<?xml version="1.0" encoding="ISO-8859-1"?>
<?xml-stylesheet type="text/xsl" href="http://ideajam.net/ideajam/p/ij.nsf/rsstransform.xslt"?>
<rss version="2.0">
<channel>
	<language>en-us</language>
	<lastBuildDate>Fri, 24 May 2013 18:32:49 +0000</lastBuildDate>
	<title>IdeaJam(tm) : Disable to open or copy mails in the mail.box</title>
	<description>An RSS feed generated by IdeaJam(tm) for Disable to open or copy mails in the mail.box</description>
	<link>http://ideajam.net/ideajam/p/ij.nsf</link>
	<image>
	    <title>IdeaJam(tm) : Disable to open or copy mails in the mail.box</title>
	    <url>http://ideajam.net/ideajam/p/ij.nsf</url>
	    <link>http://ideajam.net/ideajam/p/ij.nsf/LogoSquare.gif?OpenImageResource</link>
	</image>
	<item>
		<pubDate>Thu, 17 Dec 2009 11:34:49 +0000</pubDate>
		<title>Domino Server / Security: Disable to open or copy mails in the mail.box</title>
		<description>&lt;b&gt;Author:&lt;/b&gt; Marius Jaeger&lt;br&gt;&lt;b&gt;Tags:&lt;/b&gt;  &lt;a href="http://ideajam.net/IdeaJam/P/ij.nsf/ProductByCategory?openview&amp;restricttocategory=mail"&gt;mail&lt;/a&gt;  &lt;a href="http://ideajam.net/IdeaJam/P/ij.nsf/ProductByCategory?openview&amp;restricttocategory=disable"&gt;disable&lt;/a&gt;  &lt;a href="http://ideajam.net/IdeaJam/P/ij.nsf/ProductByCategory?openview&amp;restricttocategory=mail.box"&gt;mail.box&lt;/a&gt; &lt;br&gt;&lt;b&gt;Idea:&lt;/b&gt; 
&lt;div&gt;Any domino administrator can open mails in the mail.box or can copy mails from the mail.box into an other database.&lt;/div&gt;
&lt;div&gt;It is not necessary for any administrator to do this.&lt;/div&gt;
&lt;div&gt;&amp;nbsp;&lt;/div&gt;
&lt;div&gt;So disable open documents and copy documents in the mail.box.&lt;/div&gt;
&lt;div&gt;&amp;nbsp;&lt;/div&gt;&lt;br&gt;</description>
		<link>http://ideajam.net/ideajam/p/ij.nsf/0/D666E84C4C9FB9888625768F003F9D0E?OpenDocument</link>
	</item>
	<item>
		<pubDate>Thu, 17 Dec 2009 13:59:40 +0000</pubDate>
		<title>re: Disable to open or copy mails in the mail.box</title>
		<description>&lt;b&gt;Author:&lt;/b&gt; Craig Wiseman&lt;br /&gt;&lt;b&gt;Comment:&lt;/b&gt; From an admin perspective, this is so massively useful in troubleshooting that I can't click the Demote button hard enough.&lt;br /&gt;&lt;br /&gt;That's what the ACL on the mail.box(es) is for.&lt;br /&gt;&lt;br /&gt;Darn it, guess I need a new mouse. Apparently I CAN click the demote button hard enough.....&lt;br /&gt;</description>
		<link>http://ideajam.net/ideajam/p/ij.nsf/0/D666E84C4C9FB9888625768F003F9D0E?opendocument&amp;#commentsanc&amp;id=6D694668580CB6618625768F004CDFFF</link>
	</item>
	<item>
		<pubDate>Thu, 17 Dec 2009 14:55:34 +0000</pubDate>
		<title>re: Disable to open or copy mails in the mail.box</title>
		<description>&lt;b&gt;Author:&lt;/b&gt; Peter Presnell&lt;br /&gt;&lt;b&gt;Comment:&lt;/b&gt; Craig is right, the ACL should provide the necessary protection without inventing additional functionality. &lt;br /&gt; &lt;br /&gt; I would also like to point out that a primary role of Administrators is to keep the mail flowing in an organization. At the end of the day you need to trust someone to do that job. Almost every administrator has rights to edit server documents and hence can give themselves Full Access Administrations rights even if they don't already have it. Most already do, which means they can read any mail file and generate any e-mail message they want even without the need to access the Mail.Box directly. I think its implicit that we must trust that Administrators are doing the right thing by your company. If you have sensitive mail you don't want someone else to be reading Encrypting the e-mail is perhaps the only way to ensure privacy.&lt;br /&gt;</description>
		<link>http://ideajam.net/ideajam/p/ij.nsf/0/D666E84C4C9FB9888625768F003F9D0E?opendocument&amp;#commentsanc&amp;id=56A5C5D24469E44A8625768F0051FE03</link>
	</item>
	<item>
		<pubDate>Thu, 17 Dec 2009 16:00:45 +0000</pubDate>
		<title>re: Disable to open or copy mails in the mail.box</title>
		<description>&lt;b&gt;Author:&lt;/b&gt; Gregg Eldred&lt;br /&gt;&lt;b&gt;Comment:&lt;/b&gt; I agree with Craig and Peter's argument. I've demoted this.&lt;br /&gt;</description>
		<link>http://ideajam.net/ideajam/p/ij.nsf/0/D666E84C4C9FB9888625768F003F9D0E?opendocument&amp;#commentsanc&amp;id=07F94DD95E88B5A68625768F0057F5D9</link>
	</item>
	<item>
		<pubDate>Thu, 17 Dec 2009 19:14:17 +0000</pubDate>
		<title>re: Disable to open or copy mails in the mail.box</title>
		<description>&lt;b&gt;Author:&lt;/b&gt; Marius Jaeger&lt;br /&gt;&lt;b&gt;Comment:&lt;/b&gt; For troubleshooting you never must read the body and attachments of a mail in the mail.box.&lt;br /&gt;&lt;br /&gt;Encrypting sensitive mails isn't the solution when you want that the routing is secure for any mails.&lt;br /&gt;</description>
		<link>http://ideajam.net/ideajam/p/ij.nsf/0/D666E84C4C9FB9888625768F003F9D0E?opendocument&amp;#commentsanc&amp;id=8F990DA9D525A6738625768F0069AD97</link>
	</item>
	<item>
		<pubDate>Thu, 17 Dec 2009 19:34:46 +0000</pubDate>
		<title>re: Disable to open or copy mails in the mail.box</title>
		<description>&lt;b&gt;Author:&lt;/b&gt; Craig Wiseman&lt;br /&gt;&lt;b&gt;Comment:&lt;/b&gt; @4 There have been hundreds of times when I cut/copied email from one server's mail box to another's in order to assist in troubleshooting mail delivery issues.&lt;br /&gt;&lt;br /&gt;The act of cutting/copying the email to the clipboard makes it possible to paste it anywhere, including a mail file for review. Encrypting the mail does stop this use.&lt;br /&gt;&lt;br /&gt;Hire trust-worthy folks, and properly secure your environment from untrustworthy ones. Basic security.....&lt;br /&gt;</description>
		<link>http://ideajam.net/ideajam/p/ij.nsf/0/D666E84C4C9FB9888625768F003F9D0E?opendocument&amp;#commentsanc&amp;id=4AAFB2EB9FA643AD8625768F006B8DEB</link>
	</item>
	<item>
		<pubDate>Fri, 18 Dec 2009 08:22:16 +0000</pubDate>
		<title>re: Disable to open or copy mails in the mail.box</title>
		<description>&lt;b&gt;Author:&lt;/b&gt; Rob Goudvis&lt;br /&gt;&lt;b&gt;Comment:&lt;/b&gt; I agree with those who state that the ACL should handle this.&lt;br /&gt;&lt;br /&gt;But I understand the thoughts behind this Idea. I have worked in an organization where there were over 40 people with full admin rights to the whole system. That is of course far more than required.&lt;br /&gt;</description>
		<link>http://ideajam.net/ideajam/p/ij.nsf/0/D666E84C4C9FB9888625768F003F9D0E?opendocument&amp;#commentsanc&amp;id=FB0DAC4319051BDE86257690002DFC1E</link>
	</item>
	<item>
		<pubDate>Fri, 18 Dec 2009 08:51:37 +0000</pubDate>
		<title>re: Disable to open or copy mails in the mail.box</title>
		<description>&lt;b&gt;Author:&lt;/b&gt; Marius Jaeger&lt;br /&gt;&lt;b&gt;Comment:&lt;/b&gt; @5 I see, you need the possibility to copy mails form one mail.box into other an other mail.box&lt;br /&gt;&lt;br /&gt;Would it be a solution when we encrypt the notes network trafik, that the mails in the mail.box are automatically encrypted by the router task.&lt;br /&gt;&lt;br /&gt;When the router task store the mail into an other database it should decrypt the mail.&lt;br /&gt;&lt;br /&gt;</description>
		<link>http://ideajam.net/ideajam/p/ij.nsf/0/D666E84C4C9FB9888625768F003F9D0E?opendocument&amp;#commentsanc&amp;id=F1D2C2D679CA5DA4862576900030ABED</link>
	</item>
	<item>
		<pubDate>Fri, 18 Dec 2009 13:15:07 +0000</pubDate>
		<title>re: Disable to open or copy mails in the mail.box</title>
		<description>&lt;b&gt;Author:&lt;/b&gt; Craig Wiseman&lt;br /&gt;&lt;b&gt;Comment:&lt;/b&gt; @7 - I understand the situation you've outlined, and it's hard to deal with it. It's essentially a "people problem" we're trying to solve with a technology solution.&lt;br /&gt;&lt;br /&gt;The encryption idea is a start, but I can think of a number of situations where that might not work as we'd like.&lt;br /&gt;&lt;br /&gt;Shining a bright light is a useful way to deal with this is. Perhaps via much more detailed logging of admin access to the mail.boxes. If every time you read/copied an email from the mail.box logged an entry like &lt;br /&gt;"12/15/2009 03:43:32 AM Bob Evilman read/copied a message from mail1.box FROM Bill Boss, subject 'Employee Reviews'"&lt;br /&gt;that might cut down on any inappropriate activity, without restricting valid admin uses.&lt;br /&gt;</description>
		<link>http://ideajam.net/ideajam/p/ij.nsf/0/D666E84C4C9FB9888625768F003F9D0E?opendocument&amp;#commentsanc&amp;id=78B5CB8BBCFE295D862576900048CB8D</link>
	</item>
	<item>
		<pubDate>Mon, 21 Dec 2009 09:52:54 +0000</pubDate>
		<title>re: Disable to open or copy mails in the mail.box</title>
		<description>&lt;b&gt;Author:&lt;/b&gt; Marius Jaeger&lt;br /&gt;&lt;b&gt;Comment:&lt;/b&gt; I work in a cluster of different companys with hundreds of domino servers.&lt;br /&gt;The servers are administrated from the companys itself on different locations.&lt;br /&gt;&lt;br /&gt;Only what we want is a secure mail routing without mail encryption.&lt;br /&gt;&lt;br /&gt;There are many reasons why we can't use mail encryption.&lt;br /&gt;For example: We can't scanning encrypted attachment for viruses.&lt;br /&gt;&lt;br /&gt;</description>
		<link>http://ideajam.net/ideajam/p/ij.nsf/0/D666E84C4C9FB9888625768F003F9D0E?opendocument&amp;#commentsanc&amp;id=A0F8994DEA38F3A78625769300364833</link>
	</item>
</channel></rss>
