Mailinglist Archive: opensuse-factory (626 mails)
| < Previous | Next > |
Re: [opensuse-factory] request for comments: disable ssh daemon by default
- From: Bryen <suseROCKS@xxxxxxxxx>
- Date: Sat, 29 Mar 2008 11:41:32 -0500
- Message-id: <1206808892.4479.13.camel@xxxxxxxxxxxxxxxxxx>
On Sat, 2008-03-29 at 17:33 +0100, Per Jessen wrote:
Carlos E. R. wrote:
The Saturday 2008-03-29 at 15:39 +0100, Per Jessen wrote:
If you're on a LAN, you don't really need a firewall, do you?
Of course we do. The worst attacks come from inside.
Carlos, you're joking, right?
I have zero attacks from the inside, but plenty from the outside. In
the last week, just one of my systems had 126062 ssh attacks from 41
unique IPs.
/Per Jessen, Zürich
Unfortunately, he used a poor choice of words to lump two separate
concepts together. Attacks are a higher risk coming from the outside.
They tend to be random, looking for an open port somewhere.
Internally, its not an attack but more of a security control risk where
individuals given certain amount of leeway or authority have access to
information and we don't know for sure what they're doing with that
information.
Two entirely different security issues.
Bryen
---------------------------------------------------------------------
To unsubscribe, e-mail: opensuse-factory+unsubscribe@xxxxxxxxxxxx
For additional commands, e-mail: opensuse-factory+help@xxxxxxxxxxxx
| < Previous | Next > |