From owner-freebsd-arch Fri Sep 15 14:58:41 2000 Delivered-To: freebsd-arch@freebsd.org Received: from h132-197-97-45.gte.com (h132-197-97-45.gte.com [132.197.97.45]) by hub.freebsd.org (Postfix) with ESMTP id F057737B422 for ; Fri, 15 Sep 2000 14:58:38 -0700 (PDT) Received: (from ak03@localhost) by h132-197-97-45.gte.com (8.11.0/8.11.0) id e8FLwY306459; Fri, 15 Sep 2000 17:58:34 -0400 (EDT) (envelope-from ak03) Message-ID: X-Mailer: XFMail 1.4.0 on FreeBSD X-Priority: 3 (Normal) Content-Type: text/plain; charset=us-ascii Content-Transfer-Encoding: 8bit MIME-Version: 1.0 In-Reply-To: <200009152136.e8FLaou26312@cwsys.cwsent.com> Date: Fri, 15 Sep 2000 17:58:34 -0400 (EDT) Organization: GTE Laboratories Inc. From: "Alexander N. Kabaev" To: Cy Schubert - ITSD Open Systems Group Subject: Re: Rsh/Rlogin/Rcmd & friends Cc: freebsd-arch@FreeBSD.ORG, Steve Kargl , Will Andrews , Daniel Eischen Sender: owner-freebsd-arch@FreeBSD.ORG Precedence: bulk X-Loop: FreeBSD.ORG > So what! That's the price of security. I believe that the > telnet/ftp/"r" commands shouldn't even be ports. We need to make it > difficult to install unsafe software on the system. That way the admin > would have to go to all the trouble to find the source for unsafe > software somewhere on the Net, port it, and install it. Then it's not > FreeBSD's fault if that admin's system is compromised. Disabling corresponding inetd.conf entries will serve that purpose as well. Some of us work in places full of Unixes of all kinds and flavours and out-of-the-box interoperability argument presented by Steve makes a lot of sense in such an environment. "Everything is the package" idea is OK as long as we will retain the option of complete system upgrade using CVS/buildworld path. Forcing users to deal with every package separately will destroy that fuzzy feeling of completeness and tightly OS components integration FreeBSD was always famous for and IMHO will do more damage than good. Please count my voice as "strongly against" proposed code removal. To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-arch" in the body of the message