Ya but everyone has to physically pop the dvd or usb drive into their computer and start anaconda right? So surely they can just "useradd whoever" from the command line or start sshd on their own when it comes to that. It doesn't make sense to me to have a widely agreed upon unsafe sshd setting on by default just to accommodate the convenience of a likely minority amount of users installing a headless server... especially considering those advanced users are best able to start sshd on their own and configure the firewall etc for their needs. At least when logging into gnome for the first time they could popup a message saying "by the way you should probably change your firewall unless you want to be hacked", if they really want to keep that option Date: Thu, 19 May 2011 11:49:02 -0600 From: kevin@xxxxxxxxx To: aragonx@xxxxxxxxxx Subject: Re: Default Fedora installation suffers from egregious configuration flaw CC: security@xxxxxxxxxxxxxxxxxxxxxxx On Thu, 19 May 2011 13:40:47 -0400 -- security mailing list security@xxxxxxxxxxxxxxxxxxxxxxx https://admin.fedoraproject.org/mailman/listinfo/security |
-- security mailing list security@xxxxxxxxxxxxxxxxxxxxxxx https://admin.fedoraproject.org/mailman/listinfo/security