Legend
Presentation of Mattia about pneumatic attenuated econex
[x] Ask LPh for help to clean up 256 and organize the space
[x] GCMS: problems in connecting from PC. Ip address changed
[ ] Mixer from ETH ⇒ sending a volume filled instead
[ ] Check CPV water and eventually go with the endoscope
[x] What do with rpcgif
account:
-----Original Message-----
From: Stefan Lueders <Stefan.Lueders@cern.ch>
Sent: lundi 12 février 2024 11:53
To: Roberto Guida <Roberto.Guida@cern.ch>
Subject: March 26th: Activation of 2FA to your secondary account "rpcgif"
Hello!
(Apologies if you have already received this message and acted upon it. Please ignore this email in that case.)
YOUR ACTION IS REQUIRED, as your secondary account "rpcgif" will be subjected to 2-factor authentication ("2FA") on or after March 26th. Actually, you might have received the mail below several times already...
In order to better protect CERN's digital assets, we are deploying 2FA to CERN computing accounts (with 7500++ accounts enlisted so far). In fact, "2FA" is the silver bullet in protecting computing accounts against any kind of abuse. For example, in our latest phishing campaign in August 2022 2000+(!) people provided their password to a fake login page. "2FA" would have protected their accounts from any evil abuse (<https://home.cern/news/news/computing/computer-security-room-top>). Please find more details at the end of this email.
In the next phase, this 2FA protection shall be applied to ALL CERN SECONDARY ACCOUNTS, including "rpcgif", by March 26th (see the full planning here: <https://cern.service-now.com/service-portal?id=outage&n=OTG0071297> ). Hence, we would like to kindly invite you to enroll "rpcgif" to 2FA if not already done yet, in particular IF IT IS USED FOR ADMIN/PRIVILEGED ACCESS:
* If this account is not needed anymore, please delete it at <https://cern.ch/accounts>, "My Accounts"-tab, select "rpcgif" and go to "Delete Account" in the sidebar on the right;
* If this account is used for automatic/programmatical access (e.g. to APIs), please contact the CERN ServiceDesk to get it converted into a so-called service account (which should not be used by humans but, as the name suggests, for running automatic services);
* If this account is shared among people, you should ideally use primary/personal accounts and control their access via e-groups;
* For enrolling to 2FA, just follow these instructions: <https://cern.service-now.com/service-portal?id=kb_article&n=KB0006587> . Please use YOUR SECONDARY ACCOUND during its configuraton steps. If you use already a Yubikey, you can also employ it for your secondary account;
* Once done, in order to activate it, please sign up that secondary account (NOT your primary account NOR you as a "Person") to this e-group: <https://e-groups.cern.ch/e-groups/Egroup.do?egroupId=10474329> -> "Members"-tab -> "Add member" on the right: "Type: Account" and add "rpcgif".
Please note that your account might not be accessible anymore in the future if you have not enabled your "2FA"...
Thanks a lot for helping to secure the Organization. In case of questions, check out the information below or contact us directly.
Yours sincerely,
CERN Computer Security Team
<https://cern.ch/security>
rpcgif
is used and why