----- Original Message -----

> And on the original topic... Seriously, are you folks
> arguing against installing 'telnet' (or 'nc') serious?
> Really? If you avoided 'nc' because of some fantasy of
> insecurity, did you leave Perl installed? Or Java?

Well, its documented that we provide perl on our public unix system, but these 
days its only the system perl. We stopped providing our perl -- from our CM 
system (which also has all the modules we've ever needed in also). Because some 
of things we did using that version of perl was considered too much of a risk. 
Which made things difficult for me, having to rework or reinvent scripts for 
these servers....or relocate. Like move the helpdesk accounts to another system 
that is nothing like the public unix systems, so they can run their tools to 
support users on the public unix systems. There was a perl script that talked 
to the oracle database of our identity management system.... 

These are also the only systems that don't have sudo installed. 

So far they haven't said anything about the system java..... 

ssh is still installed, though port 22 outbound is blocked.... 
_______________________________________________
Discuss mailing list
Discuss@lists.lopsa.org
https://lists.lopsa.org/cgi-bin/mailman/listinfo/discuss
This list provided by the League of Professional System Administrators
 http://lopsa.org/

Reply via email to