It took the academic community two decades to figure out that the NSA "tweaks" actually improved the security of DES. This means that back in the '70s, the National Security Agency was two decades ahead of the state of the art.There's no arguably about it. What NSA did was right, we know that now.
My only real issue with the OpenBSD world is that there's a certain amount of cargo-cult about it; the OpenBSDers have done a great job of being fanatical about security ... but once you start layering standard Unix software on top of it, to you know, make it usable, it has many of the same weaknesses as any other Unix variant. Apache is Apache is Apache.Well, only to a point. For example, the httpd that ships with OBSD is a special audited one based on Apache 1.3. Their fanaticism did not allow them to accept the license change for Apache 2, so they forked it. There are examples of this through-out the product.
pb@metafilter:~$ sed -i 's/RMS is the uncle/ESR is the uncle/g' /var/www/mefi/content/posts/98547/comments.html
sed: can't read comments.html: Permission denied
pb@metafilter:~$ sudo !!
[sudo] password for pb:
pb@metafilter:~$ « Older Ants: Nature's Secret Power [Hulu]... | Dear John, Love, Bennett:... Newer »
This thread has been archived and is closed to new comments
Nice of him to wring his hands over forwarding the email then leave the full contact details in there.
posted by Artw at 5:52 PM on December 14, 2010