From owner-freebsd-questions@FreeBSD.ORG Thu Jun 12 02:41:06 2008 Return-Path: Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id 7B25F1065676 for ; Thu, 12 Jun 2008 02:41:06 +0000 (UTC) (envelope-from jeffrey@goldmark.org) Received: from out1.smtp.messagingengine.com (out1.smtp.messagingengine.com [66.111.4.25]) by mx1.freebsd.org (Postfix) with ESMTP id 495008FC14 for ; Thu, 12 Jun 2008 02:41:05 +0000 (UTC) (envelope-from jeffrey@goldmark.org) Received: from compute1.internal (compute1.internal [10.202.2.41]) by out1.messagingengine.com (Postfix) with ESMTP id 4760A115698; Wed, 11 Jun 2008 22:41:05 -0400 (EDT) Received: from heartbeat1.messagingengine.com ([10.202.2.160]) by compute1.internal (MEProxy); Wed, 11 Jun 2008 22:41:05 -0400 X-Sasl-enc: eDD95g3ot0b2RGE9WZ7WY7r4UNp6xMMgen2ti4/TvLLX 1213238464 Received: from hagrid.ewd.goldmark.org (n114.ewd.goldmark.org [72.64.118.114]) by mail.messagingengine.com (Postfix) with ESMTPSA id A2FB6113E1; Wed, 11 Jun 2008 22:41:04 -0400 (EDT) Message-Id: <899F962D-68BA-48B3-9193-A3CD7DA8F129@goldmark.org> From: Jeffrey Goldberg To: dfeustel@mindspring.com In-Reply-To: <20080612020555.56DD08FC14@mx1.freebsd.org> Content-Type: text/plain; charset=US-ASCII; format=flowed; delsp=yes Content-Transfer-Encoding: 7bit Mime-Version: 1.0 (Apple Message framework v924) Date: Wed, 11 Jun 2008 21:41:03 -0500 References: <20080612020555.56DD08FC14@mx1.freebsd.org> X-Mailer: Apple Mail (2.924) Cc: cpghost , FreeBSD List Subject: Re: FreeBSD and User Security X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: User questions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Thu, 12 Jun 2008 02:41:06 -0000 On Jun 11, 2008, at 9:05 PM, dfeustel@mindspring.com wrote: > On Wed, Jun 11, 2008 at 08:51:16PM -0500, Jeffrey Goldberg wrote: >> The next time I reboot the one server I've got with an >> SVM capable processor I'm going to disconnect the power (to make >> sure that >> I'm getting a real reboot instead of a spoofed one) and then on >> reboot I >> will disable SVM in the BIOS. > > How do you know that the bios has not been reflashed by a virus, > trojan, > or rootkit? Arrrrghh!!