Limiting the power of package installation in Debian
Limiting the power of package installation in Debian
Posted Nov 19, 2018 21:03 UTC (Mon) by berndp (guest, #52035)In reply to: Limiting the power of package installation in Debian by jezuch
Parent article: Limiting the power of package installation in Debian
That motto is insecure by design - obviously.
It may also sound/be installation person friendly which may make it easier to sell Debian as such.
It may also sound/be installation person friendly which may make it easier to sell Debian as such.
In reality, that motto is good for the "don't care about security" faction as the stuff just runs (somehow ...).
But for the "I want to know what I do" faction, one has to stop the daemon immediately (or add some iptables rules beforehand) so that one can read and think about the configuration - let alone testing it.
Well, thank you for pointing out explicitly what folks can expect from Debian on a real server accessible to the real Internet ....