[unisog] designing a password management system for privileged accounts

Michael Holstein michael.holstein at csuohio.edu
Thu Oct 20 20:53:01 GMT 2005


> We have yet to decide exactly what technology we will use as we are
> still finalising the requirements.

This is a *perfect* case for setting up your own CA and doing 
authentication with certificates on a token (your pick .. smart card, 
USB fob, whatever..).

The only problem with that is how to deal with non-network situations 
(eg: single user, win2k recovery console, etc). That's another discussion...

Regards,

Michael Holstein CISSP GCIA
Cleveland State University


More information about the unisog mailing list