Mailing List Archive
tlug.jp Mailing List tlug archive tlug Mailing List Archive
[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]Re: [tlug] low power home server
- Date: Tue, 11 May 2010 15:52:03 +0900
- From: "Stephen J. Turnbull" <stephen@example.com>
- Subject: Re: [tlug] low power home server
- References: <s2ga3b66a851005082029i1797a7a7i6a66f00e68b1ae4e@example.com> <4BE64E10.9050307@example.com> <w2ja3b66a851005082321n2453caben4265152f5b305b70@example.com> <4BE6746F.7010903@example.com> <4BE7F50F.8090005@example.com> <AANLkTimMwsApDv0qYpaf2HOkZGPYmIHV2VqirCiS6GEl@example.com> <4BE89967.7060808@example.com> <87wrvbqipx.fsf@example.com> <4BE8C75E.5060007@example.com>
eredicatorx@example.com writes: > On 05/11/2010 11:23 AM, Stephen J. Turnbull wrote: > > I gather you haven't read the "route via telepathy" anecdote in > > Bellovin and Cheswick. Anyway, this is a bad idea, because there's > > really only one OS per box, in this case the virtualization host OS. > > The guest OSes are just very demanding applications, and because they > > are so demanding, I would consider this setup extremely fragile from a > > security standpoint. > > > Not really from a security stand point, the OS's you use will only be as > secure as you configure them to be. The point is that instead of one OS to configure on the router, you now have three to configure, all of which need to access the same wire that the intruder will be using, plus all the apps that make up the SAN server, which are more or less trusted by the OS they run on, which is more or less trusted by the virtualization host. *Any* of those can let the bad guys in, at which point you have the possibility of getting root and perhaps then exploiting a bug in the host OS or the configuration of the virtualization. Lots of "maybes" there, of course, but in security you have to remember that depending on luck favors the intruder. He only has to get lucky once.
- References:
- [tlug] low power home server
- From: Janos Gyerik
- Re: [tlug] low power home server
- From: Darren Cook
- Re: [tlug] low power home server
- From: Janos Gyerik
- Re: [tlug] low power home server
- From: Edward Middleton
- Re: [tlug] low power home server
- From: eredicatorx@example.com
- Re: [tlug] low power home server
- From: Janos Gyerik
- Re: [tlug] low power home server
- From: Darren Cook
- Re: [tlug] low power home server
- From: Stephen J. Turnbull
- Re: [tlug] low power home server
- From: eredicatorx@example.com
Home | Main Index | Thread Index
- Prev by Date: Re: [tlug] An MMORPG Ultima Online on Linux
- Next by Date: Re: [tlug] An MMORPG Ultima Online on Linux
- Previous by thread: Re: [tlug] low power home server
- Next by thread: Re: [tlug] low power home server
- Index(es):
Home Page Mailing List Linux and Japan TLUG Members Links