Firewall Wizards mailing list archives

Re: concerning ~el8 / project mayhem


From: ant () notatla demon co uk (Antonomasia)
Date: Mon, 19 Aug 2002 23:57:25 +0100 (BST)

From: Barney Wolff <barney () tp databus com>

I'm really bemused by this whole thread.  When a hole is published,
do people really wait for reports of exploits before patching?

Yes.  Haven't we been round this before ?  Managers decide how much
to skimp on security and geeks get to decide (within limits) which
windows to bar with the rolled-up newspaper.  Geeks get the rest of the
day off for web surfing provided they don't complain too much.  Certain
windows aren't allowed newspaper - Mr Big must have his wireless LAN.

But what's the point of talking patches before you can get the admins to
chmod the world-writable root directories ?  That state of affairs and the
fact that I can't fire people might not be completely unrelated.

And still the auditors are only interested in whether we can show on what
date each password was set.

--
##############################################################
# Antonomasia   ant notatla.demon.co.uk                      #
# See http://www.notatla.demon.co.uk/                        #
##############################################################
_______________________________________________
firewall-wizards mailing list
firewall-wizards () honor icsalabs com
http://honor.icsalabs.com/mailman/listinfo/firewall-wizards


Current thread: