On Fri, Jan 30, 2009 at 02:50:01PM +0100, Michael Krygier wrote:
SANS Audit Check list for BS ISO/ IEC 27001:2005
15.1.5 Prevention of misuse of information processing facilities
Whether a log-on a warning message is presented on the computer screen prior to log-on. Whether the user has to acknowledge the warning and react appropriately to the message on the screen to continue with the log-on process.
Oh hell. Those are probably the same idiots that make it a big fuss about when you don't deliberately break the internet by blocking all ICMP messages on your Firewalls. Or where the disclosure of the correct time is considered a security risk.
Why the hell do such organisations apply US idiocy to the sane world.
</rant>