Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Vista
Interview with Marcus Ranum
Federico Biancuzzi, 2005-06-21

Comments Mode:
Good! 2005-06-21
Anonymous
Interview with Marcus Ranum 2005-06-21
Steve Lodin
Interview with Marcus Ranum 2005-06-22
Anonymous (1 replies)
Re: Interview with Marcus Ranum 2005-06-22
Marcus Ranum
If the CTOs of 10 FORTUNE 500 firms .... 2005-06-22
Andrew Yeomans
Interview with Marcus Ranum 2005-06-22
some guy in Central PA (1 replies)
Re: Interview with Marcus Ranum 2005-06-22
Marcus Ranum (1 replies)
Interview with Marcus Ranum 2005-06-22
Anonymous
Interview with Marcus Ranum 2005-06-22
Anonymous (1 replies)
Re: Interview with Marcus Ranum 2005-06-22
Marcus Ranum (2 replies)
Re: Re: Interview with Marcus Ranum 2005-06-22
Anonymous (1 replies)
Re: Re: Re: Interview with Marcus Ranum 2005-06-23
Marcus Ranum (1 replies)
Re: Re: Interview with Marcus Ranum 2005-06-22
Anonymous
Apologies for the anonymous. I think people focus too much on the existance of hackers - of course they are to blame, sort of why we are forced to have police because people break laws. They are a natural product of human curiosity and schedenfraude, though, and I can't imagine a universe in which a computing environment would have evolved without them. Less effective ones, maybe - or maybe much smarter ones, depending on how you look at it.

The "Rape" analogy has been used before with computer security and I'm not sure I completely agree. I liken it more to someone unwilling to accept danger. For instance, I prefer an analogy like someone driving a motorcycle at high speed on the highway and when he falls he cracks his head open because he didn't use a helmet. Society would blame the increased injury on his refusal to wear a helmet, even if the crash wasn't caused by the motorcycle rider.

That said, I think people rely on firewalls TOO much. The application is still the basic hole in the armor. But people like centralized management of security because people can't manage hundreds of application spread over thousands of nodes. Firewalls are easy to centralize, therefore, they are the silver bullet in the eyes of most people.

Windows XP sp2 now has firewall built in - I can count on the fingers of my hand the number of people who have even bothered to remotely consider how to properly configure that fireawll without just turning it off so they can use their applications because they do not care ('its not their job') to understand how firewalls work.

[ reply ]

Link to this comment: http://www.securityfocus.com/comments/columns/334/32042#32042
Blame 2005-06-22
Anonymous (1 replies)
Re: Blame 2005-06-22
Marcus Ranum
Interview with Marcus Ranum 2005-06-22
Anonymous
What a genius! 2005-06-22
Pete (4 replies)
Re: What a genius! 2005-06-22
Anonymous (1 replies)
Re: Re: What a genius! 2005-06-27
Anonymous
Re: What a genius! 2005-06-22
Marcus Ranum
Re: What a genius! 2005-06-23
Anonymous
Re: What a genius! 2005-06-23
Anonymous
Interview with Marcus Ranum 2005-06-22
B Maurice
Interview with Marcus Ranum 2005-06-22
Anonymous (1 replies)
Re: Interview with Marcus Ranum 2005-06-22
Marcus Ranum
Interview with Marcus Ranum 2005-06-22
Anonymous
Interview with Marcus Ranum 2005-06-22
Anonymous
Interview with Marcus Ranum 2005-06-22
Anonymous
Interview with Marcus Ranum 2005-06-22
Tails (2 replies)
Re: Interview with Marcus Ranum 2005-06-22
Anonymous
Re: Interview with Marcus Ranum 2005-06-22
Marcus Ranum (7 replies)
Re: Re: Interview with Marcus Ranum 2005-06-23
Anonymous (1 replies)
Re: Re: Interview with Marcus Ranum 2005-06-25
rabidpacketmonkey
Re: Re: Interview with Marcus Ranum 2005-06-28
Norman Yarvin
Interview with Marcus Ranum 2005-06-22
trip (1 replies)
Re: Interview with Marcus Ranum 2005-06-23
Marcus Ranum
Good Article 2005-06-22
JC
What A Total Jackass 2005-06-22
Anonymous (1 replies)
Re: What A Total Jackass 2005-06-23
Marcus Ranum (1 replies)
Re: Re: What A Total Jackass 2005-06-29
Anonymous
Marcus Ranum blaming hackers???? 2005-06-22
pw (2 replies)
Re: Marcus Ranum blaming hackers???? 2005-06-23
Marcus Ranum
no, blame the victims 2005-06-24
Anonymous
SE/Linux 2005-06-22
Luke Kenneth Casson Leighton (1 replies)
Re: SE/Linux 2005-06-29
Anonymous
Interview with Marcus Ranum 2005-06-23
Rastor5
Interview with Marcus Ranum 2005-06-23
Anonymous
distribution of responsability is well put 2005-06-23
Martin-Éric Racine
Interview with Marcus Ranum 2005-06-23
Anonymous
Blame the Hackers? 2005-06-23
Bob (1 replies)
Re: Blame the Hackers? 2005-06-29
Marcus Ranum
Interview with Marcus Ranum 2005-06-24
Phil Agcaoili
his comments about the RFC process 2005-06-24
Reinier Post
Interview with Marcus Ranum 2005-06-24
Anonymous (2 replies)
Re: Interview with Marcus Ranum 2005-06-27
M. Andrew Molitor
Re: Interview with Marcus Ranum 2005-06-28
Anonymous (1 replies)
Interview with Marcus Ranum 2005-06-27
Anonymous (1 replies)
Re: Interview with Marcus Ranum 2005-07-11
Anonymous
80% spyware & 15% keyloggers? 2005-06-28
Anonymous
Interview with Marcus Ranum 2005-06-28
Anonymous (1 replies)
Re: Interview with Marcus Ranum 2005-06-29
Marcus Ranum
Interview with Marcus Ranum 2005-06-29
David
Agressive network configuration 2005-07-05
Stephen T
Interview with Marcus Ranum 2005-07-06
Anonymous
Think about it... 2005-07-16
Johann van Duyn
Interview with Marcus Ranum 2007-07-11
John Cowan
Interview with Marcus Ranum 2007-11-27
Anonymous







 

Privacy Statement
Copyright 2008, SecurityFocus