Security on the Mac

by Matt@Smalldog.com (posted By Ed, written by Matt@Smalldog.com)

A very vigilant customer bought a new Mac Mini over the weekend at our Burlington store to replace his Dell running Windows XP Pro. After identity theft, virus infestations, spyware slowdowns, and incessant blue screens of death, he was excited about moving over to the Mac. However, his experience with his Dell was so scarring that he simply could not trust that the Mac was an almost impenetrable platform straight out of the box.

He got the computer home, turned it on, and connected to his existing wireless network using the setup assistant. First stop on the new Mac was the firewall settings of the Sharing Preference Pane. He discovered that the firewall was disabled, and, in a panic, enabled it and went straight to the computer’s logs to make sure no one had invaded his brand new computer. First thing Monday morning, I received a call from the customer, who was convinced his Mac was compromised. I could not convince him otherwise, and agreed to replace the machine outright as a good faith measure.

We sat down together in the store and set up the replacement computer offline, enabling the firewall, installing AntiVirus software, and doing software updates off of CDs before letting the machine connect to the internet.

We’re always happy to help customers as much as possible, but I’d like to put it out there: you do not need antivirus software, you don’t need expensive hardware and/or software firewalls, and there is no such thing as adware or spyware for the mac. Period. Set a complex password for all accounts that includes letters, numbers, symbols, capitals, and lower-case characters. Make it 20 characters long if you like. And then breathe normally, and savor the peace of mind that comes with owning a Mac.

Password strength analyzer: the key icon next to the field where you’d enter password, like the accounts Preference Pane.

FileVault:

http://www.apple.com/macosx/features/filevault

Encrypted disk images:

http://docs.info.apple.com/article.html?artnum=107333

Secure trash emptying:

“http://docs.info.apple.com/article.html?path=Mac/10.4/en/mh475.html”

Similar Posts

  • De-authorize your iTunes Account Before Hardware Repair or Sale

    Pretty much everyone has downloaded media from the iTunes store, but not too many of us know just how iTunes keeps track of computer authorization. Every device on the internet has at least two unique identifiers: a MAC address and an IP address.

    MAC is an acronym for Media Access Control. Many believe that Mac, the abbreviation for Macintosh, should be written with capital letters – this is incorrect. Likewise, iPod – not iPOD or IPOD; iMac – not iMAC or IMAC; etc. Network interfaces have MAC addresses; Macintoshes can be called Macs.

    Since your MAC address is completely unique, it’s the ideal way for iTunes to know that you’re authorized to play purchased content on any given machines. Trouble is, your ethernet port is part of the main logic board, which requires replacement in some repairs. With a new main logic board comes a new MAC address, which confuses iTunes and some other, generally high-end, software.

    You’re allowed to authorize up to five computers at any one time to play your purchased content, but replacing your logic board changes the MAC address. If you didn’t de-authorize before repair, you’ve lost 20% of your available authorizations. I made this mistake a few years ago when I had to replace the logic board in a Mac Mini hooked up to my television, and when I sold my iBook. I also lost an authorization when my two-week-old PowerBook G4 flew off the roof of my car at highway speed. Thankfully, iTunes allows you to de-authorize all computers on your account once annually.

    I only have one Machine these days, a 17-inch MacBook Pro, so this hasn’t been a problem of late for me. It’s a common question asked our technical support team, and a good fix to file in your troubleshooting arsenal.

    The full details from Apple can be found here: http://support.apple.com/kb/HT1420

  • MacFuse and MacFusion

    Ever since I moved to the Mac I had the need for a GUI SSH client. As much as love using command line…

  • Automator Action – Maintenance

    Here’s an Automator Action that could come in handy. I’ve run the periodic clean-up and it worked like a champ! Requires Mac OS…

  • Software RAID In OS X Leopard

    I really enjoy how easy Tiger and Leopard makes setting up RAIDs. A RAID is essentially a collection of hard drives connected together….