bobkoure wrote: 
> 
> Remember that SBS was written with the intention of being read only, so
> even if someone noxious breaks in they can listen to your music, or make
> you listen to some of your own music, make your music stop, stuff like
> that.
> Yeah, SBS is in Perl, which can be, well, idiosyncratic is the nicest
> way I can put it - but it's probably as gone-over for security issues
> as, say Apache (buffer overruns, etc.) so, as a platform, I'd expect
> it's fairly secure.
> 
If someone manage to get access to the username/password of SBS/LMS, I'm
fairly sure there is no problem to hack it and cause a lot more trouble
on the computer it's running. This is especially true if you are running
third party plugins which in many cases is designed to be used on a
protected local network.
If SBS/LMS is running as a user with restricted access you are a bit
more safe.
If the music files are accessed on a read only drive or read only
network drive, you are also a bit more safe.

That said, the fact that it still might be acceptable for some people is
that they are likely not that interesting to hackers and most hackers
are likely focusing on other security holes than SBS/LMS. Personally, I
would never expose SBS/LMS to the public without protecting it with VPN,
SSH or at least some kind of basic IP address filtering in the router
making sure it can only be accessed from certain IP address ranges, but
that's just me.


------------------------------------------------------------------------
erland's Profile: http://forums.slimdevices.com/member.php?userid=3124
View this thread: http://forums.slimdevices.com/showthread.php?t=96006

_______________________________________________
discuss mailing list
[email protected]
http://lists.slimdevices.com/mailman/listinfo/discuss

Reply via email to