LWN.net Logo

The lighttpd Web Server (O'ReillyNet)

The lighttpd Web Server (O'ReillyNet)

Posted Apr 6, 2007 15:58 UTC (Fri) by job (subscriber, #670)
Parent article: The lighttpd Web Server (O'ReillyNet)

I wish I could feel better about lighttpd's security. The only published security hole was a bit sloppy, and it isn't obvious if the design takes security seriously (compared to, say, Postfix or Dovecot which has clear compartments and it's obvious where all the validation goes).

The web server is a very sensitive piece of equipment and the enormous code dump that is Apache always left me a bit uneasy, but at least it's in very common use and pretty throughly tested.


(Log in to post comments)

Copyright © 2008, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds
Powered by Rackspace Managed Hosting.