1995-10-18 - Re: Postscript in Netscape

Header Data

From: sameer <sameer@c2.org>
To: jsw@netscape.com (Jeff Weinstein)
Message Hash: 11fd9c2b16f72359471ce9952edc6a5d84a5e8569df9a98e22107bde35ef96bc
Message ID: <199510181536.IAA24732@infinity.c2.org>
Reply To: <3084F191.56FE@netscape.com>
UTC Datetime: 1995-10-18 15:41:38 UTC
Raw Date: Wed, 18 Oct 95 08:41:38 PDT

Raw message

From: sameer <sameer@c2.org>
Date: Wed, 18 Oct 95 08:41:38 PDT
To: jsw@netscape.com (Jeff Weinstein)
Subject: Re: Postscript in Netscape
In-Reply-To: <3084F191.56FE@netscape.com>
Message-ID: <199510181536.IAA24732@infinity.c2.org>
MIME-Version: 1.0
Content-Type: text/plain


> > WRONG!!! Netscape claims to be "secure" - hence it is Netscape's job to
> > be secure - regardless of the user's use of their product.  Otherwise,
> > the ads should read:
> > 
> >         "Netscape can be used securely by sufficiently knowledgeable
> >         users who have emasculated their postscript interpreters before
> >         using them to view files of unknown origin, and who have removed
> >         all other known, unknown, and/or undisclosed security holes from
> >         their systems.  Otherwise, Netscape is insecure and should not be
> >         trusted."

	That's bullshit. Netscape can't control every user's entire
environment. It's Netscape's job to produce a secure product. If the
users of said product decide to shoot themselves in the foot by
configuring it insecurely that is there problem. It is in Netscape's
best interest to make it difficult to configure insecurely, but
impossible to prevent.

-- 
sameer						Voice:   510-601-9777
Community ConneXion				FAX:	 510-601-9734
The Internet Privacy Provider			Dialin:  510-658-6376
http://www.c2.org (or login as "guest")			sameer@c2.org




Thread