Re: Hardening Solaris 8
From: Philip Brown (phil+s3_at_bolthole.no-bots.com)
Date: 05/02/03
- Next message: Kenny McCormack: "Brand new Sun Fire V120 - can't find ethernet ports"
- Previous message: Colin Bigam: "XVR-1000 XServers display weirdness"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
Date: Thu, 01 May 2003 23:23:03 GMT
On Wed, 30 Apr 2003 03:38:26 +0000 (UTC), gburnore@databasix.com wrote:
>Philip Brown <phil+s3@bolthole.no-bots.com> wrote:
>> It is just as likely that the source has been compromized, as an
>> executable.
>>
>> it is only useful to "download and compile the source", if you can actually
>> READ AND UNDERSTAND the entire source, AND can recognize a security flaw
>> if you see it!!
>
>Isn't that where PGP and Checksums come in?
those methods can be applied equally to binaries and source code. So my
original premise stands: it is "just as likely"
-- http://www.blastwave.org/ for solaris pre-packaged binaries with pkg-get Organized by the author of pkg-get [Trim the no-bots from my address to reply to me by email!] S.1618 http://thomas.loc.gov/cgi-bin/bdquery/z?d105:SN01618:@@@D http://www.spamlaws.com/state/ca1.html
- Next message: Kenny McCormack: "Brand new Sun Fire V120 - can't find ethernet ports"
- Previous message: Colin Bigam: "XVR-1000 XServers display weirdness"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
Relevant Pages
|