[mod.computers.vax] ACL and Security Alarms

dag%nobbs.ucsb@LBL.ARPA.UUCP (02/21/87)

>>>> Culprits dial bulletin boards, and run up hugh bills.....
>> 
>>Well All I can say in this regard is that you set up a log file
>>for the dial-out-modems. I have had no problem tracing with
>>a combination of ACCOUNTING and jnet's log. as to who was using
>>which equipment. IF catching the culprit red-handed then its another
>>story.
>> 
>>If the ACL does-not work on the modem write a .COM file that will
>>be executed when-ever that modem is used.
>> 
>While the idea of having a command file that is executed everytime the modem
>is used may be reasonable.  I think it can work only if said culprit isn't 
>particularly well acquainted with the system.  
>

It seems like the best way would be to set ACL's on the modems so no-one
could use them without privilege.  Then write a program (or better
yet, modify something VAXNET) that would write the information needed to
a logfile, and make sure the user has the authority to use the port in
question.  This program could then be installed with privileges.  The only
way to get to the modem would be to use the your program.

  --darren


-----------------------------------------------------------------------------
Darren Griffiths                      BITNET   -   DAG@SBITP
Systems Manager                       ARPA     -   DAG%SBPHY@LBL.ARPA
Physics Computer Services             PHYSNET  -   SBPHY::DAG
University of California              UUCP     -   ucbvax!ucsbcsl!dag
Santa Barbara, CA  93106
(805)961-2602