| I have an idea about how to find a real security expert.
|
| Find somebody who has no firewall and essentially no packet filtering
| and has run a publicly visible site for some years, but has had no
| serious intrusions.
|
| A challenge? Yes. To allow little or no outside access and maintain
| security is quite easy -- it takes not much expertise. To achieve the
| same result with no real barrier between the world and you except the
| inherent security of your internal machines and network -- that takes a
| real expert to achieve.
But that really easy! I would say most sites would not detect an intrusion
unless the intruder wants that to happen. So it would actually be the default
case.
(Not entirely serious, though)
/Christian Wettergren, cwe @
it .
kth .
se
Follow-Ups:
References:
|
|