Insecurity by default (was: MySQL Help)

Christopher Browne cbbrowne-Re5JQEeQqe8AvxtiuMwx3w at public.gmane.org
Wed Jun 28 21:43:27 UTC 2006


On 6/28/06, Jason Spiro <jasonspiro4-Re5JQEeQqe8AvxtiuMwx3w at public.gmane.org> wrote:
> On 6/27/06, Christopher Browne <cbbrowne-Re5JQEeQqe8AvxtiuMwx3w at public.gmane.org> wrote:
> > On 6/27/06, Stephen <stephen-d-bJEeYj9oJeDQT0dZR+AlfA at public.gmane.org> wrote:
> > > The MySQL docs say networking is on by default.
> >
> > e.g. - insecure by default.
>
> I hate "insecure by default" products. It's led to so many PHP
> injection attacks internet wide you wouldn't believe it, including PHP
> bulletin board software worms that attack server machines.
>
> How can "insecurity by default" be discouraged, though? Boycott such products???

I'd be dumb to argue with that ;-).

Others might beg to differ...
-- 
http://www3.sympatico.ca/cbbrowne/linux.html
Oddly enough, this is completely standard behaviour for shells. This
is a roundabout way of saying `don't use combined chains of `&&'s and
`||'s unless you think Gödel's theorem is for sissies'.
--
The Toronto Linux Users Group.      Meetings: http://tlug.ss.org
TLUG requests: Linux topics, No HTML, wrap text below 80 columns
How to UNSUBSCRIBE: http://tlug.ss.org/subscribe.shtml





More information about the Legacy mailing list