ACK! -- CONTINUED

Steven Elling ellings at kcnet.com
Mon Apr 21 06:28:45 CDT 2003


On Sunday 20 April 2003 16:39, Lucas Peet wrote:
> In the end, I upgraded my OpenSSL packages, and it's never happened
> again.  But I did learn a few things.  One, I now upgrade any package
> that's installed on my system with a known vulnerability - whether I'm
> running/using it or not. And two, I learned that sometimes, getting
> hacked can be made into a good thing, by really lighting a fire under a
> sysadmin's ass and MAKING him be more security minded, less lazy, and
> all in all a better sysadmin because of it.

Another valuable lesson here is to remove packages from your system if you are 
not using them --- IF your system will let you.  The more packages installed 
on your system the more risk involved.




More information about the Kclug mailing list