Re: Hardening Solaris 8

From: Philip Brown (phil+s3_at_bolthole.no-bots.com)
Date: 05/02/03


Date: Thu, 01 May 2003 23:23:03 GMT

On Wed, 30 Apr 2003 03:38:26 +0000 (UTC), gburnore@databasix.com wrote:
>Philip Brown <phil+s3@bolthole.no-bots.com> wrote:
>> It is just as likely that the source has been compromized, as an
>> executable.
>>
>> it is only useful to "download and compile the source", if you can actually
>> READ AND UNDERSTAND the entire source, AND can recognize a security flaw
>> if you see it!!
>
>Isn't that where PGP and Checksums come in?

those methods can be applied equally to binaries and source code. So my
original premise stands: it is "just as likely"

-- 
  http://www.blastwave.org/ for solaris pre-packaged binaries with pkg-get
    Organized by the author of pkg-get
[Trim the no-bots from my address to reply to me by email!]
         S.1618 http://thomas.loc.gov/cgi-bin/bdquery/z?d105:SN01618:@@@D
                            http://www.spamlaws.com/state/ca1.html


Relevant Pages

  • Re: [Q] Solaris 9 installation use DVD ?
    ... -- http://www.blastwave.org/ for solaris pre-packaged binaries with pkg-get Organized by the author of pkg-get [Trim the no-bots from my address to reply to me by email!] ...
    (comp.unix.solaris)
  • Re: How to set sendmail SMTP auth and SMTP SSL on Solaris 9 (x86)
    ... see my webpage on it, ... -- http://www.blastwave.org/ for solaris pre-packaged binaries with pkg-get Organized by the author of pkg-get [Trim the no-bots from my address to reply to me by email!] ...
    (comp.unix.solaris)
  • Re: Finding the source of Broadcast - process id or application
    ... So just grep for 33048 ... -- http://www.blastwave.org/ for solaris pre-packaged binaries with pkg-get Organized by the author of pkg-get [Trim the no-bots from my address to reply to me by email!] ...
    (comp.unix.solaris)
  • Re: How about a stupid question?
    ... -- http://www.blastwave.org/ for solaris pre-packaged binaries with pkg-get Organized by the author of pkg-get [Trim the no-bots from my address to reply to me by email!] ...
    (comp.unix.solaris)
  • Re: driver: checking for O_NONBLOCK
    ... Never mind. ... -- http://www.blastwave.org/ for solaris pre-packaged binaries with pkg-get Organized by the author of pkg-get [Trim the no-bots from my address to reply to me by email!] ...
    (comp.unix.solaris)