nanog mailing list archives

Re: dilemmas


From: Royce Williams <royce () techsolvency com>
Date: Wed, 2 Nov 2016 19:03:32 -0800

On Wed, Nov 2, 2016 at 6:47 PM, William Herrin <bill () herrin us> wrote:

On Wed, Nov 2, 2016 at 10:39 PM, Randy Bush <randy () psg com> wrote:
the sysadmins' dilemma: do you install today's critical update or wait a
day until the next one is out before you reboot 50 servers?

Neither. You wait for the normal patch cycle because the other six
barriers to exploiting the vulnerability will work just fine until
then.

The vulnerability that cuts through every layer of a well engineered
defense is rare.


As is the well-engineered defense.

Royce


Current thread: