home *** CD-ROM | disk | FTP | other *** search
- Newsgroups: comp.security.misc
- Path: sparky!uunet!zaphod.mps.ohio-state.edu!uwm.edu!linac!att!princeton!phoenix.Princeton.EDU!mfterman
- From: mfterman@phoenix.Princeton.EDU (Mutant for Hire)
- Subject: Re: Future OS virus immunity.
- Message-ID: <1993Jan3.023308.25376@Princeton.EDU>
- Originator: news@nimaster
- Sender: news@Princeton.EDU (USENET News System)
- Nntp-Posting-Host: phoenix.princeton.edu
- Reply-To: mfterman@phoenix.princeton.edu (Mutant for Hire)
- Organization: Mutant for Hire, Inc.
- References: <eronald.726016050@ruble>
- Date: Sun, 3 Jan 1993 02:33:08 GMT
- Lines: 28
-
- In article <eronald.726016050@ruble>, eronald@fml.tuwien.ac.at (Edmund Ronald) writes:
- > Several people remarked that virues on Unix machines were "impossible"
- >because of the access control separating accounts. No one bothered to
- >remember that the past ten years have proven Unix system security to be an
- >oxymoron, a topic that keeps graduate students entertained nights. In fact,
- >if I may venture some sarcasm, if administrators and vendors did not make
- >such exagerated claims about Unix security, then there would probably be
- >fewer attacks :)
-
- The main problem with Unix security is that there are a lot of holes to
- plug. The system administrator can make a unix system fairly secure,
- placing the weak point with the users, but you have to really be careful
- about programs that run setuid, protections on all files, and other such
- issues.
-
- One may ask how easy it is to make a unix system secure, and I agree that
- it is not easy to make a system that is used by a lot of users for various
- sophisticated tasks secure. Additionally, unix being so widely distributed
- and talked about has a hard time relying on "security through obscurity",
- since any hole will get talked about. I do wonder how much more secure
- other OS's are, where the ability to keep a security hole quiet is a bit
- easier.
-
- --
- Martin Terman, Mutant for Hire, Mean Ol' Top, Priest of Shub-Internet
- Disclaimer: Nobody else takes me seriously, why should you be the first?
- mfterman@phoenix.princeton.edu mfterman@pucc.bitnet terman@pupgga.princeton.edu
- "Sig quotes are like bumper stickers, only without the same sense of relevance"
-