Firewall Wizards mailing list archives
Re: A fun smackdown...
From: "Marcus J. Ranum" <mjr () ranum com>
Date: Fri, 20 May 2005 21:57:31 -0400
Chuck Swiger wrote:
You are disagreeing with a design principle from the RFC's which discusses how to create robust software protocols.
The RFCs often used to contain the phrase "this RFC does not address security." Is that one of those great design principles the IETF uses to create "robust software protocols"?? The RFC process creates interoperable *CRAP*. Standards that had been developed with security as even a passing thought would have had protocol command stacks divided into trusted modes and public modes from the get-go. I.e.: "internet-facing mail servers must support the HELO, MAIL, RCPT, DATA commands. mail servers facing trusted networks must support the untrusted commands plus HELP, VRFY, etc, etc, etc..." The RFCs are written by well-intentioned amateurs who never gave a rat's a&& for security, and the resulting Internet reflects it. mjr. _______________________________________________ firewall-wizards mailing list firewall-wizards () honor icsalabs com http://honor.icsalabs.com/mailman/listinfo/firewall-wizards
Current thread:
- Re: A fun smackdown..., (continued)
- Re: A fun smackdown... Ryan McBride (May 21)
- Re: A fun smackdown... Marcus J. Ranum (May 21)
- Re: A fun smackdown... Steven M. Bellovin (May 21)
- Re: A fun smackdown... Marcus J. Ranum (May 21)
- Re: A fun smackdown... Don Kendrick (May 24)
- Re: A fun smackdown... Paul D. Robertson (May 19)
- Re: A fun smackdown... Chuck Swiger (May 19)
- Re: A fun smackdown... Paul D. Robertson (May 19)
- Re: A fun smackdown... Chuck Swiger (May 19)
- Re: A fun smackdown... Paul D. Robertson (May 19)
- Re: A fun smackdown... Marcus J. Ranum (May 20)
- Re: A fun smackdown... Chuck Swiger (May 21)
- Re: A fun smackdown... Marcus J. Ranum (May 21)
- Re: A fun smackdown... Chuck Swiger (May 21)
- Re: A fun smackdown... Marcus J. Ranum (May 21)
- RE: A fun smackdown... Bill Royds (May 24)
- Re: A fun smackdown... Joseph S D Yao (May 20)
- Re: A fun smackdown... Chuck Swiger (May 20)
- Re: A fun smackdown... Joseph S D Yao (May 20)
- Re: A fun smackdown... Devdas Bhagat (May 20)
- Re: A fun smackdown... Carson Gaspar (May 20)