Re: [MSEide-MSEgui-talk] Idea - protection from key loggers

2011-12-06 Thread IvankoB for-mse
A firewall cannot normally analyze email contents, e.g. === Me'm a network administrator as an additional duty so has some experience :) As a solution, IPTABLES may restrict traffic to known-pointport-2-known-pointport. Also OpenVPN solution adds more security since stabilizes

Re: [MSEide-MSEgui-talk] Idea - protection from key loggers

2011-12-04 Thread Martin Schreiber
On 12/04/2011 03:15 PM, IvankoB for-mse wrote: How about an option to draw virtual keyboard (with related chars) at password entry widget ? It will greatly protect encrypted RSA keys,.. Sure not in an OS window otherwise it can be intercepted by hacked API. Good idea. Entering the password

Re: [MSEide-MSEgui-talk] Idea - protection from key loggers

2011-12-04 Thread IvankoB for-mse
calling OS provided ones (designed for disabled people recovering passwords) is highly discouraged. Because their layouts are predefined and they're present by OS windows whose drawing/pointer operations can be grabbed by viruses. 2011/12/4, IvankoB for-mse ivankob4m...@gmail.com: How about

Re: [MSEide-MSEgui-talk] Idea - protection from key loggers

2011-12-04 Thread Sieghard
Hallo IvankoB, Du schriebst am Sun, 4 Dec 2011 19:15:54 +0500: How about an option to draw virtual keyboard (with related chars) at password entry widget ? It will greatly protect encrypted RSA keys,.. Sure not in an OS window otherwise it can be intercepted by hacked API. You cannot avoid

Re: [MSEide-MSEgui-talk] Idea - protection from key loggers

2011-12-04 Thread IvankoB for-mse
if someone has found a way to hijack the grafic system of your machine = Also a network firewall on LINUX-based LAN router can be used to prevent from accessing virus's remote desktop servers (to view/grab GUI windows) on infected win-32 machines and sending stolen data from

Re: [MSEide-MSEgui-talk] Idea - protection from key loggers

2011-12-04 Thread IvankoB for-mse
Anyway, either virtual keyboard or password changed each logon with sending confirmation SMS etc (needs external services) or USB-tokens (not a cheap solution) or callback (can't be used for DB logon etc). 2011/12/5, IvankoB for-mse ivankob4m...@gmail.com: if someone has found a way to hijack