On Tue, 12 Mar 2002, Erik Curiel wrote:

> Get off your fucking high-horse.  You're not the last word in how
> everyone must administer their boxes.  There are different approaches,
> with good arguments on many sides.

having '.' in roots path is a security problem. a rather big one. if you
were administering a box and i found that i'd yank your access.

> If you want to *suggest* that people do things a certain way, and
> provide reasons why this way is preferable to other ways, that will be
> welcomed.  If you try to lay down your law from on high, you just look
> like an asshole, and a laughable one at that.  It's hard to take someone
> seriously who has such an obviously closed mind.

it is beyond that. it is a very well understood security issue. it's as
old as the hills. it's the equivelant of having 'password' as your
password or better yet, nothing as your root password. it's as basic as
having '+' in your rhosts file.

-- 
christian void - [EMAIL PROTECTED]
www.morphine.com/void/
gpg key available on request


_______________________________________________
Bits mailing list
[EMAIL PROTECTED]
http://www.sugoi.org/mailman/listinfo/bits

Reply via email to