On 9/13/07, Shawn Walker <binarycrusader at gmail.com> wrote: > To me the benefit is in discouraging use of something that should not > be used. The size of it is obviously barely a concern. If at the very > least it is disabled by default, I'd be happier, though not happy ;)
Fair enough. May I suggest as an overriding theme we go for "secure by default"[1]? Perhaps adoption of such a strategy can serve as a guiding principle for the next time this conversation (s/telnetd/$whatever/g) comes up. 1. http://www.opensolaris.org/os/community/security/projects/sbd/ -- Mike Gerdts http://mgerdts.blogspot.com/
