Skip site navigation (1)Skip section navigation (2)
Date:      Mon, 22 May 2006 16:52:45 +0100
From:      Alex Zbyslaw <xfb52@dial.pipex.com>
To:        'Colin Percival' <cperciva@freebsd.org>
Cc:        'FreeBSD Questions' <freebsd-questions@freebsd.org>
Subject:   Re: FreeBSD Security Survey
Message-ID:  <4471DE4D.5050600@dial.pipex.com>
In-Reply-To: <01e201c67da9$42111a80$6501a8c0@workdog>
References:  <01e201c67da9$42111a80$6501a8c0@workdog>

next in thread | previous in thread | raw e-mail | index | archive | help
I'd have to agree with most of Ted and Gayn's points.  Also, it's hard 
to answer many of the questions when they are different for different 
servers.  Unless there is a serious bug in something like SSH, then a 
paying client with a seriously firewalled server and no malicious users 
might get upgraded every four months.  My own server might get upgraded 
weekly when I'm not too busy, or not for four months when I am.  But a 
security bug with a network service would get much more immediate 
attention.  If I still administered machines in an academic environment, 
my answers would be quite different, but the risk analysis that led to 
the different answers would (theoretically) be the same.

--Alex





Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?4471DE4D.5050600>