Security Basics mailing list archives

Re: RE: When is a Security patch not a patch?


From: esurientone () yahoo com
Date: 7 Mar 2007 19:21:53 -0000

Our policy is fairly simple.

If we recommend a patch and the App Owner/Sys Admin does not apply it and the system becomes compromised, it will be 
disconnected from our network until such a time as they fix it.

We had one system that was off for two weeks when SQL slammer came out.  You should see their motivation once they get 
shut off.


Current thread: