mirror of https://lore.kernel.org/lkml/
 help / color / mirror / Atom feed
From: Alan Cox <alan@lxorguk.ukuu.org.uk>
To: root@chaos.analogic.com
Cc: linux-kernel@vger.kernel.org (Linux kernel)
Subject: Re: Writes to mounted devices containing file-systems.
Date: Fri, 10 Aug 2001 14:07:50 +0100 (BST)	[thread overview]
Message-ID: <E15VC10-0000wF-00@the-village.bc.nu> (raw)
In-Reply-To: <Pine.LNX.3.95.1010810075750.10479A-100000@chaos.analogic.com> from "Richard B. Johnson" at Aug 10, 2001 08:43:58 AM

> Aug 10 08:05:18 quark sendmail[66]: rejecting connections on daemon MTA: load average: 16
> Aug 10 08:05:18 quark sendmail[66]: rejecting connections on daemon MSA: load average: 16
> Aug 10 08:05:33 quark sendmail[66]: rejecting connections on daemon MTA: load average: 13
> Aug 10 08:05:33 quark sendmail[66]: rejecting connections on daemon MSA: load average: 13
> Aug 10 08:05:48 quark sendmail[66]: accepting connections again for daemon MTA

Thats your mailer laughing at someones pitiful attempt to knock it over. 
Sendmail does load protection. Anyone with effectively equivalent or better
bandwidth can always DoS a system. Ask yahoo.

> In this company, they hired a "CIO" who thinks that no computers
> should have any local storage or boot capability. They must all
> boot from some secure (M$) file-server. They will not be allowed
> to have local disks and, horrors -- of course no floppy drives or
> CD-ROMS.

Good policy (well maybe not the choice of fileserver OS) in many
environments. How do you think McDonalds unix based tills run 8) - no
floppy believe me.

> He doesn't care that we are in the business of making software-driven
> machines so we require access to the guts of computers and their
> operating systems.

Smart people migrate, company or division goes out of business, another large
company eventually buys small company that the people who left formed
repeat cycle. 

> So, if it is at all possible to help improve its security without
> hurting its performance very much, it's really a matter of life-or-
> death for Linux. Otherwise "they" will get us.

I think not. Look at the fate of companies whose bosses adopted X.400
because TCP/IP was "some crazy hacker thing" "not industry strength" "had no
telco support" "couldnt provide the needed QoS" ...

Alan

  reply	other threads:[~2001-08-10 13:09 UTC|newest]

Thread overview: 11+ messages / expand[flat|nested]  mbox.gz  Atom feed  top
2001-08-10 12:43 Richard B. Johnson
2001-08-10 13:07 ` Alan Cox [this message]
2001-08-10 13:23 ` Helge Hafting
2001-08-10 13:56 ` Anton Altaparmakov
2001-08-10 14:22   ` Matt
2001-08-10 18:04 ` Steve VanDevender
2001-08-10 19:18 ` Alexander Viro
2001-08-10 19:21 ` H. Peter Anvin
2001-08-11 12:28 ` Kai Henningsen
2001-08-11 13:47 ` Adrian Bridgett
2001-08-11 19:16   ` H. Peter Anvin

Reply instructions:

You may reply publicly to this message via plain-text email
using any one of the following methods:

* Save the following mbox file, import it into your mail client,
  and reply-to-all from there: mbox

  Avoid top-posting and favor interleaved quoting:
  https://en.wikipedia.org/wiki/Posting_style#Interleaved_style

* Reply using the --to, --cc, and --in-reply-to
  switches of git-send-email(1):

  git send-email \
    --in-reply-to=E15VC10-0000wF-00@the-village.bc.nu \
    --to=alan@lxorguk.ukuu.org.uk \
    --cc=linux-kernel@vger.kernel.org \
    --cc=root@chaos.analogic.com \
    /path/to/YOUR_REPLY

  https://kernel.org/pub/software/scm/git/docs/git-send-email.html

* If your mail client supports setting the In-Reply-To header
  via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line before the message body.
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox

all inboxes | Powered by JetHome®