On Tuesday 20 March 2007 09:45 am, Matt Ingenthron wrote:
> It may also be interesting to see what, if anything, can be done about
> reducing privilege sets for this OpenSolaris Apache/PHP stack to at
> least reduce the possibility of nefarious activities if (when?) there is
> a vulnerability.  My colleague Alec Muffet may be able to lend some
> thoughts there.

I'll watch to see what Alec might have to say, but in general this is going to 
be one very high maintenance package, any way we look at it. We do need the 
software, it just has a lot of strings attached from any perspective we look 
at it, unless the software is just left vulnerable.

-- 

Alan DuBoff - Solaris x86 Engineering - IHV/OEM Group
Advocate of insourcing at Sun - hire people that care about our company!


_______________________________________________
opensolaris-discuss mailing list
[email protected]

Reply via email to