OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
From: ddowneyMAIL.HISLINUXBOX.NET
Date: Mon Mar 05 2001 - 20:18:33 CST

  • Messages sorted by: [ date ] [ thread ] [ subject ] [ author ]

    On Mon, 5 Mar 2001, Perry Harrington wrote:

    > In short, yes security through obscurity is dumb, but calling for people to change
    > this functionality is unwarranted when machines can be firewalled.
    >

    Actually to me this sounds more like an excuse NOT to fix the problem
    simply because it's "industry standard".

    Sometimes standards need to be looked at and revamped. In this case it's
    one that would affect the industry as a whole. Are you calling for
    advisories only simply because the workload would be tremendous or because
    you truly believe that fixing this would affect nothing?

    ---
    David D.W. Downey - RHCE
    Consulting Engineer
    Ensim Corporation
    david.downeyensim.com