Re: Is VMS losing the Financial Sector, also?



On Jul 9, 2:51 pm, b...@xxxxxxxxxxx (Bill Gunshannon) wrote:
In article <FA60F2C4B72A584DBFC6091F6A2B86840250A...@xxxxxxxxxxxxxxxxxxxxxxxxxxxxx>,
"Main, Kerry" <Kerry.M...@xxxxxx> writes:

-----Original Message-----
From: b...@xxxxxxxxxxx [mailto:b...@xxxxxxxxxxx]
On Behalf Of Bill Gunshannon
Sent: July 9, 2007 11:31 AM
To: Info-...@xxxxxxxxxxxx
Subject: Re: Is VMS losing the Financial Sector, also?
=20

[snip..]

You also need IE, Firefox or some other browser
on the
server to use these admin packages locally. The same is true for
other
platforms as well.
=20
Same rules. Just because you have IE doesn't mean you should be
surfing
the web from the server. if you don't connect to untrusted
machines you
don't have to worry about infection. They're servers for god's
sake. if
you want to google soemthing go back to your desk.
=20

Point is that just by the fact that these services are on the server and
being used means that all IE and IIS related security patches need to be
applied. (and these 2 puppies are likely the most hacked and patched
programs on the planet).

No, they don't. I fthey never have access to or from untrusted networks
they do not. I suggested using only localhost or a private network but,
as usual, you just changed the rules and said they can't do that. It's
all about risk and its mitigation. If you insist that you must runin an
unsecure environment then no OS is going to be safe.

Well, some could be safer than others, no? Are you going to tell a cop
he can't wear a bulletproof vest for this reason? Are you going to
recommend not using seat belts because if a truck rolls over you
you'll die anyway?

A Unix admin who used to work here once claimed he could break into my
VMS boxes. I gave him the IP address of one of my test boxes and said
go ahead. He never broke in and he never mentioned it again.

AEF

[...]

bill

--
Bill Gunshannon | de-moc-ra-cy (di mok' ra see) n. Three wolves
b...@xxxxxxxxxxxxxxx | and a sheep voting on what's for dinner.
University of Scranton |
Scranton, Pennsylvania | #include <std.disclaimer.h>


.