[cap-talk] Any hope in RSA 2008?

Jonathan S. Shapiro shap at eros-os.com
Fri Apr 4 05:41:34 EDT 2008


On Wed, 2008-04-02 at 15:59 -0700, Jed Donnelley wrote:
> It isn't just those areas.  The whole thrust of the conference
> (mostly intrusion detection and configuration management on
> the technology side) seems to suggest pursuing nonsense as
> solutions...

I can't speak to the conference per se, but these activities are not
nonsense. These folk are trying to "solve" the problem in the sense of
"what can I do in the next three weeks", not "how can I rebuild the
world to be a better place".

In that light, methods for ensuring that processes are followed, and for
knowing which systems need to be reviewed when a compromise in subsystem
X is discovered, are very useful things.



More information about the cap-talk mailing list