ML
    • Recent
    • Categories
    • Tags
    • Popular
    • Users
    • Groups
    • Register
    • Login

    Local Encryption ... Why Not?

    Scheduled Pinned Locked Moved IT Discussion
    357 Posts 15 Posters 190.8k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • BRRABillB
      BRRABill @Dashrender
      last edited by

      @Dashrender said:

      What do you mean? you choose the option to print and it didn't print, instead it offered you a PDF?

      Yes.

      I chose PRINT (from WORD ONLINE) and it then said "HERE IS YOUR PDF TO PRINT".

      scottalanmillerS 1 Reply Last reply Reply Quote 0
      • scottalanmillerS
        scottalanmiller @BRRABill
        last edited by

        @BRRABill said:

        @scottalanmiller said:

        If you are using the online version of MS Office, you don't need to pull data down locally to print. So if you were to send me an Excel spreadsheet to print, it would open directly from OWA to Hosted Excel. Then when I tell it to print, it would do it from there. No need for local data for that kind of task, for example.

        When I did that, it made a PDF to download.

        Now, granted, this was the free version of Word, and on a Mac.

        So perhaps it would work as you say with the full version.

        You probably don't have Office 365 with online MS Office. So there is no online tools for you to use.

        1 Reply Last reply Reply Quote 0
        • scottalanmillerS
          scottalanmiller @BRRABill
          last edited by

          @BRRABill said:

          @Dashrender said:

          What do you mean? you choose the option to print and it didn't print, instead it offered you a PDF?

          Yes.

          I chose PRINT (from WORD ONLINE) and it then said "HERE IS YOUR PDF TO PRINT".

          That's super weird!

          DashrenderD 1 Reply Last reply Reply Quote 0
          • scottalanmillerS
            scottalanmiller
            last edited by

            I'd test some more but.... logins for Office 365 appear to be down right now.

            1 Reply Last reply Reply Quote 0
            • DashrenderD
              Dashrender @scottalanmiller
              last edited by

              @scottalanmiller said:

              @BRRABill said:

              @Dashrender said:

              What do you mean? you choose the option to print and it didn't print, instead it offered you a PDF?

              Yes.

              I chose PRINT (from WORD ONLINE) and it then said "HERE IS YOUR PDF TO PRINT".

              That's super weird!

              that's exactly what I was thinking.

              time to make a simple word doc and try it.

              1 Reply Last reply Reply Quote 0
              • DashrenderD
                Dashrender
                last edited by Dashrender

                Holy cow, I got the same thing.

                0_1450220827462_ml2.PNG

                0_1450220780525_ML-wow.PNG

                1 Reply Last reply Reply Quote 0
                • DashrenderD
                  Dashrender
                  last edited by

                  Now my browser does have a PDF viewer enabled in it, so the file opened in the browser, but I'm pretty sure it did download and open locally.

                  This definitely seems odd, but now that I think about it, makes some sense. Because you're not printing the whole browser window, or even a window within the browser, Word (in this case) needs some way to enforce printing format. Forcing it to a PDF and then requiring the user to use a local PDF view to do the printing does make sense...

                  Though i wonder if it would have been better to have the print job open in a new Window formatted as desired, ignoring actual window size, etc... and then launching the browser print option - though I'm guessing there it to much chance that printing would not have the correct formatting.

                  1 Reply Last reply Reply Quote 0
                  • scottalanmillerS
                    scottalanmiller
                    last edited by

                    Very odd. Although I suppose this helps to highlight that if you go to print, you are exposing things. Printing isn't secure - not from the network side nor the paper side. If you are forced to download a PDF, I guess it would help to remind users that they are doing something inherently insecure.

                    But why would it do this rather than printing directly?

                    DashrenderD BRRABillB 2 Replies Last reply Reply Quote 0
                    • DashrenderD
                      Dashrender @scottalanmiller
                      last edited by

                      @scottalanmiller said:

                      But why would it do this rather than printing directly?

                      Did you post this while I was editing my previous post?

                      1 Reply Last reply Reply Quote 0
                      • scottalanmillerS
                        scottalanmiller
                        last edited by

                        Yes

                        1 Reply Last reply Reply Quote 0
                        • DashrenderD
                          Dashrender
                          last edited by

                          What do you think of the possible reasons I posted?

                          1 Reply Last reply Reply Quote 0
                          • scottalanmillerS
                            scottalanmiller
                            last edited by

                            That seems to make sense. By going to PDF you know that you will be able to get an exact copy rather than something "close-ish."

                            1 Reply Last reply Reply Quote 0
                            • BRRABillB
                              BRRABill @scottalanmiller
                              last edited by

                              @scottalanmiller said:

                              Very odd. Although I suppose this helps to highlight that if you go to print, you are exposing things. Printing isn't secure - not from the network side nor the paper side. If you are forced to download a PDF, I guess it would help to remind users that they are doing something inherently insecure.

                              But why would it do this rather than printing directly?

                              Printing can be secure.

                              Our copier is HIPAA compliant.

                              You could also just hang a personal laser printer off the box you want to be secure.

                              My point is that who knows what files these secure browsers are putting on your machine.

                              When I am going across some crazy border as a spy, I want to be sure. (NOTE: I have barely ever left the US.)

                              DashrenderD 1 Reply Last reply Reply Quote 0
                              • DashrenderD
                                Dashrender @BRRABill
                                last edited by

                                @BRRABill said:

                                @scottalanmiller said:

                                Very odd. Although I suppose this helps to highlight that if you go to print, you are exposing things. Printing isn't secure - not from the network side nor the paper side. If you are forced to download a PDF, I guess it would help to remind users that they are doing something inherently insecure.

                                But why would it do this rather than printing directly?

                                Printing can be secure.

                                Our copier is HIPAA compliant.

                                You could also just hang a personal laser printer off the box you want to be secure.

                                My point is that who knows what files these secure browsers are putting on your machine.

                                When I am going across some crazy border as a spy, I want to be sure. (NOTE: I have barely ever left the US.)

                                I have no idea what you're talking about crossing borders...

                                But Scott's point is still valid. Once you print the paper the information is no longer secure. it can go anywhere, everywhere with no tracking.

                                How is your copier HIPPA compliant? Because the drive is encrypted and requires a username/password to get into the drive? Sure that makes it HIPPA compliant, but does not make it secure. If this was a high value target, someone could install a tap on the network connection and probably capture the prints in transit. I'm not aware of any printer that has a driver that uses SSL, though I'm sure there are some out there today.

                                BRRABillB 3 Replies Last reply Reply Quote 0
                                • BRRABillB
                                  BRRABill @Dashrender
                                  last edited by

                                  @Dashrender said:

                                  I have no idea what you're talking about crossing borders...

                                  Was an IT joke. Poor one, perhaps.

                                  Like if I was a spy.

                                  1 Reply Last reply Reply Quote 0
                                  • BRRABillB
                                    BRRABill @Dashrender
                                    last edited by

                                    @Dashrender said:

                                    But Scott's point is still valid. Once you print the paper the information is no longer secure. it can go anywhere, everywhere with no tracking.

                                    Not really. It is still trackable, and considered secure in the US Mail since it is a federal violation to tamper with that.

                                    DashrenderD scottalanmillerS 2 Replies Last reply Reply Quote 0
                                    • BRRABillB
                                      BRRABill @Dashrender
                                      last edited by

                                      @Dashrender said:

                                      How is your copier HIPPA compliant? Because the drive is encrypted and requires a username/password to get into the drive? Sure that makes it HIPPA compliant, but does not make it secure. If this was a high value target, someone could install a tap on the network connection and probably capture the prints in transit. I'm not aware of any printer that has a driver that uses SSL, though I'm sure there are some out there today.

                                      Here is a link to the brand we have.

                                      https://www.konicaminolta.eu/fileadmin/content/eu/Business_Solutions/Products/Security/PDF/SECURITY_WHITEPAPER.pdf

                                      Though I am pretty sure if your network is secured, encryption to the copier is not a big deal. It more the hard drive in case it gets traded back in, as in the 1.7 million dollar fine I mentioned earlier for leaving PHI on copiers.

                                      scottalanmillerS 1 Reply Last reply Reply Quote 0
                                      • DashrenderD
                                        Dashrender @BRRABill
                                        last edited by

                                        @BRRABill said:

                                        @Dashrender said:

                                        But Scott's point is still valid. Once you print the paper the information is no longer secure. it can go anywhere, everywhere with no tracking.

                                        Not really. It is still trackable, and considered secure in the US Mail since it is a federal violation to tamper with that.

                                        what if you don't put it in an envelope? What if you just take it home? what if you make a copy of it? once you have that printout.. you can do anything you want with it.

                                        BRRABillB DashrenderD 2 Replies Last reply Reply Quote 0
                                        • BRRABillB
                                          BRRABill @Dashrender
                                          last edited by

                                          @Dashrender said:

                                          what if you don't put it in an envelope? What if you just take it home? what if you make a copy of it? once you have that printout.. you can do anything you want with it.

                                          If it is paper with PHI, it still has to be protected.

                                          For example, we have questionnaires where the respondent MIGHT put their name on. SO we have to log it into our building, and secure it in a locked cabinet in a locked room.

                                          Just because it is paper doesn't mean you can lose track of it.

                                          DashrenderD 1 Reply Last reply Reply Quote 0
                                          • DashrenderD
                                            Dashrender @Dashrender
                                            last edited by

                                            @Dashrender said:

                                            @BRRABill said:

                                            @Dashrender said:

                                            But Scott's point is still valid. Once you print the paper the information is no longer secure. it can go anywhere, everywhere with no tracking.

                                            Not really. It is still trackable, and considered secure in the US Mail since it is a federal violation to tamper with that.

                                            what if you don't put it in an envelope? What if you just take it home? what if you make a copy of it? once you have that printout.. you can do anything you want with it.

                                            Does this mean we can't use it? Of course not, we have to believe that our staff is trustworthy, or we have to get rid of them. Scott's main point, at least as I saw it, was to simply make you aware of this situation, not to make you worried about it.

                                            1 Reply Last reply Reply Quote 0
                                            • 1
                                            • 2
                                            • 11
                                            • 12
                                            • 13
                                            • 14
                                            • 15
                                            • 16
                                            • 17
                                            • 18
                                            • 13 / 18
                                            • First post
                                              Last post