Additionally, document the business costs/issues that arise later down the track (if any). This will allow you to be prepared in case: a) you need to push back against a similar suggestion down the track b) this decision ever comes up for discussion again
Cheers Ken : -----Original Message----- : From: [EMAIL PROTECTED] [mailto:ActiveDir- : [EMAIL PROTECTED] On Behalf Of Hunter, Laura E. : Sent: Saturday, 20 August 2005 9:13 PM : To: [email protected] : Subject: RE: [ActiveDir] Kinda OT: Advice welcomed : : What Deji said. : : Document the risks of what is being done, document what you think would be : a better and more secure solution, and document what you will need to do : on the remainder of your network to compensate for this insecurity (if : that's even possible). Then hand it to this person in two forms - email : and on paper - that are dated and acknolwedged by the recipient. Save all : documentation for a later date, as you're probably going to need it. : : When you're good at your job and take pride in that fact, it's very easy : to take things like this personally...to jump up and down yelling : "AAAGHH!!!! THE STUPID!!!!! IT BURNS LIKE FIRE!!!!!!!!!!!" because you : know you're right. But it's not personal and you can't treat it as such. : Cover yourself and your network by making all concerned parties aware of : the risks of the situation; there's not much else you can do...nothing : that's professionally acceptable, anyway. : : And remember: this is only IT, nobody dies. (Unless you're in a : medical/military/whatever line of work in which someone actually -might-, : in which case use that as a barometer of how loudly you need to make your : objections known.) : : - Laura : : : > -----Original Message----- : > From: [EMAIL PROTECTED] : > [mailto:[EMAIL PROTECTED] On Behalf Of : > [EMAIL PROTECTED] : > Sent: Saturday, August 20, 2005 12:41 AM : > To: [email protected] : > Subject: RE: [ActiveDir] Kinda OT: Advice welcomed : > : > You make your disagreement known to the CIO in a : > corporately-acceptable way - : > and move on. Chalk it down as one of the things numerous IT personnel : > encounter on a very regular basis everyday. : > : > Don't take it personal, is what I tell myself. : > : > : > Sincerely, : > : > Dèjì Akómöláfé, MCSE+M MCSA+M MCP+I : > Microsoft MVP - Directory Services : > www.readymaids.com - we know IT : > www.akomolafe.com : > Do you now realize that Today is the Tomorrow you were worried about : > Yesterday? -anon : > : > ________________________________ : > : > From: [EMAIL PROTECTED] on behalf of Douglas M. Long : > Sent: Fri 8/19/2005 8:38 PM : > To: [email protected] : > Subject: [ActiveDir] Kinda OT: Advice welcomed : > : > : > : > Here's a question for everyone: : > : > : > : > Your CIO decides it is cheaper to host an application : > remotely at a site that : > you know nothing about (and for that reason do not trust). He : > then decides on : > his own that he will just tell the network guy to open port : > 389 to one of : > your production DCs without consulting, or even mentioning it : > to you or : > anyone else that may have something to say about the security : > risks. Then he : > asks you to create a test user account for a junior admin to : > test with, and : > gives the remote site the username and password. List info : http://www.activedir.org/List.aspx List FAQ : http://www.activedir.org/ListFAQ.aspx List archive: http://www.mail-archive.com/activedir%40mail.activedir.org/
