This blog covers all sorts of issues of interest to me, including information security, network security, data security - and all other fun things security.
I think I mentioned it before, but it helps to repeat: sometimes, your users' passwords will show up in logs, alongside the usernames.
If you are under HIPAA and username/password combos are considered PHI, then logs also become PHI ... think about it.
Posted by
Dr Anton Chuvakin
at
5:19 PM
Labels: compliance, logs, security, tips
0 comments:
Post a Comment