Re: Disk Utility/encrypted images - choices



In <wayne.morris-74C7BD.00230016102008@xxxxxxxxxxxxxxxxxxxxxxxxx>, Wayne C....:

That, or he's set it to automatically log him in when his Mac is booted.
Either way, it means he has chosen to use less security.

I believe that that is also default behavior. One has to deliberately go in and set this system to not log in to the first account (which is also an admin account) by default.

I do wish Apple would encourage better security habits. But I don't think that the choices that they've made are outrageous for a typical home desktop system.

I also put tighter security on portables. The desktops don't have "password required after screen saver or sleep", but my portable does.

Also on my daughter's machine I only have one account (an admin account) for myself, while on machines that I use more frequently, I have two accounts for myself, admin and regular.

So it is hard to know what the defaults should be. People use different machines in different ways. A typical home user who isn't afraid of other people in the house doing something they oughtn't may be fine with the default set up (until the cat comes along).

Cheers,

-j

--
Jeffrey Goldberg http://www.goldmark.org/jeff/
I rarely read top-posted, over-quoting or HTML postings.
http://improve-usenet.org/
.



Relevant Pages

  • Re: How good is Comodo Internet Security?
    ... Admin account + web browser + LUA token ... admin account opposed of running as iam now, which is JUST PURE admin level? ... While LUA gives added security, ... payload delivered by a buffer overrun (assuming the app was allowed to ...
    (comp.security.firewalls)
  • Re: Active Directory Security
    ... Although you can lock the admin account as soon as the valid password for the admin account is provided the system automatically unlocks this special account and allows it to log on. ... >> There is plenty of security in place to protect your assets in AD.>> Users ...
    (microsoft.public.windows.server.active_directory)
  • Re: SSHD revelaing too much information.
    ... >> Uh, Kris Kennaway was the first to respond to you on -stable, and the ... everyone makes mistakes and him being the security officer doesn't make him ... Anyone who administers a small number of machines can keep ... You're going to audit services on machines you don't have an account on? ...
    (FreeBSD-Security)
  • Re: renaming administrator account
    ... > This is why renaming the administrator account is more security theater than ... it gives more than just a theater. ... i have had sometimes and admin account called "guest" and guest account ...
    (microsoft.public.windows.server.security)
  • Re: passwords Service accounts and services
    ... access the other processes run with that account. ... install then being in Users and defaults will probably be enough). ... want to have an agent installed on all serviced machines, ... and particularly security look bad when you apply the ...
    (microsoft.public.windows.server.security)

Loading