[mod.computers.vax] VMS security issues

ta2@VIRGINIA.CSNET (tom allebrandi) (02/26/86)

I know that we've been around this issue but I don't remember that
it got resolved.

The question is - how to we trade security sensitive issues without
telling the whole world?

I have seen mention of some national clearing house for such things
but don't know anymore about it. Can someone enlighten me?

I also have a proposal, how about suggesting to DEC that the TSC
computer allow customers to send mail to each other? This way we
could trade customer numbers and discuss such issues that way. Anyone
who has access to the TSC computer has access to anything that DEC has
published about VMS - holes and all - so this seems to me a resonable
way to attack the problem. Am I missing something obvious? (outside of
the fact that not everyone has TSC access.)

Mail me your opinions. If reponse is sufficient I'll a) summarize to
the net and b) submit an enhancment spr to dec and post the call number
so that others may post similar spr's.

Tom #-}
...............
tom allebrandi, general electric automation controls operations
ta2@edison.uucp
edison!ta2%virginia@csnet-relay.arpa
(804) 978-5566
...............