Re: How do I disable the clipboard in Windows XP



As a follow-up to my earlier comments, if your users are actually using a
clear-text repository such as text files for their credentials, I suggest
that you educate them about the security ramifications of that procedure,
and introduce them to one or more of the secure techniques that are
available through third-party applications designed to solve the problem.

Tom Dacon
Dacon Software Consulting

"Tom Dacon" <tdacon@xxxxxxxxxxxxxxxx> wrote in message
news:OhNkcuVRHHA.3592@xxxxxxxxxxxxxxxxxxxxxxx
As I replied to Rinze below, disabling this capability would be a real
disservice to a lot of people. As I said in that response, and I repeat to
you:

A lot of people use third-party applications such as PasswordSafe to hold
all their passwords in an encrypted store for which they need to remember
only a single strong password. Such applications offer the clipboard as an
easy means of entering difficult-to-type passwords into forms and other
places where passwords need to be entered. A well-behaved application of
this nature clears the clipboard after the operation has been completed.

These applications typically offer a feature that will randomly generate
extremely strong passwords. Naturally a password like that can be nearly
impossible to remember, and VERY difficult to enter via the keyboard. So
copy and paste is a very clean way to convey the password from the
encrypted store to the forum.

These are very useful applications, since these days a person can have a
hundred or more sets of credentials for online shopping, user accounts at
other types of web sites, and so forth (I personally have about 150 such
sets of credentials in my PasswordSafe database). It would be a shame for
an application developer to interfere with this. I urge you to consider
this issue carefully before you disable your user's access to such a
helpful means of managing credentials. They won't love you for it.

PasswordSafe is on sourceforge.net, and is free for personal use. I
recommend it highly. Of course there are many others besides this one.

Tom Dacon
Dacon Software Consulting

"Michael 03" <Michael 03@xxxxxxxxxxxxxxxxxxxxxxxxx> wrote in message
news:158624F4-38C7-4E2E-B253-728BBF2B31C2@xxxxxxxxxxxxxxxx
I need to disable the clipboard function in Windows XP. We are having a
problem with users using CTRL+C in one program, then using CTRL+V in
another.
Specifically, they type their password into notepad, copy it to the
clipboard, then paste it in another program. The other program runs on
Windows XP. Obviously, the correct answer is to have the creators of the
other program to disable pasting in a password field, but they are
reluctant
to change it.

Is there a registry key or a group policy setting that can disable the
copy
and paste functionallity for Windows XP Pro? If we knew if this
existed, we
could generate a script to run to disable the clipboard when the user
logs
onto the computer.




.



Relevant Pages

  • Re: How do I disable the clipboard in Windows XP
    ... Disabling the clipboard ... Some programs use the clipboard internally to do stuff. ... A lot of people use third-party applications such as PasswordSafe to hold ... Dacon Software Consulting ...
    (microsoft.public.dotnet.general)
  • Re: How do I disable the clipboard in Windows XP
    ... As I replied to Rinze below, disabling this capability would be a real ... A lot of people use third-party applications such as PasswordSafe to hold ... this nature clears the clipboard after the operation has been completed. ... sets of credentials in my PasswordSafe database). ...
    (microsoft.public.dotnet.general)
  • RE: Application to Application authentication models....
    ... checksum of the memory of the app, and block all non-kernel access to ... Either you have to store the real credentials on the server, ... > I accept that this may be the case for web applications per machines. ... Again, you gotta have *something* on the filesystem, or in some way ...
    (SecProg)
  • Passing authentication credentials from portal to application using IIS 6
    ... to custom ASP.Net applications via custom built webparts. ... credentials which are authenticated via Active Directory. ... application via a redirect URL by examining the server variables sent in the ...
    (microsoft.public.dotnet.framework.aspnet.security)
  • Error 998 when running from remote server
    ... credentials to get a response] ... I've got several applications which fail to run from a remote server. ...
    (microsoft.public.dotnet.languages.vc)