nanog mailing list archives

Re: IoT security


From: Rich Kulawiec <rsk () gsp org>
Date: Fri, 10 Feb 2017 17:55:01 -0500

On Tue, Feb 07, 2017 at 08:58:46AM -0500, Ray Soucy wrote:
Ideally a cloud-managed device so that the config wouldn't need
to be rebuilt in the event of a hardware swap.

That opens them to a class breach: instead of one getting compromised
they *all* get compromised.  Better to save the configuration to cheap
local media like a USB stick.  Yes, it could get lost, but that doesn't
break or compromise the device, and it only affects one device.

---rsk


Current thread: