My understanding is that login banners warning of legal ramifications are much like the miranda rights, that is they are just assumed and their omission in no way presents a legal loophale for escape.

The reasoning is, many systems that could be compromised run services that don't feature login banners. Login banners are targeted specifically at legit users in environments where it is not practical to have all users acknowledge (via a signature) the applied security policy.

catch