Gravis,
Should we understand it's based on POSIX permissions and not on
ad hoc daemon? I'll keep breezing, but a little faster :-)
Didier
Le 16/02/2015 16:55, Gravis a écrit :
You dont have to be a server admin to be concerned
about security. I'm a desktop user/developer and while
customization is nice, security is paramount.
Revelations about the NSA has really made me reconsider
system security for my box and linux in general. Obviously,
systemd has a fundamental design flaw: it has no design
because it's completely ad hoc! I'm certain that if not
already, sometime in the future a remotely exploitable bug
will be found and will have the terrifying potential of being
able to control any networked machine that is running it. So
for the sake of the future, I'm working on a seamless security
paradigm that will minimize the capabilities programs to
minimize the damage in the event that they turn hostile.
Don't hold your breath though, I'm still designing it.
UNIX/POSIX has impressively robust security mechanisms, we
just have to apply them properly.
_______________________________________________
Dng mailing list
Dng@lists.dyne.org
https://mailinglists.dyne.org/cgi-bin/mailman/listinfo/dng
|
_______________________________________________
Dng mailing list
Dng@lists.dyne.org
https://mailinglists.dyne.org/cgi-bin/mailman/listinfo/dng