Re: ACL



hike wrote:
No, it is not wise.

It is unethical for sysadmins to access this data without a specific reason
and approval.
If you cannot trust your sysadmins to act in an ethical fashion, YOU have
screwed up big-time.

YOU hire trustworthy people.
YOU train trustworthy people.

Locking-down SELinux does not stop unethical sysadmins.
It will just take a little longer to breach your ill-advised & INSULTING
security.
Once the unethical sysadmin that YOU hired breaks in, she will be (rightly)
pissed and really screw things up.

If you don't trust YOUR sysadmins, either quit (the preferred solution) or
fire the sysadmins.

Doesn't anybody think it is essential to hire TRUSTWORTHY people any more?
Doesn't ANY employer think it is essential to RESPECT their employee any
more?

These are two reasons that businesses in the U.S.A. suck big time!



I have to say, I certainly do agree with you. I was thinking the exact same thing, but didn't want to turn this thread into a flame war. Personally, it's a lack of respect on both sides that cause trouble. Not respecting and trusting your admins leads to them acting like children.

Remember being told, as a kid, 'don't do this' (whatever it was) and the one and only thought on your mind is 'I HAVE to do that'? Every child gets that way. Not trusting your admins gets the same result. (IMHO)

I don't think we need to make this a long, drawn out thread on ethics, I only asked if that was wise simply because I think it's not and wanted to hear what others say.



--
Libenter homines id quod volunt credunt -- Caius Julius Caesar


Mark Haney
Sr. Systems Administrator
ERC Broadband
(828) 350-2415

Call (866) ERC-7110 for after hours support

--
redhat-list mailing list
unsubscribe mailto:redhat-list-request@xxxxxxxxxx?subject=unsubscribe
https://www.redhat.com/mailman/listinfo/redhat-list



Relevant Pages

  • RE: ACL
    ... there's no legal reason for the sysadmins to access the particular data, ... SELinux in no way reduces the need to hire trustworthy people. ... If you cannot trust your sysadmins to act in an ethical fashion, ...
    (RedHat)
  • Re: ACL
    ... There are some instances where denial of direct access to data is a governmental requirement. ... Unfortunately unscrupulous sysops and records admins were among those who were party to passing private healthcare data along to unauthorized third parties. ... It is unethical for sysadmins to access this data without a specific reason ... YOU train trustworthy people. ...
    (RedHat)
  • Re: Fedora Extras is extra
    ... I trust kde-redhat I trust dags repository because I ... I am not going to go away from repositories that have proved to be trustworthy ... but they have not given us a real good reason for that so far. ...
    (Fedora)
  • Re: ACL
    ... No, it is not wise. ... It is unethical for sysadmins to access this data without a specific reason ... If you cannot trust your sysadmins to act in an ethical fashion, ... These are two reasons that businesses in the U.S.A. suck big time! ...
    (RedHat)