From: Greg A. Woods
Date: Tue, 17 Dec 2002 17:46:38 -0500 (EST)

[ On Tuesday, December 17, 2002 at 17:33:09 (+0100), Walter, Jan wrote: ]
> I think we need to differentiate between "really bullet-proof security" and
> "reasonable security" 

No, that's not right at all.

What people who are concerned about these issues really MUST do is to
learn some fundamentals about computer system security, and then they
need to do a proper analysis of their particular security needs.

>  - after all, security is also there to protect users
> from themselves, with no malicious intent required. I would also fathom that
> this is the cause of most data loss.

Again, that's completely wrong, especially to say so in a general way
like that.

To understand security of any kind and to implement reasonable
protections you have to understand what you're protecting and what value
it has to both its rightful owners and to anyone who might desire to
have or to destroy it; and you have to understand the threats that you
face and how they might be exploited and how those exploits can be
prevented or mitigated.

