Skip site navigation (1)Skip section navigation (2)
Date:      Mon, 3 Sep 2001 05:34:06 -0500
From:      Alfred Perlstein <bright@mu.org>
To:        "Nickolay A.Kritsky" <nkritsky@internethelp.ru>
Cc:        "Carroll, D. (Danny)" <Danny.Carroll@mail.ing.nl>, security@FreeBSD.ORG
Subject:   Re: Re[2]: Possible New Security Tool For FreeBSD, Need Your Help.
Message-ID:  <20010903053406.N81307@elvis.mu.org>
In-Reply-To: <110320834936.20010903142910@internethelp.ru>; from nkritsky@internethelp.ru on Mon, Sep 03, 2001 at 02:29:10PM %2B0400
References:  <98829DC07ECECD47893074C4D525EFC3115698@citsnl007.europe.intranet> <110320834936.20010903142910@internethelp.ru>

next in thread | previous in thread | raw e-mail | index | archive | help
* Nickolay A.Kritsky <nkritsky@internethelp.ru> [010903 05:31] wrote:
> Hello D.,
> 
> Monday, September 03, 2001, 12:17:20 PM, you wrote:
> 
> CDD> Yeah but Obfuscation PLUS good security does not hurt, in fact it helps.
> CDD> Just so long as you don't *rely* on it.
> 
> Don't you think it is really _too_ complicated. While you have
> firewalls, open key logins, IP based verification. Just Keep It
> Simple. IMHO the more complicated it gets, the more chances you have,
> that in one day all this "security improvements" will play against
> you.

There's also the chance that combining two security methods may
weaken both or expose some sort of vulnerability in one or
both methods.

-- 
-Alfred Perlstein [alfred@freebsd.org]
'Instead of asking why a piece of software is using "1970s technology,"
start asking why software is ignoring 30 years of accumulated wisdom.'
'"Java" developer, like "special" Olympics, right?' - Bill Paul

To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-security" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20010903053406.N81307>