[EAS] Password Cracking Basics

Alex Hartman goober at goobe.net
Thu Feb 14 23:05:37 CST 2013


Dave,

We can beat the dead horse entirely, but at some point, people are
still lazy. :)

I think we've gotten the point across to most about the layered
security approach and people are starting to ask questions, which is a
good thing.

My only (maybe last, and i'm sure some are saying thankfully) concern
is with equipment that is in direct line with the air chain, be it TV,
radio, etc. EAS, STL, IP codec, the transmitter itself these days,
etc. Those should have a little different ruleset internally IMO.
Those are typically things the DJs and office staff never need to
touch or play with, thus should live in a world of their own with
respects to security. I know most popular products out there today
have an admin login and user login, but rarely do i see anyone set
things up for the "user" account and just let people loose with the
admin accounts all willy nilly. Even with physical access, user rights
should be set up. Many stations i walk into today still have "1,1,1,1"
as the password to the Endec... never changed.

--
Alex Hartman
 
 



More information about the EAS mailing list