aacraid style monitoring for megaraid2, use DELL_megaraid2.monitoring.tar.gz

David Hubbard dhubbard at dino.hostasaurus.com
Thu Jul 6 10:57:10 CDT 2006


From: Sean Dilda
> 
> Patrick_Boyd at dell.com wrote:
> > That's a correct assesment of our support for 64-bit Oses. 
> > 
> > As for opensourcing our management tools I'm afraid that 
> portions of 
> > those are the IP of our Vendors and are disclossed to us under NDA, 
> > our hands are as tied as yours are. And there really are some bad 
> > things that non-root level users could do if they had 
> access to some 
> > of the source code in the RAID management libraries.
> > 
> 
> That sounds a lot like security through obscurity.  Which is 
> a really bad plan at this level.
> 
> If a non-root user can do bad things, then shouldn't the 
> driver be fixed to prevent that?  Along those same lines, 
> wouldn't malicious users be able to figure out how to do the 
> 'bad things' if they just read through the driver code?
> 
> 
> The fact that there are drivers in common use that are using 
> security through obscurity really bothers me.
> 

That's the same reason we've never installed the management
tools on any of our servers; we're a web host and through
vulnerable php scripts or whatever else, we can't risk having
them there without knowing what they could be used for; this
just further bolsters my reasons for not installing them.
We, like the other person, also don't want to install a bunch
of compatibility libraries that could potentially cause
other issues just to run the management tools on a 64-bit
install.

David



More information about the Linux-PowerEdge mailing list