Additionally, document the business costs/issues that arise later down the
track (if any). This will allow you to be prepared in case:
a) you need to push back against a similar suggestion down the track
b) this decision ever comes up for discussion again

Cheers
Ken

: -----Original Message-----
: From: [EMAIL PROTECTED] [mailto:ActiveDir-
: [EMAIL PROTECTED] On Behalf Of Hunter, Laura E.
: Sent: Saturday, 20 August 2005 9:13 PM
: To: [email protected]
: Subject: RE: [ActiveDir] Kinda OT: Advice welcomed
: 
: What Deji said.
: 
: Document the risks of what is being done, document what you think would be
: a better and more secure solution, and document what you will need to do
: on the remainder of your network to compensate for this insecurity (if
: that's even possible).  Then hand it to this person in two forms - email
: and on paper - that are dated and acknolwedged by the recipient.  Save all
: documentation for a later date, as you're probably going to need it.
: 
: When you're good at your job and take pride in that fact, it's very easy
: to take things like this personally...to jump up and down yelling
: "AAAGHH!!!! THE STUPID!!!!! IT BURNS LIKE FIRE!!!!!!!!!!!" because you
: know you're right.  But it's not personal and you can't treat it as such.
: Cover yourself and your network by making all concerned parties aware of
: the risks of the situation; there's not much else you can do...nothing
: that's professionally acceptable, anyway.
: 
: And remember: this is only IT, nobody dies.  (Unless you're in a
: medical/military/whatever line of work in which someone actually -might-,
: in which case use that as a barometer of how loudly you need to make your
: objections known.)
: 
: - Laura
: 
: 
: > -----Original Message-----
: > From: [EMAIL PROTECTED]
: > [mailto:[EMAIL PROTECTED] On Behalf Of
: > [EMAIL PROTECTED]
: > Sent: Saturday, August 20, 2005 12:41 AM
: > To: [email protected]
: > Subject: RE: [ActiveDir] Kinda OT: Advice welcomed
: >
: > You make your disagreement known to the CIO in a
: > corporately-acceptable way -
: > and move on. Chalk it down as one of the things numerous IT personnel
: > encounter on a very regular basis everyday.
: >
: > Don't take it personal, is what I tell myself.
: >
: >
: > Sincerely,
: >
: > Dèjì Akómöláfé, MCSE+M MCSA+M MCP+I
: > Microsoft MVP - Directory Services
: > www.readymaids.com - we know IT
: > www.akomolafe.com
: > Do you now realize that Today is the Tomorrow you were worried about
: > Yesterday?  -anon
: >
: > ________________________________
: >
: > From: [EMAIL PROTECTED] on behalf of Douglas M. Long
: > Sent: Fri 8/19/2005 8:38 PM
: > To: [email protected]
: > Subject: [ActiveDir] Kinda OT: Advice welcomed
: >
: >
: >
: > Here's a question for everyone:
: >
: >
: >
: > Your CIO decides it is cheaper to host an application
: > remotely at a site that
: > you know nothing about (and for that reason do not trust). He
: > then decides on
: > his own that he will just tell the network guy to open port
: > 389 to one of
: > your production DCs without consulting, or even mentioning it
: > to you or
: > anyone else that may have something to say about the security
: > risks. Then he
: > asks you to create a test user account for a junior admin to
: > test with, and
: > gives the remote site the username and password.
List info   : http://www.activedir.org/List.aspx
List FAQ    : http://www.activedir.org/ListFAQ.aspx
List archive: http://www.mail-archive.com/activedir%40mail.activedir.org/

Reply via email to