nanog mailing list archives

Re: dilemmas


From: Randy Bush <randy () psg com>
Date: Thu, 03 Nov 2016 12:35:44 +0900

On Thu, 03 Nov 2016 12:03:32 +0900, Royce Williams wrote:
On Wed, Nov 2, 2016 at 6:47 PM, William Herrin <bill () herrin us> wrote:
On Wed, Nov 2, 2016 at 10:39 PM, Randy Bush <randy () psg com> wrote:
the sysadmins' dilemma: do you install today's critical update or
wait a day until the next one is out before you reboot 50 servers?

Neither. You wait for the normal patch cycle because the other six
barriers to exploiting the vulnerability will work just fine until
then.

The vulnerability that cuts through every layer of a well engineered
defense is rare.

As is the well-engineered defense.

yep.  and thanks for the forward, reminding my why i have a long
.procmailrc.


Current thread: