Re: Shorewall and MySQL problem - solved



Bit Twister wrote:

I read an article a few days ago. 80% are internal cracks from
disgruntled employees.

Please post references to that article.


Noticed you are posting from windows. With /known/ malware signature count
past the half a million mark, I would have to treat any doze box on
the lan like it was an external connection.

This xp is on a different lan.

I _tried_ to test this server to be secure from any kinds of attacks from outside.

Security is designed in up front, not added later by testing.

That I do disagree. At least parts of it.



The first line of defense is the firewall and it only lets the
required ips access for /only/ the services they require. Not the wild
card service access you granted.

Agreed.



Servers are being cracked through applications running behind the
firewall via poor programming practices.

Agreed.

The first, it seems, are programmers are no longer validating input
before using it.

Agreed.


.