0 *H 010 *H 0 *H $ Content-Type: multipart/mixed; boundary="----=_NextPart_000_00B3_01C612C7.13E626C0" X-MS-TNEF-Correlator: E02A1DB2BE12C601 This is a multi-part message in MIME format. ------=_NextPart_000_00B3_01C612C7.13E626C0 Content-Type: text/plain; charset="us-ascii" Content-Transfer-Encoding: 7bit Kathy, Defining a policy is not the hardest thing. Basically depending on the size of the organization, it's culture, risks and asset values. A common standard is 8 digit strong passwords with a 90 days validity for user accounts will survive any audit below "National Security". 12 digit strong pw's for sysadmin accounts with a lifetime of 45 days also is considered sufficient. Enforcing this is not a problem anymore as well. Simply set the systems password lifecycle accordingly. The real problem lies in the fact that the average person has 20! Userid/password combinations to remember, including pin numbers and private (mail etc.) accounts. Changing accounts often will impose a security risk rather then removing one. There is plenty to find regarding solving that issue as well, but it for sure is more work. Think: Single signon solutions such as radius and ACE. Password phrases in stead of passwords ("no more password changes this month please" becomes "nmpctmp" or, even better "NmpCtmP). Use 4 for a and 3 for e, things like that. Hope this helps. Regards, Koos Varkevisser, CISSP, ISSMP | Information Security Officer | GOIS/MSC Amsterdam Unisys | Tupolevlaan 1 | 1119NW Schiphol-rijk | +31 20 5263947 THIS COMMUNICATION MAY CONTAIN CONFIDENTIAL AND/OR OTHERWISE PROPRIETARY MATERIAL and is thus for use only by the intended recipient. If you received this in error, please contact the sender and delete the e-mail and its attachments from all computers. -----Original Message----- From: kathy.kirk@prudential.com [mailto:kathy.kirk@prudential.com] Sent: donderdag 5 januari 2006 22:50 To: security-management@securityfocus.com Subject: Service Account Pswd Mgt I've been asked how managing service accounts works in other organizations. What is your policy for changing Service Account passwords? Is it based on an event (e.g., administrator leaves the company) and or a time requirement (e.g., every 90 days). If your organization does change Service Account passwords, is it consistent across the organization? How do you enforce your policy? By Service Account, I'm referring to system IDs used to perform backups, automate FTPs, run applications, jobs, scripts, etc. thanks, kathy ------=_NextPart_000_00B3_01C612C7.13E626C0 Content-Type: application/ms-tnef; name="winmail.dat" Content-Transfer-Encoding: base64 Content-Disposition: attachment; filename="winmail.dat" leJ8+Ii4MAQaQCAAEAAAAAAABAAEAAQeQBgAIAAAA5AQAAAAAAADoAAEIgAcAGAAAAElQTS5NaWNy b3NvZnQgTWFpbC5Ob3RlADEIAQYABwABAAAAAAAAAQOQBgDYFQAAMgAAAAsAAgABAAAAAwAmAAAA AAALACsAAAAAAAMALgAAAAAAAgExAAEAAABGAAAAAAAAAGjGYUAMTGZHmaiyK42GhWsHAGExlY5E d9MRqRgAEFobKYYAAATlxD0AAL+I32nZ4ohLm+UWDbK5eoUAAAOnFskAAAAAHgBwAAEAAAAZAAAA U2VydmljZSBBY2NvdW50IFBzd2QgTWd0AAAAAAIBcQABAAAAGwAAAAHGErUtT0dd2KqhwUZ6k6rE 7J5vd3IAACAfAAALAAEOAQAAAAIBJw4BAAAAdAAAAAgAAwAAAAAAAQAvjEAAAABQAAAAAAAAABQA AAACACwAAQAAAAEQJAC/Dx8AAQUAAAAAAAUVAAAACToqJLR7czSDPStGqBgBAAECAAAAAAAFIAAA ACACAAABBQAAAAAABRUAAAAJOioktHtzNIM9K0YBAgAACwBiDgAAAAADAHkOAQAAAAsA8hABAAAA HgDzEAEAAAAjAAAAUkUlM0EgU2VydmljZSBBY2NvdW50IFBzd2QgTWd0LkVNTAAACwD0EAAAAAAL APUQAAAAAAsA9hAAAAAAAgEUOgEAAAAQAAAAb25bP83pbECzekP3ZrKB3gMA3j+fTgAAAwDxPwkE AAAeAPg/AQAAABIAAABWYXJrZXZpc3NlciwgS29vcwAAAAIB+T8BAAAAUgAAAAAAAADcp0DIwEIQ GrS5CAArL+GCAQAAAAAAAAAvTz1VTklTWVMvT1U9TkxBTVMvQ049UkVDSVBJRU5UUy9DTj1WQVJL RVZJU1NFUiwgS09PUwAAAAIB+z8BAAAAUgAAAAAAAADcp0DIwEIQGrS5CAArL+GCAQAAAAAAAAAv Tz1VTklTWVMvT1U9TkxBTVMvQ049UkVDSVBJRU5UUy9DTj1WQVJLRVZJU1NFUiwgS09PUwAAAAMA GUAAAAAAAwAaQAAAAAADAAlZAQAAAAMAA4AIIAYAAAAAAMAAAAAAAABGAAAAABCFAAAAAAAACwAE gAggBgAAAAAAwAAAAAAAAEYAAAAABoUAAAAAAAALAAaACCAGAAAAAADAAAAAAAAARgAAAAAOhQAA AAAAAAsAEIAIIAYAAAAAAMAAAAAAAABGAAAAAAOFAAAAAAAAAwARgAggBgAAAAAAwAAAAAAAAEYA AAAAAYUAAAAAAAALACyACCAGAAAAAADAAAAAAAAARgAAAAAUhQAAAQAAAAMAaYAIIAYAAAAAAMAA AAAAAABGAAAAABiFAAAAAAAACwC4gAggBgAAAAAAwAAAAAAAAEYAAAAAgoUAAAEABIALAB8OAQAA AAIB+A8BAAAAEAAAALmI3iMYe51PvTqkaS2cBKgCAfoPAQAAABAAAABoxmFADExmR5mosiuNhoVr AwD+DwUAAAADAA00/T8FAAMADzT9PwUAAgEUNAEAAAAQAAAAVJShwCl/EBulhwgAKyolFx4A+j8B AAAAEgAAAFZhcmtldmlzc2VyLCBLb29zAAAAAgEJEAEAAAAoBwAAJAcAAPUKAABMWkZ1pSZSWwMA CgByY3BnMTI14jIDQ3RleAVBAQMB9/8KgAKkA+QHEwKAD/MAUARWPwhVB7IRJQ5RAwECAGNo4QrA c2V0MgYABsMRJfYzBEYTtzASLBEzCO8J97Y7GB8OMDURIgxgYwBQMwsJAWQzNhZQC6YgS+BhdGh5 LAqiCoQKgA5EARALgAuAZyBhICZwBvAN4HkgBAAgbmZvBUAdEGUgE+EBAHPDH4IeYS4gQmEN0QdA 1mwfEAEAcAnwZB5iAiCTH5MAkHplHVRvZh+TXQWwZwBwIpAdAGkCICwJHyB0JwQgY3VsdM0IcGUk UAUQc2sEIABwzmQekAQQFCAgdgdAClD6cyCwQSSwA3AEYAOgIDAvJbELEx1yHzE4IWBpZ78kcCdR A2AecQqwBBB3BbDeZAQgA/AdEB6RORZQJ6DWeQQgJlFpIcB0HxACEL0FwHUUEAXAANAFoHUCMBcp 4iEwHVRzCHB2aXYnH8AAcB8QYXUrMSBi5mUXsAfgIk4kAwdABlF3JMAFECtQIiCwDiAojXePJJEr gSzlKsBhZG0LgPcsCiojHuBmFCAHcSIAIzDMNDUqlAdAc28fIgWg7wCBBIEJgCJwdQEgDeAIkOUC MC4dVEVuK4E2QB5xPyBhBCAfNR6hA2ACYGVtvy2yBGAYICXhKfAucGwgsP5TB3ALUB8QJhIiQyrA DrC8bXMdVClmM3MfAGM4wL8sAwsgHmEhQCCwHVRUH7F/GCAvMTiGHuAHkTJRH6JmLwDQH4IdAB+T YS2QcmH+Zx/AIZAUACIRE+AEIAHQ2iEdVFUr0SsgLzvXJvHuYguAJAMEIHQ08BggB4D3BtAEkCRR bjzALhEpMjJR/G51ROIllDiALYAdACK1jigAwAMRFCBjLiksB/0gsEMT4B5wHmMsJiMgDrDvA6As oh8gOjBvFBAekRQQ/y+EJUMdVEEQH6EFwB+hA6DtRKFvLXAh42U9tj3XOVH/HzELUDZhHxBEcR4x JdAYIP8jsD1DInAG8E2jQFMEAQpQ8zl2JFBidVHRBUAxaCUBdx8iOTMpoWsgsD4wC4Br3jodVDoQ PXEiYmcfYCdB/wbwUvBEIy1AE9A5ckEQIcCjK8Alo0FDRSCwUDvm/HBoQRAUED9zOyEyIDQB8zt8 BCAoIh9gVFRDGEkivweRN6MnISohT5FZkSIuUb8m8QeRW6A6MEAgOjAiIsX9RRFlLZADoC5gAkAS gS7A5TowQ19AUCkgsEKhNDD3K3MeoCWyMytzJSEgYwQgPR7gax/AQFI2lR1USG9nIZA3lB+wbHAm oB1aUu1Qk3MdS047IAMwAZE9xeRLb0sQIFYKwGOwLXCDJgFFEUNJU1NQJFCpasFNUGjAfGjASTcS 5wDAJBIvVyBPNhISgWuCVEdPasAvBeBDHVRB3ztQYKEnoDjgaOlVAwAx8Xlrc1R1HsFgIAtgA5Ex xWtzMXHQOU5XBgAT0JUFIGgG8C0FEGpra3McKzNxcBzBDkA2MzncNDdo6WjaPdVIasASIABPTU1V TklDQZBUSU9OBdBBWXZRME5UQUl3IHeBRklEREV3oElBTBDATjBEL09SbQB2EEVSSldqwEVYwFJP eeBJskV3sFJZHVR3QFR5cP94kiWyHzEdEFgRK4UiASFB/mJP4R+xC4BKUQEAUGI2QG9F4DZiaxAj MHkIYH4CZf8tgSfVN6QDoASQA2BFEV30/zUyAZBAIyJhfbIr8SXBAQDnOMAOsB+TZS1Hw3uDLHD3 HVQdAIGhaAeALGIDUjSx+wMgJvFwUvBBcT2xdR4dVLotiEJPBRBJUS8xTQeQLzIQQTCIQx1URgNh OiCiax0CLmtpVNBAOICXLhA2YQcxLibxIFtHwu1EcDqKr4u2XT3FBmACMH2KgGQCIASBJ6AegDRQ apUAcHUKwGlCATA2QgD4Mjo1AUA95IygS2eDofcvIEEwhTJAS3YCECTAJqDjJvFVdXViagWQjwEG YX8tcG1QEMAsJFjAA+Al0E3kZ3QdWkknLZEuYEph/yDgY7Al0HKQB+CSQ1DjlQV/LBhUwT9zH3BM 0iOaZdZX/1G0fuIFwB7FK4Jcwx5ilP79KWc/axA30S5BWZFaUQuQ74SEgHFgMQVAKE4QIKAkUP8y IwQAKQAdAAWxXgEtkF0i/4FSOjAtwUhRJcFiAzPDGCB8cXWNMJKTR1Wh5GAhcv8fECp1YWF+xJrs jyEHkVzE/55OWp0kUaATNUM7IZXBAND/A2AEESNen+Bk8AfgjzB+478J8DciH8Ccwjt1HtM/HVru Qh8QlP1rASc44BggM6DfgKA3YzTwOwRrEEQEICvBnyXQRHFBYWvioFFja3DAn2cWLgBEcGwRH8BG VJXw9yUxLFAekHALUCEBRBMkUP5qOKCroQT0q6FIEh1aQFEvVUBnFozDHVp9vEACAR6BgHY6Tnq3 0BGdpQDAT9ZWhQEAAAAsAAAASQBuAHQAZQByAG4AZQB0ACAAQwBoAGEAcgBzAGUAdAAgAEIAbwBk AHkAAAABAAAA/AgAAEthdGh5LA0KDQpEZWZpbmluZyBhIHBvbGljeSBpcyBub3QgdGhlIGhhcmRl c3QgdGhpbmcuIEJhc2ljYWxseSBkZXBlbmRpbmcgb24gdGhlIHNpemUNCm9mIHRoZSBvcmdhbml6 YXRpb24sIGl0J3MgY3VsdHVyZSwgcmlza3MgYW5kIGFzc2V0IHZhbHVlcy4gQSBjb21tb24gc3Rh bmRhcmQNCmlzIDggZGlnaXQgc3Ryb25nIHBhc3N3b3JkcyB3aXRoIGEgOTAgZGF5cyB2YWxpZGl0 eSBmb3IgdXNlciBhY2NvdW50cyB3aWxsDQpzdXJ2aXZlIGFueSBhdWRpdCBiZWxvdyAiTmF0aW9u YWwgU2VjdXJpdHkiLiAxMiBkaWdpdCBzdHJvbmcgcHcncyBmb3INCnN5c2FkbWluIGFjY291bnRz IHdpdGggYSBsaWZldGltZSBvZiA0NSBkYXlzIGFsc28gaXMgY29uc2lkZXJlZCBzdWZmaWNpZW50 Lg0KRW5mb3JjaW5nIHRoaXMgaXMgbm90IGEgcHJvYmxlbSBhbnltb3JlIGFzIHdlbGwuIFNpbXBs eSBzZXQgdGhlIHN5c3RlbXMNCnBhc3N3b3JkIGxpZmVjeWNsZSBhY2NvcmRpbmdseS4gDQpUaGUg cmVhbCBwcm9ibGVtIGxpZXMgaW4gdGhlIGZhY3QgdGhhdCB0aGUgYXZlcmFnZSBwZXJzb24gaGFz IDIwIQ0KVXNlcmlkL3Bhc3N3b3JkIGNvbWJpbmF0aW9ucyB0byByZW1lbWJlciwgaW5jbHVkaW5n IHBpbiBudW1iZXJzIGFuZCBwcml2YXRlDQoobWFpbCBldGMuKSBhY2NvdW50cy4gQ2hhbmdpbmcg YWNjb3VudHMgb2Z0ZW4gd2lsbCBpbXBvc2UgYSBzZWN1cml0eSByaXNrDQpyYXRoZXIgdGhlbiBy ZW1vdmluZyBvbmUuIA0KDQpUaGVyZSBpcyBwbGVudHkgdG8gZmluZCByZWdhcmRpbmcgc29sdmlu ZyB0aGF0IGlzc3VlIGFzIHdlbGwsIGJ1dCBpdCBmb3INCnN1cmUgaXMgbW9yZSB3b3JrLiBUaGlu azoNClNpbmdsZSBzaWdub24gc29sdXRpb25zIHN1Y2ggYXMgcmFkaXVzIGFuZCBBQ0UuIFBhc3N3 b3JkIHBocmFzZXMgaW4gc3RlYWQgb2YNCnBhc3N3b3JkcyAoIm5vIG1vcmUgcGFzc3dvcmQgY2hh bmdlcyB0aGlzIG1vbnRoIHBsZWFzZSIgYmVjb21lcyAibm1wY3RtcCINCm9yLCBldmVuIGJldHRl ciAiTm1wQ3RtUCkuIFVzZSA0IGZvciBhIGFuZCAzIGZvciBlLCB0aGluZ3MgbGlrZSB0aGF0Lg0K DQpIb3BlIHRoaXMgaGVscHMuDQoNClJlZ2FyZHMsDQoNCiANCg0KICAJDQpLb29zIFZhcmtldmlz c2VyLCBDSVNTUCwgSVNTTVAgIHwgIEluZm9ybWF0aW9uIFNlY3VyaXR5IE9mZmljZXIgIHwgIEdP SVMvTVNDDQpBbXN0ZXJkYW0gCQ0KVW5pc3lzICB8ICBUdXBvbGV2bGFhbiAxICB8ICAxMTE5Tlcg U2NoaXBob2wtcmlqayAgfCAgKzMxIDIwIDUyNjM5NDcJDQogCQ0KDQpUSElTIENPTU1VTklDQVRJ T04gTUFZIENPTlRBSU4gQ09ORklERU5USUFMIEFORC9PUiBPVEhFUldJU0UgUFJPUFJJRVRBUlkN Ck1BVEVSSUFMIGFuZCBpcyB0aHVzIGZvciB1c2Ugb25seSBieSB0aGUgaW50ZW5kZWQgcmVjaXBp ZW50LiBJZiB5b3UgcmVjZWl2ZWQNCnRoaXMgaW4gZXJyb3IsIHBsZWFzZSBjb250YWN0IHRoZSBz ZW5kZXIgYW5kIGRlbGV0ZSB0aGUgZS1tYWlsIGFuZCBpdHMNCmF0dGFjaG1lbnRzIGZyb20gYWxs IGNvbXB1dGVycy4gCQ0KDQoNCi0tLS0tT3JpZ2luYWwgTWVzc2FnZS0tLS0tDQpGcm9tOiBrYXRo eS5raXJrQHBydWRlbnRpYWwuY29tIFttYWlsdG86a2F0aHkua2lya0BwcnVkZW50aWFsLmNvbV0g DQpTZW50OiBkb25kZXJkYWcgNSBqYW51YXJpIDIwMDYgMjI6NTANClRvOiBzZWN1cml0eS1tYW5h Z2VtZW50QHNlY3VyaXR5Zm9jdXMuY29tDQpTdWJqZWN0OiBTZXJ2aWNlIEFjY291bnQgUHN3ZCBN Z3QNCg0KSSd2ZSBiZWVuIGFza2VkIGhvdyBtYW5hZ2luZyBzZXJ2aWNlIGFjY291bnRzIHdvcmtz IGluIG90aGVyIG9yZ2FuaXphdGlvbnMuDQpXaGF0IGlzIHlvdXIgcG9saWN5IGZvciBjaGFuZ2lu ZyBTZXJ2aWNlIEFjY291bnQgcGFzc3dvcmRzPyBJcyBpdCBiYXNlZCBvbg0KYW4gZXZlbnQgKGUu Zy4sIGFkbWluaXN0cmF0b3IgbGVhdmVzIHRoZSBjb21wYW55KSBhbmQgb3IgYSB0aW1lIHJlcXVp cmVtZW50DQooZS5nLiwgZXZlcnkgOTAgZGF5cykuIElmIHlvdXIgb3JnYW5pemF0aW9uIGRvZXMg Y2hhbmdlIFNlcnZpY2UgQWNjb3VudA0KcGFzc3dvcmRzLCBpcyBpdCBjb25zaXN0ZW50IGFjcm9z cyB0aGUgb3JnYW5pemF0aW9uPyBIb3cgZG8geW91IGVuZm9yY2UgeW91cg0KcG9saWN5Pw0KDQpC eSBTZXJ2aWNlIEFjY291bnQsIEknbSByZWZlcnJpbmcgdG8gc3lzdGVtIElEcyB1c2VkIHRvIHBl cmZvcm0gYmFja3VwcywNCmF1dG9tYXRlIEZUUHMsIHJ1biBhcHBsaWNhdGlvbnMsIGpvYnMsIHNj cmlwdHMsIGV0Yy4NCg0KdGhhbmtzLA0Ka2F0aHkNCg0KAgEKDgEAAAAuAAAAAAAAAGjGYUAMTGZH maiyK42GhWsBAGExlY5Ed9MRqRgAEFobKYYAAATlxD8AAAAAAgF/AAEAAAARAAAARTAyQTFEQjJC RTEyQzYwMQAAAAADAAYQL2x2XwMABxAiBwAAAwAQEAAAAAADABEQAAAAAB4ACBABAAAAZQAAAEtB VEhZLERFRklOSU5HQVBPTElDWUlTTk9UVEhFSEFSREVTVFRISU5HQkFTSUNBTExZREVQRU5ESU5H T05USEVTSVpFT0ZUSEVPUkdBTklaQVRJT04sSVRTQ1VMVFVSRSxSSVMAAAAAln8= 1 ------=_NextPart_000_00B3_01C612C7.13E626C0-- V00J a 0  *H 010U UIS-IntB-CA0 040624172208Z 100624173208Z0Y10 &,dcom10 &,dunisys10 &,duis10U UIS-IsuB1-CA00  *H 0CF&\BE\R{+wupfQr{1ӟݹiNDы>2S~/yڍwK|!NPB3ښ5$\@30I6 K`00U00UFt@]G(B>H0 U0 +70 +7  SubCA0U#0ye%C >}]gQz0U00,http://uispki.unisys.com/rep/UIS-IntB-CA.crl,http://pkirep.unisys.com/rep/UIS-IntB-CA.crl,ldap://pkildp.unisys.com/rep/UIS-IntB-CA.crl0+008+0,http://uispki.unisys.com/rep/UIS-IntB-CA.crt08+0,http://pkirep.unisys.com/rep/UIS-IntB-CA.crt08+0,ldap://pkildp.unisys.com/rep/UIS-IntB-CA.crt0  *H [ ~(L!;f CX>GڥL om@0v^/ V5 37uxL|^5.#`ȕ}j?:L#y{d v oLIdtCNh> /n ʜ0d0͠7M0  *H 01 0 UUS10U  Entrust.net1;09U 2www.entrust.net/CPS incorp. by ref. (limits liab.)1%0#U (c) 1999 Entrust.net Limited1:08U1Entrust.net Secure Server Certification Authority0 040521125708Z 060721132708Z010U UIS-IntB-CA00  *H 0Wa <;TMaӮ c?c{NOת#jmka GR)9xׁ/$|d,cM`LpF*Ħ 蕄_N!༣H(~۪R{50\hmV-0 0U007U00.0,*(&http://www.entrust.net/CRL/server1.crl0U% 0 +0 `HB 0*U !000U 0(0&+http://www.entrust.net/CPS0U 00+0For use solely with S/MIME certificates issued by Unisys Inc. to authorized subscribers. DOES NOT represent any endorsement by Entrust Inc. or its affiliates as to the identity of any certificate holder.0 U0U#0bU= kPb0Uye%C >}]gQz0 *H}A 0 V5.00  *H DMԶNMc8lB/ʺgOx>=J\Ά6bnYwJ]0AW&v4>sn/r ]^)!\}Aa`&v/33aЂ+ked e@0o0ؠ _DI0  *H 0Y10 &,dcom10 &,dunisys10 &,duis10U UIS-IsuB1-CA0 050125124230Z 070125124230Z0K10UVarkevisser, Koos1-0+ *H  koos.varkevisser@nl.unisys.com00  *H 0jHWǨ}7>R; O\H-qHt }QcwY-21zQ5udYKl̫CMȊ9|ùLHԀW/~^gTʺӞW̯6J0F0U0US ΏɆ)m0> +710/'+7).%1d0U#0Ft@]G(B>H0mUf0d0b`^-http://uispki.unisys.com/rep/UIS-IsuB1-CA.crl-ldap://pkildp.unisys.com/rep/UIS-IsuB1-CA.crl0+x0v09+0-http://uispki.unisys.com/rep/UIS-IsuB1-CA.crt09+0-ldap://pkildp.unisys.com/rep/UIS-IsuB1-CA.crt0U% 0 +0aU Z0X0V `H00H0F+:http://uispki.unisys.com/rep/0 +7 0 0 +0)U"0 koos.varkevisser@nl.unisys.com0  *H P[-KE=NUl"`QDt U\0!u/Gl˿^4/}rTvrr*MG"3 &߫VG _6 y$&|:ClI00 f t0  *H 0Y10 &,dcom10 &,dunisys10 &,duis10U UIS-IsuB1-CA0 050415132158Z 070415132158Z0K10UVarkevisser, Koos1-0+ *H  koos.varkevisser@nl.unisys.com00  *H 0ƅJʋQ<2.}ZڲH0mUf0d0b`^-http://uispki.unisys.com/rep/UIS-IsuB1-CA.crl-ldap://pkildp.unisys.com/rep/UIS-IsuB1-CA.crl0+x0v09+0-http://uispki.unisys.com/rep/UIS-IsuB1-CA.crt09+0-ldap://pkildp.unisys.com/rep/UIS-IsuB1-CA.crt0U% 0 +0aU Z0X0V `H00H0F+:http://uispki.unisys.com/rep/0 +7 0 0 +0)U"0 koos.varkevisser@nl.unisys.com0  *H * #w/i4"4CJJ A _KRpMզ|q1,:]~5&K. S3~{zkEZkHC;B00A7JC0  *H 01 0 UUS10U  Entrust.net1;09U 2www.entrust.net/CPS incorp. by ref. (limits liab.)1%0#U (c) 1999 Entrust.net Limited1:08U1Entrust.net Secure Server Certification Authority0 990525160940Z 190525163940Z01 0 UUS10U  Entrust.net1;09U 2www.entrust.net/CPS incorp. by ref. (limits liab.)1%0#U (c) 1999 Entrust.net Limited1:08U1Entrust.net Secure Server Certification Authority00  *H 0(4T711`ɨh6 dG?#GM'& Tr -qӀ?Gf{5(ҹ $ڜPyzZ7J)&dl:4eIXܠނ9kaTC00 `HB0U0 0ޠ۠ؤ01 0 UUS10U  Entrust.net1;09U 2www.entrust.net/CPS incorp. by ref. (limits liab.)1%0#U (c) 1999 Entrust.net Limited1:08U1Entrust.net Secure Server Certification Authority1 0 UCRL10)'%#http://www.entrust.net/CRL/net1.crl0+U$0"19990525160940Z20190525160940Z0 U0U#0bU= kPb0UbU= kPb0 U00 *H}A 0 V4.00  *H 0dt§ |!4G%| 䘵 Օj,&6e1?WuzFOӘ2r<=`CX"/b,2xTs\R>m-E 100g0Y10 &,dcom10 &,dunisys10 &,duis10U UIS-IsuB1-CA _DI0 *H 0 *H  1  *H 0 *H  1 060106124246Z0 *H  1;kt ˂￸Ț0_ *H  1R0P0*H 0  `He0 *H @0+0 *H (0 *H 0v +71i0g0Y10 &,dcom10 &,dunisys10 &,duis10U UIS-IsuB1-CA f t0x *H   1ig0Y10 &,dcom10 &,dunisys10 &,duis10U UIS-IsuB1-CA f t0  *H Vb(QD'.2uh]C'D a8;~LuP 0S@I At^ Ʀg:ػT.("Yf绋eR4Bj֐/A=S%p