I know you guys are right. I'm just throwing ideas out there. I have kept the database local so far - and will continue to do so until I find a good encryption system. But unfortunately, if the administrator can't be trusted, then there's no such thing as security. And having an in-house server is a huge cost that will take a lot of convincing to the hospital. It's a good thing I took over the project when I did. The previous dude (U of T grad, heh) coded it in visual basic and used DES with the initialization vector and key stored in the program itself. With source code. If there was a face-palm emoticon, now is the time to use it. --=20 http://www.piclist.com PIC/SX FAQ & list archive View/change your membership options at http://mailman.mit.edu/mailman/listinfo/piclist .