From: Neil Bothwick <neil@××××××××××.uk>
To: gentoo-user@l.g.o
Subject: Re: [gentoo-user] Re: Is gnome becoming obligatory?
Date: Mon, 11 Dec 2017 22:29:32
In Reply to: Re: [gentoo-user] Re: Is gnome becoming obligatory? by Alan Mackenzie
1 On Mon, 11 Dec 2017 21:03:21 +0000, Alan Mackenzie wrote:
3 > OK. But it's still there taking up RAM, and (more importantly) makes a
4 > systemd system a broader target for attacks. Whether a system has an
5 > http server (or, for that matter, an SSH server), for whatever purpose,
6 > should be for the system administrator to decide. I suspect this isn't
7 > the case for systemd's http server.
9 You're guessing again. The HTTP server doesn't run by default (very
10 little on systemd does). On Gentoo, it's not even built by default, but
11 don't let a brief look at the USE flags in eix get in the way of a good
12 argument!
14 > In any case, I don't want an http server on my system: I have no http to
15 > serve.
17 Then don't install one, I didn't.
19 > I installed sshd as one of the first things on my new system, to
20 > facilitate the transfer of files to it (and, probably, reading logs from
21 > it remotely).
23 The thing with using SSH to read logs is that it presents a much larger
24 attack vector when you only want to allow a user to read remote logs.
26 > I don't want a binary logging daemon either: that means having to learn
27 > a special purpose utility to be able to read its logs, and, in general,
28 > not being able to read that log from a remote machine.
30 "journalctl" is just the same as "less /var/log/messages" so here's not
31 much to learn unless you want to use the search features. Reading the log
32 from a remote machine is easy, using either SSH or HTTP, whichever you
33 prefer. My one complaint about the systemd journal is that there is not,
34 AFAIK, a standalone reader. If I want to boot from a live CD, I can only
35 read the logs if it is a systemd live CD, or I chroot into the original
36 system. Unless someone knows different...
