Skip site navigation (1)Skip section navigation (2)
Date:      Thu, 25 Apr 2002 10:13:39 -0500
From:      "Jacques A. Vidrine" <nectar@FreeBSD.org>
To:        "Greg 'groggy' Lehey" <grog@FreeBSD.org>
Cc:        Robert Watson <rwatson@FreeBSD.org>, Jordan Hubbard <jkh@winston.freebsd.org>, Oscar Bonilla <obonilla@galileo.edu>, Anthony Schneider <aschneid@mail.slc.edu>, Mike Meyer <mwm-dated-1019955884.8b118e@mired.org>, hackers@FreeBSD.org
Subject:   Re: Security through obscurity? (was: ssh + compiled-in SKEY support considered harmful?)
Message-ID:  <20020425151339.GB7802@shade.nectar.cc>
In-Reply-To: <20020425120259.B79657@wantadilla.lemis.com>
References:  <20020423131646.I6425@wantadilla.lemis.com> <Pine.NEB.3.96L.1020423110123.64976j-100000@fledge.watson.org> <20020424090655.O6425@wantadilla.lemis.com> <20020424122754.GC42969@madman.nectar.cc> <20020425120259.B79657@wantadilla.lemis.com>

next in thread | previous in thread | raw e-mail | index | archive | help
On Thu, Apr 25, 2002 at 12:02:59PM +0930, Greg 'groggy' Lehey wrote:
> > I think it would be better to just put `-nolisten tcp' in
> > /usr/X11R6/lib/X11/xinit/xserverrc for new installations only.  Then
> > the system administrator could easily override it for all users; and
> > at least a user can override it for herself.
> 
> If he knew about it.  

It's the old documentation trick.

> Look at my last message to Terry: we're talking
> about a package we don't control here.  If somebody comes to FreeBSD
> from another system and X doesn't work the way he expects, he'll blame
> FreeBSD, not X.

Well then we are sunk.

I object to breaking currently working installations.  I think it's OK
to use better defaults for new installations.

This is a hard issue for me to argue, because I consider this
particular change to be of questionable value.

> > Disclosure: I'm unhappy that after upgrading my laptop yesterday, I
> > found I couldn't run `x2x',
> 
> Because of this issue?
> 

Right.

> > and had to restart my X session to remedy the problem.
> 
> At least you knew what the problem was.

Well, I've been running X for 10+ years.  I guess I know what to look
for.

Cheers,
-- 
Jacques A. Vidrine <n@nectar.cc>                     http://www.nectar.cc/
NTT/Verio SME           .      FreeBSD UNIX      .        Heimdal Kerberos
jvidrine@verio.net      .   nectar@FreeBSD.org   .           nectar@kth.se

To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-hackers" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20020425151339.GB7802>