Gentoo Archives: gentoo-user

From: Alan McKinnon <alan.mckinnon@×××××.com>
To: gentoo-user@l.g.o
Subject: Re: [gentoo-user] Re: xfce woes
Date: Fri, 04 Feb 2011 00:11:28
Message-Id: 201102040147.41061.alan.mckinnon@gmail.com
In Reply to: [gentoo-user] Re: xfce woes by walt
1 Apparently, though unproven, at 00:15 on Friday 04 February 2011, walt did
2 opine thusly:
3
4 > On 02/02/2011 09:15 PM, Alan McKinnon wrote:
5 > > Apparently, though unproven, at 00:00 on Thursday 03 February 2011, walt
6 > > did
7 > >
8 > > opine thusly:
9 > >> As much as I like the convenience of automounting as a luser, all of
10 > >> my bofh instincts cry out that lusers shouldn't be allowed to
11 > >>
12 > > mount a filesystem!
13 > >
14 > >> This is one of those Windows/convenience versus unix/security things,
15 > >> I think, but I'm just an amateur bofh.
16 > >>
17 > >> What do you professional bofhs think?
18 > >
19 > > Depends on what the machine is used for.
20 > >
21 > > For a multiuser box, you probably want user to not shutdown/reboot,
22 >
23 > Yes, even I thought of that. As an amateur, though, I have no idea how
24 > many multi-user machines still exist.
25
26 I have more than 120 of them....
27
28 > When I was a lad, the campus computer(s) still ran batch jobs submitted on
29 > punch cards. We had to wait for hours or even the next day to discover a
30 > stupid typo.
31
32 Punch cards???!!!!????
33
34 Piffle. We used *paper tape* :-)
35
36 > Actually, the profs didn't use punchcards, just us peons. The profs had
37 > dumb terminals so they could log in to the central server -- and sit for
38 > as long as five minutes to discover if the server had crashed, or was
39 > just busy serving the needs of the department chairman's secretary.
40 >
41 > Over the years, the frustrations have merely morphed, not vanished :(
42 >
43 > > be able to mount removeable media...
44 >
45 > That was really what I was asking. I hear horror stories about employees
46 > plugging usb thumb drives into corporate workstations to steal files, or
47 > maybe infecting the whole network with malware from a "lost" thumb drive
48 > found at a bus stop or a car park.
49
50
51 Here's a funny story. It's true, and it's sad, but also macabrely funny.
52
53 A penetration testing firm that I know well was commissioned to test the
54 external security of a certain enterprise that was obliged to comply with
55 stiff legal requirements. This firm does our pentesting too, and they are
56 pretty thorough. If you ask them to throw the book at something for testing,
57 and pay them enough, they will gladly oblige, and not care too much if this
58 embarrasses you
59
60 Try as they might, they could not get past this enterprise's border firewalls.
61 Nothing showed up as a weakness. They tried and tried and tried and tried ....
62
63 Until one day one of their bright spark techies had a brilliant idea. They
64 hired a bunch of pretty girls wearing tight skimpy "New! Improved! Check Our
65 Promotion!" outfits to stand outside the front door handing out free
66 complimentary CDs.
67
68 Yes, you guessed it. Within the hour the perimeter firewalls had more holes
69 than a Swiss cheese. Somebody paid dearly for that.
70
71 --
72 alan dot mckinnon at gmail dot com

Replies

Subject Author
Re: [gentoo-user] Re: xfce woes Adam Carter <adamcarter3@×××××.com>