Domain: disa.mil
Stories and comments across the archive that link to disa.mil.
Stories · 4
-
Trump National Security Adviser Michael Flynn Had 'Forbidden' Internet Connection At the Pentagon, Says Report (businessinsider.com)
According to The New Yorker, President-elect Donald Trump's national security advisor, retired Lt. Gen. Michael Flynn, installed a secret internet connection into his office at the Pentagon even though it was "forbidden." Business Insider reports: The network connection was among other rules the former chief of the Defense Intelligence Agency broke because he found them to be "stupid," including sometimes sneaking out of a CIA station in Iraq without authorization and sharing classified information with NATO allies without approval, according to The New Yorker. While Flynn -- who was recently tapped to be President-elect Donald Trump's national security adviser -- apparently had his own private connection, the New Yorker profile doesn't provide a clear picture as to why. It's likely his Pentagon office already had an authorized, unclassified connection to the internet called NIPRNet, which is separate from classified networks such as SIPRNet and JWICS, a former DIA analyst told Business Insider. All of those networks are monitored in some way. A separate, unknown network would not have had the same -- or possibly any -- level of monitoring. If it were implemented in secret, it would also not have the same protections from hackers that a known connection would have. It's also possible that Flynn's Pentagon office was known as a SCIF, or sensitive compartmented information facility -- a secure facility in which intelligence can be discussed without fear of it being compromised. Network connections in SCIFs are closely controlled, and outside electronics such as mobile phones are not allowed inside. -
First Android Device Certified For DoD Personnel
aneroid writes "The Defense Information Systems Agency (DISA) has certified its first secure mobile device running Android 2.2 — the Dell Streak 5. It is certified for use in the Defense Department's secure but unclassified communications. 'Although the Streak 5 is no longer available commercially, Dell is supplying it to DOD because the military likes the form factor,' said John Marinho, director of Dell enterprise mobility solutions. It 'includes a set of Android application interfaces designed to enhance the security of the device. Besides being able to transmit secure unclassified messages, the device can have its data remotely wiped in the event of loss or theft.' The device also has the ability to lock down after multiple unsuccessful password entries and allows admins to remotely control the peripherals and security policy levels on the device. You may recall that President Obama got an NSA-certified phone-PDA to use instead of his BlackBerry. We also discussed a related article last year about the U.S. Army considering smartphones. So, how soon will we start seeing other smartphone vendors bid for secure-communications-devices contracts?" -
US Fed Gov. Says All Music Downloads Are Theft
BenEnglishAtHome writes "Nearly all US government employees and contractors are subject to mandatory annual information security briefings. This year the official briefing flatly states that all downloaded music is stolen. The occasionally breathless tone of the briefing and the various minor errors contained therein are funny but the real eye-opener is a 'secure the building' exercise where employees stumble across security problems and resolve them. According to the material, the correct response to an employee who is downloading music is to shout 'That's stealing!' No mention is made of more-free licenses, public domain works, or any other legitimate download. If this were a single agency or department that had made a mistake in their training material it might not be so shocking. But this is a government-wide training package that's being absorbed by hundreds of thousands of federal employees, both civilian and military. If you see a co-worker downloading music, they're stealing. Period. Who woulda thunk it? Somebody should mirror this. Who wants to bet that copies will become hard to find if clued-in technogeeks take notice and start making noise?" Warning: this site gives a whole new meaning to "Flash heavy." -
Linux and DII/COE Compliance?
swestbrook asks: "I would like to know if there are any efforts out there to submit a Linux distribution or the kernel at large for U.S. governmental testing to see if it will be certified to be Defense Information Infrastructure Common Operating Environment (DII/COE) compliant. I am a program manager for a very small program in the U.S. Air Force and would like to be able to use Linux as a possible platform for my standard systems. However, I cannot because regulations require me to use only operating systems that are DII/COE compliant. Information on DII/COE compliance can be found at here. Until it is officially certified I can not rehost applications on a Linux platform. Any information would be greatly appreciated."