Home > Razno > djb je bio u pravu

djb je bio u pravu

Posle zaista velikog broja tekstova na net-u koje sam pročitao na temu DNS propusta koji je uzdrmao celokupan Internet ( /. US-CERT VU#800113, ISC, BBC, Wall Street i mnogi drugi), našao sam originalni tekst na temu bug-a koji je otkrio Dan Kaminsky. U jednom delu svog blog-a on je napisao nešto što je meni privuklo pažnju, a tiče se DJB-a i njegovog software-a. Citat neću prevoditi, već ću ga ovde preneti u originalnoj formi:

“… It was an interesting discussion, with lots of disagreement, but ever-growing consensus. After evaluating several options, one approach was clear and, I must admit, somewhat embarassing to Paul (Vixie). DJB was right. All those years ago, Dan J. Bernstein was right: Source Port Randomization should be standard on every name server in production use. There is a fantastic quote that guides a lot of the work I do: Luck is the residue of design. Dan Bernstein is a notably lucky programmer, and that’s no accident. The professor lives and breathes systems engineering in a way that my hackish code aspires to one day experience. DJB got “lucky” here – he ended up defending himself against an attack he almost certainly never encountered. Such is the mark of excellent design. Excellent design protects you against things you don’t have any information about. And so we are deploying this excellent design to provide no information. …”

Eto, ako me neko ikad bude ponovo pitao zašto koristim qmail, ili neki drugi DJB-ov sofware, sada imam odličnu referencu gde da tu osobu uputim. Mislim da ovo može da “začepi usta” i onim najglasnim zagovornicima (gnu-brain-washed) koje sam godinama slušao kako pričaju notorne gluposti, najčešće iz apsolutnog neznanja.

  1. No comments yet.
  1. No trackbacks yet.
You must be logged in to post a comment.