, 
simply stops logging out and leave the machine logged in all the time. />3.Physical security example:Entry at the door takes a long time, so 
employees start letting coworkers in through a service entrance or side 
door.
 
 
 
 
 

Tinka Butt , Saturday, 14th of August 2010 07:10:44 PM

Universal Access Control (UAC) in Windows Vista is another  
Tinka Butt
classic example. The prompts become so frequent and annoying that the end  
Registered User
user simply clicks ''Allow'' to everything. Think Pavlov is dog.  
Joined: Wednesday, 12th of May 2010, 10:05:42
 
Posts: 206
Or he just disables the damn thing completely.  
Viewed 12439 times
 
 
 
 
 
Plastic Surgeon Dallas


Who is online

Users browsing this forum: 4 guests