UI security topic: UI for private activities

Marco Martin notmart at gmail.com
Tue Jan 17 13:29:01 UTC 2012


On Tuesday 17 January 2012, Thomas Pfeiffer wrote:
> > Asumptions:
> > - Mark Activity as private: toggle Button in "Create new activity" and
> > "Activity Configuration" Dialog; details see flowchart
> 
> Why ist the password needed to switch to non-private again? You can't
> access the activity without the password anyway, so you have already
> entered it when you get to the configuration screen. And once you have
> access to an activity, switching private mode off isn't so much of a
> further
> risk. If the purpose is to prevent accidental de-activation, I'd just use
> a
> confirmation, not password entry.

+1 here

> > - With all these passwords coming now into PA, I suggest having a
> > security tab in our settings app with these options:
> > - device pw after shut down: toggle on/off; on is default (needs then to
> > be entered in first introduction activity)
> > - edit pw for device pw
> > - device pw after lock screen: toggle on/off; off is default
> 
> I agree with Marco and Ivan on the "false sense of security" point.
> On the other hand, laptops usually have a login password as well even
> though
> this does not offer more security if it's stolen either.
> Difficult matter...

yeah, valid for laptops as well. that model is designed for workstations that 
are usually in a controlled environment so there is a phisical security 
against removing the hard disk or booting with a live image or things like 
that

-- 
Marco Martin


More information about the Active mailing list