Skip site navigation (1)Skip section navigation (2)
Date:      Thu, 28 Mar 2002 16:45:06 -0500
From:      "Mike Jakubik" <mikej@trigger.net>
To:        "Wilko Bulte" <wkb@freebie.xs4all.nl>, "Alan Clegg" <alan@clegg.com>
Cc:        <stable@FreeBSD.ORG>
Subject:   RE: sendmail_enable NONE
Message-ID:  <HPEHJFKBNEHFPAOFMEDDEEHLDCAA.mikej@trigger.net>
In-Reply-To: <20020328223826.F28059@freebie.xs4all.nl>

next in thread | previous in thread | raw e-mail | index | archive | help
 -----Original Message-----
 From: owner-freebsd-stable@FreeBSD.ORG
 [mailto:owner-freebsd-stable@FreeBSD.ORG]On Behalf Of Wilko Bulte
 Sent: Thursday, March 28, 2002 4:38 PM
 To: Alan Clegg
 Cc: stable@FreeBSD.ORG
 Subject: Re: sendmail_enable NONE


> On Thu, Mar 28, 2002 at 04:35:51PM -0500, Alan Clegg wrote:
> > Unless the network is lying to me again, David O'Brien said:
> >
> > > So what??
> >
> > sendmail binaries have a tendancy to be security problems.
> (and no, I'm
> > not advocating any change at this time, just playing devil's advocate)
>
> the root account has a tendency to be a security problem. Lets remove it.
>
> :)

Yes, but unfortunately we need the root account.

> Basically: binaries sitting on a disk are harmless (but take space) as
> long as they don't get run.

True, however what does not exist can not be exploited. I think that
removing software that is not needed is a great process towards a better
system, security and functionality wise.



To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-stable" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?HPEHJFKBNEHFPAOFMEDDEEHLDCAA.mikej>