Skip site navigation (1)Skip section navigation (2)
Date:      Thu, 12 Oct 2000 20:41:02 -0600
From:      Warner Losh <imp@village.org>
To:        Alfred Perlstein <bright@wintelcom.net>
Cc:        Marius Bendiksen <mbendiks@eunet.no>, arch@FreeBSD.ORG
Subject:   Re: cvs commit: src/etc inetd.conf 
Message-ID:  <200010130241.UAA74634@harmony.village.org>
In-Reply-To: Your message of "Thu, 12 Oct 2000 14:28:26 PDT." <20001012142826.U272@fw.wintelcom.net> 
References:  <20001012142826.U272@fw.wintelcom.net>  <20001011160604.T272@fw.wintelcom.net> <Pine.BSF.4.05.10010122321510.64002-100000@login-1.eunet.no> 

next in thread | previous in thread | raw e-mail | index | archive | help
Since it was people on the Security Officer team that wanted a change,
and since we've since come to agreement that the current status quo
wrt telnet is desirable, I think we're done with this discussion.
Why do people keep taking pot shots when the final resolution has
happened, and has been announced?

To recapitulate:

	sysinstall will control inetd starting.  telnet will remain
	enabled in inet.conf until such time as there's a tool
	that sysinstall, or its successor, can use to config things
	at install time.

So if someone relaly wants things to change, then that person must
produce a tool that will allow us to get past the sniping.  Otherwise
the status quo remains in force with the full support of the FreeBSD
Security Officer Team.

Yes, we are setting policy.  However, the old system also set policy.
there was a time when people shipped systems with "+ +" in
/etc/hosts.equiv.  Times change.  There will come a day when telnet is
no longer enabled by default and you have to do special things to
enable it, just like today you have to do special things to enable the
old "I trust everybody" behavior.  Today isn't that day.

You can call it policy and that we don't set policy, but that would be
to ignore history.

Warner


To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-arch" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?200010130241.UAA74634>