User: Password:
Subscribe / Log in / New account

KS2010: Security

KS2010: Security

Posted Nov 5, 2010 14:10 UTC (Fri) by Lionel_Debroux (subscriber, #30014)
In reply to: KS2010: Security by spender
Parent article: KS2010: Security

I feel that this rhetorical question may sway the discussion, not good ;-)

(Log in to post comments)

KS2010: Security

Posted Nov 5, 2010 15:20 UTC (Fri) by spender (subscriber, #23067) [Link]

Which is the point. The entire 'security circus' business is an excuse to avoid the real issues here. Phrased differently, what does 'security circus' have to do with upstream improving the security of their own kernel?

The answer is: "nothing." So why is it brought up so much when it's completely irrelevant to any kind of discussion we're having here?

I can think of a million better questions, like "what is Linux doing to attract security talent for mainline work instead of pushing away potential contributors?" or "Linux is used on millions of systems; why isn't there a single person employed full-time to improve upstream kernel security?" or "How can we move away from the find bug/patch bug mindset/approach to security?"

But it says a lot about an individual and their view toward security when the most useful thing they can muster is some regurgitated crap about "security circus" as if they're saying something insightful or intelligent.


Copyright © 2018, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds