Re: compilers a security risk?

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]



On Sat, Mar 6, 2010 at 6:02 PM, Dave Stevens <geek@xxxxxxxxxxxx> wrote:

> I don't have enough experience to assess the security issues. Does
> anyone have an opinion on this? It would be simple and feasible to
> allocate another domain as suggested above.

The compilers themselves aren't really a security risk, but IF someone
gets into your system, there's no need to provide them with tools they
can use to do their dastardly deeds. I'm a minimalist when it comes to
my production systems. Not having extraneous packages on the system
means (ostensibly) less patching, less applications with potential
holes which in turn means less surface area to attack, etc.


-- 
During times of universal deceit, telling the truth becomes a revolutionary act.
George Orwell
_______________________________________________
CentOS mailing list
CentOS@xxxxxxxxxx
http://lists.centos.org/mailman/listinfo/centos

[Index of Archives]     [CentOS]     [CentOS Announce]     [CentOS Development]     [CentOS ARM Devel]     [CentOS Docs]     [CentOS Virtualization]     [Carrier Grade Linux]     [Linux Media]     [Asterisk]     [DCCP]     [Netdev]     [Xorg]     [Linux USB]
  Powered by Linux