Windows 7
(1)
Techtips
(1)
Adviser
(1)
UAC
(1)

Win 7 UAC and Passwords

Asked By Sparky
16-Nov-09 09:58 PM
About to take delivery of a new Win7 box and I am curious about assigning
passwords

I found this page

http://unixwiz.net/techtips/win7-limited-user.html

Which includes an interesting paragraph

Curiously enough, it is not always necessary to have a password on an
account. Since an account with a blank password cannot be accessed over the
network, you can substantially reduce the attack surface of a machine this
way.

But this requires that you have good control of physical security over the
machine: if there are users on the machine (or in the environment) who are
not allowed to perform administrative duties, it would be a poor idea to
have a blank password because it would allow anybody to walk up to the
computer and go to town.

In addition, a laptop that leaves the house is probably not a good candidate
for a blank password because physical security is seriously problematic.

For most home users, it probably does not really matter that much how you
choose your password schemes, but if you have any questions about this,
please present your scenario to a trusted security adviser for guidance.

I intend to create an Admin account and a Standard user account  ( for daily
use )

Under those conditions , do I really need to assign passwords during the
initial setup ?

Thanks

Yes. Assign passwords and good ones. Especially for the admin account.

Charlie Russel - MVP replied to Sparky
17-Nov-09 12:35 AM
Yes. Assign passwords and good ones. Especially for the admin account. If
you actually run in a standard user account, and want to leave that one
blank, I do not see a huge problem with that, given that you understand the
limitations.

--
Charlie.
http://msmvps.com/blogs/russel

Makes sense....thanks a bunch !

Sparky replied to Charlie Russel - MVP
17-Nov-09 12:52 AM
Makes sense....thanks a bunch !
Post Question To EggHeadCafe