Linked by David Adams on Thu 15th Jul 2010 16:56 UTC, submitted by poundsmack
Permalink for comment 433585
To read all comments associated with this story, please click here.
To read all comments associated with this story, please click here.
Features
Linked by Thom Holwerda on 05/21/13 21:38 UTC
Linked by Thom Holwerda on 05/20/13 11:29 UTC
Linked by Thom Holwerda on 05/18/13 21:33 UTC
Linked by David Adams on 05/16/13 4:23 UTC
Linked by Thom Holwerda on 05/11/13 21:41 UTC
Linked by Thom Holwerda on 05/08/13 14:22 UTC
Linked by Thom Holwerda on 05/02/13 15:28 UTC
Linked by Thom Holwerda on 04/29/13 21:06 UTC
Linked by Thom Holwerda on 04/24/13 22:24 UTC
Linked by Thom Holwerda on 04/18/13 11:21 UTC
More Features »
Sponsored Links



Member since:
2006-12-28
I agree with most of what you say but it's the secure part I'm definitely not in agreement with. The default install leaves things like FTP and Telnet ports open by default plus all the remote management software runs as root.
The worst culprit of all, in my opinion, is the ssh implementation. It's always at least several versions behind the latest release and last time I looked, it didn't come installed by default. In fact, you had to download it from sourceforge.
One thing that has always annoyed me is the hardware management console, an X86 system running a cut down Linux that is used to manage all your POWER based systems on your network. It's also insecure by default and once you have control of this one machine, you can give yourself root access to any machine.
So all in all, very sloppy security by IBM.