RE: system security (was: symbolize roles)

Subject: RE: system security (was: symbolize roles)
From: Bruce Byfield <bbyfield -at- axionet -dot- com>
To: "TECHWR-L" <techwr-l -at- lists -dot- techwr-l -dot- com>
Date: Tue, 28 Jun 2005 09:58:22 -0700


On Tue, 2005-06-28 at 10:43 -0400, Jason Willebeek-LeMair (jlemair)
wrote:

> Just because security through obscurity is a bad idea does not mean you
> have to reveal everything. You just have to realize that concealing
> capabilities is not the same as securing them.

Which was exactly my point. I wasn't responding to your original post,
but to another poster, who seemed to think that mentioning other
capacities would raise security issues.

Anyway, security aside, what is wrong with letting people know that
software has capacities that they're not using? Either people won't
care, or they'll nose around and learn about the other capacities anyway
in the normal course of their work.

My experience is that trying to conceal functionality is a waste of
time, but that a few users always appreciate knowing more than they
strictly need to.
--
Bruce Byfield 604-421-7177
http://members.axion.net/~bbyfield

"Inspiration and craft plus time and effort minus fear and doubt
multiplied by purpose equals song."
- Ray Wylie Hubbard.


^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^

Now Shipping -- WebWorks ePublisher Pro for Word! Easily create online
Help. And online anything else. Redesigned interface with a new
project-based workflow. Try it today! http://www.webworks.com/techwr-l

Doc-To-Help 2005 now has RoboHelp Converter and HTML Source: Author
content and configure Help in MS Word or any HTML editor. No
proprietary editor! *August release. http://www.componentone.com/TECHWRL/DocToHelp2005

---
You are currently subscribed to techwr-l as:
archiver -at- techwr-l -dot- com
To unsubscribe send a blank email to leave-techwr-l-obscured -at- lists -dot- techwr-l -dot- com
Send administrative questions to lisa -at- techwr-l -dot- com -dot- Visit
http://www.techwr-l.com/techwhirl/ for more resources and info.



Follow-Ups:

References:
RE: system security (was: symbolize roles): From: Jason Willebeek-LeMair \(jlemair\)

Previous by Author: RE: symbolize roles
Next by Author: Re: good online help book for xml-based online help?
Previous by Thread: RE: system security (was: symbolize roles)
Next by Thread: RE: system security (was: symbolize roles)


What this post helpful? Share it with friends and colleagues:


Sponsored Ads