[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

RE: [cobalt-users] Enough is enough...



> I just signed up to the list, so I've missed the beginning of the
> conversation.  But...

Then before jumping in with old arguments or points already made, please see
the archives or
http://list.cobalt.com/pipermail/cobalt-users/2001-February/035553.html

>
> BTW, none of these products belong to Sun.  Exploits in any of
> the above are very well documented.
>
> > And they should take responsibility for a BIND exploit... why?
>
> Exactly.

Because they sell a server appliance aimed at and marketed for those that
know nothing or need to know nothing about Linux:
http://list.cobalt.com/pipermail/cobalt-users/2001-February/034249.html

> > And you assert that RaQ's are special targets... why?
>
> RaQ's aren't.  But poorly secured Unix systems are targets.

And a RaQ user might ask, "What's Unix? I bought a Cobalt."

>
> The prudent administrator would:
>
> a)  install SSH2
> b)  disable telnet
> c)  refrain from using FTP.  Give preference to sftp.
>

None of which is discussed in the Cobalt users manual in any way, shape or
form.

Of course, all of this has been discussed to death in this thread, which,
until you resurrected it, was quite dead.
--
Dan Kriwitsky