Groups | Search | Server Info | Keyboard shortcuts | Login | Register [http] [https] [nntp] [nntps]


Groups > linux.debian.security > #6210

Re: sysadmin in training

Path csiph.com!fu-berlin.de!bofh.it!news.nic.it!robomod
From Jeremy Stanley <fungi@yuggoth.org>
Newsgroups linux.debian.security
Subject Re: sysadmin in training
Date Fri, 12 May 2023 19:20:01 +0200
Message-ID <GuEAV-8pcK-1@gated-at.bofh.it> (permalink)
References <GuD29-8ob1-5@gated-at.bofh.it> <GuDER-8oDT-1@gated-at.bofh.it> <GuErf-8p9t-1@gated-at.bofh.it>
X-Original-To debian-security@lists.debian.org
X-Mailbox-Line From debian-security-request@lists.debian.org Fri May 12 17:16:35 2023
Old-Return-Path <fungi@yuggoth.org>
X-Amavis-Spam-Status No, score=-12.01 tagged_above=-10000 required=5.3 tests=[BAYES_00=-2, LDO_WHITELIST=-5, PGPSIGNATURE=-5, T_SCC_BODY_TEXT_LINE=-0.01] autolearn=ham autolearn_force=no
X-Policyd-Weight using cached result; rate: -4.6
MIME-Version 1.0
Content-Type multipart/signed; micalg=pgp-sha512; protocol="application/pgp-signature"; boundary="gn6io34twqie7e3t"
Content-Disposition inline
User-Agent NeoMutt/20170113 (1.7.2)
X-Sa-Exim-Connect-IP 2001:4802:7801:102:be76:4eff:fe20:63e0
X-Sa-Exim-Rcpt-To debian-security@lists.debian.org
X-Sa-Exim-Mail-From fungi@yuggoth.org
X-Sa-Exim-Scanned No (on azathoth.yuggoth.org); SAEximRunCond expanded to false
X-Mailing-List <debian-security@lists.debian.org> archive/latest/29375
List-ID <debian-security.lists.debian.org>
List-URL <https://lists.debian.org/debian-security/>
List-Archive https://lists.debian.org/msgid-search/20230512171610.fvo24xtcv5cgswvo@yuggoth.org
Approved robomod@news.nic.it
Lines 54
Organization linux.* mail to news gateway
Sender robomod@news.nic.it
X-Original-Date Fri, 12 May 2023 17:16:11 +0000
X-Original-Message-ID <20230512171610.fvo24xtcv5cgswvo@yuggoth.org>
X-Original-References <bae17942-6de1-264d-1421-f17fb64f8f3c@systasis.co> <20230512154744.i2xc56u5jgmlnsss@yuggoth.org> <9338c78d-a4df-174c-a0b6-a2ea35f1ba99@systasis.co>
Xref csiph.com linux.debian.security:6210

Show key headers only | View raw


[Multipart message — attachments visible in raw view] - view raw

On 2023-05-12 09:53:15 -0700 (-0700), Jeffrey Chimene wrote:
[...]
> Agreed. Actually, ossec itself has a debian package, so no ITP for
> me :). It made my work significantly easier since the regex
> package (pcre2) isn't part of the distro; the absence has a
> reason, but it's still an impediment that ossec itself has
> addressed with their .deb

I'm not sure that official Debian documentation, particularly
security-focused documentation, should recommend that sysadmins
install packages from third party archives. That'll be up to the
maintainers of the documentation to decide, of course.

But beyond that...

> wget -q -O - https://updates.atomicorp.com/installers/atomic | sudo bash
[...]

There's a bit of irony in suggesting that security-conscious
sysadmins should download and run arbitrary scripts, much less with
root privileges. `curl|sudo bash` has virtually become a meme unto
itself these days.
-- 
Jeremy Stanley

Back to linux.debian.security | Previous | NextPrevious in thread | Next in thread | Find similar


Thread

sysadmin in training Jeffrey Chimene <jeff@systasis.co> - 2023-05-12 17:40 +0200
  Re: sysadmin in training Jeremy Stanley <fungi@yuggoth.org> - 2023-05-12 18:20 +0200
    Re: sysadmin in training Jeffrey Chimene <jeff@systasis.co> - 2023-05-12 19:10 +0200
      Re: sysadmin in training Jeremy Stanley <fungi@yuggoth.org> - 2023-05-12 19:20 +0200
        Re: sysadmin in training Jeffrey Chimene <jeff@systasis.co> - 2023-05-12 21:40 +0200
          Re: sysadmin in training Michael Lazin <microlaser@gmail.com> - 2023-05-13 03:50 +0200
            Re: sysadmin in training Lupe Christoph <lupe@lupe-christoph.de> - 2023-05-13 04:10 +0200
            Re: sysadmin in training Olaf Dietsche <olaf+list.debian-security@olafdietsche.de> - 2023-05-13 14:40 +0200

csiph-web