|
Security ...
The security on PLUS and BATCH services is based on the sucessful
coherence of the following factors:
- The IT division takes care of the state of the system and
does it's best to protect the data against unauthorized individuals
outside CERN
- The user is not exposing access to the services to other individuals
The must is that you behave within a certain set of rules in
order to be allowed to use the system.
See the following (you have signed to accept this set of rules
if you have an account at CERN or if you are working on a computer
connected to the CERN network):
Especially the Operational Circular No. 5
- defines all the possible allowed user's behavior at CERN network
as well as on PLUS and BATCH services
- in details it discusses the Internet use, CERN Network and
Email use
- it also defines the possibilities of using the CERN resources
for personal matters
- last, but not least it defines the sanctions resulted from
deliberated violation of these rules
Another, preferred approach how to use the resources, is to follow
a couple of simple recommendations:
- use secure protocols like ssh and scp in favour
of non-secure ones, like ftp and telnet (security/ssh)
- X sessions: lock the screen when not present
- choose a hard-to-guess password (security/password)
and keep it safe
(are you sure that your network is safe, when accessing CERN
from your network institute ? Use secure protocols !)
- keep your files protected (security/ftp)
For any general enquiry about security, please go to CERN Security
(http://cern.ch/security).
| Note on Private use of CERN
computing facilities |
The Operational
Circular No. 5 states that CERN provides computing
facilities ONLY for professional duties as defined by the
user's divisional hierarchy.
However, personal use of computing facilities is tolerated
provided:
- it is in compliance with the Operational Circular
No. 5 and not detrimental to official duties, including
those of other users
- the frequency and duration is limited and there is a
negligible use of CERN resources (incl. printers etc.)
- it does not constitute a political, commercial and/or
profit-making activity
- it is not inappropriate or offensive
- it does not violate applicable laws
The Circular provides that the Director General shall have
discretion in deciding whether these conditions are met.
Users of CERN computing facilities are hereby informed
that the consultation of pornographic web sites through
CERN computing facilities (including the network) is not
appropriate.
Furthermore, they are reminded that consultation
of web sites containing illicit materials (in particular
relating to paedophilia or inciting to violence, discrimination
and racism) is in violation of applicable laws in CERN's
Host States. Such consultations are therefore strictly forbidden. |
|