public inbox for gentoo-user@lists.gentoo.org
 help / color / mirror / Atom feed
From: Neil Bothwick <neil@digimed.co.uk>
To: gentoo-user@lists.gentoo.org
Subject: Re: [gentoo-user] Re: Is gnome becoming obligatory?
Date: Mon, 11 Dec 2017 22:29:17 +0000	[thread overview]
Message-ID: <20171211222917.7660652b@digimed.co.uk> (raw)
In-Reply-To: <20171211210321.GA12473@ACM>

[-- Attachment #1: Type: text/plain, Size: 1829 bytes --]

On Mon, 11 Dec 2017 21:03:21 +0000, Alan Mackenzie wrote:

> OK.  But it's still there taking up RAM, and (more importantly) makes a
> systemd system a broader target for attacks.  Whether a system has an
> http server (or, for that matter, an SSH server), for whatever purpose,
> should be for the system administrator to decide.  I suspect this isn't
> the case for systemd's http server.

You're guessing again. The HTTP server doesn't run by default (very
little on systemd does). On Gentoo, it's not even built by default, but
don't let a brief look at the USE flags in eix get in the way of a good
argument!

> In any case, I don't want an http server on my system: I have no http to
> serve.

Then don't install one, I didn't.

> I installed sshd as one of the first things on my new system, to
> facilitate the transfer of files to it (and, probably, reading logs from
> it remotely).

The thing with using SSH to read logs is that it presents a much larger
attack vector when you only want to allow a user to read remote logs.

> I don't want a binary logging daemon either: that means having to learn
> a special purpose utility to be able to read its logs, and, in general,
> not being able to read that log from a remote machine.

"journalctl" is just the same as "less /var/log/messages" so here's not
much to learn unless you want to use the search features. Reading the log
from a remote machine is easy, using either SSH or HTTP, whichever you
prefer. My one complaint about the systemd journal is that there is not,
AFAIK, a standalone reader. If I want to boot from a live CD, I can only
read the logs if it is a systemd live CD, or I chroot into the original
system. Unless someone knows different...


-- 
Neil Bothwick

OPERATOR ERROR: Nyah, Nyah, Nyah, Nyah, Nyah!

[-- Attachment #2: OpenPGP digital signature --]
[-- Type: application/pgp-signature, Size: 833 bytes --]

  parent reply	other threads:[~2017-12-11 22:29 UTC|newest]

Thread overview: 85+ messages / expand[flat|nested]  mbox.gz  Atom feed  top
2017-12-09  9:51 [gentoo-user] Is gnome becoming obligatory? Mick
2017-12-09 10:25 ` Alexander Kapshuk
2017-12-09 10:27 ` Alan McKinnon
2017-12-09 10:34 ` [gentoo-user] " Nikos Chantziaras
2017-12-09 10:45   ` Mick
2017-12-09 12:00     ` Jorge Almeida
2017-12-09 23:36       ` Peter Humphrey
2017-12-10  6:12         ` R0b0t1
2017-12-10  8:54           ` Mick
2017-12-10  8:56           ` Jorge Almeida
2017-12-10 11:55             ` Mart Raudsepp
2017-12-10 12:03               ` Alan McKinnon
2017-12-10 12:11       ` karl
2017-12-10 21:01       ` Ian Zimmerman
2017-12-10 21:55         ` Jorge Almeida
2017-12-11  3:31           ` Canek Peláez Valdés
2017-12-11  4:37             ` Ian Zimmerman
2017-12-11  5:06               ` Mike Gilbert
2017-12-11  5:31             ` R0b0t1
2017-12-11 11:42               ` Corbin
2017-12-11 11:59             ` Jorge Almeida
2017-12-11 12:39               ` Mick
2017-12-11 13:22                 ` mad.scientist.at.large
2017-12-11 13:30                   ` Richard Bradfield
2017-12-11 13:48                     ` mad.scientist.at.large
     [not found]                     ` <<1512999026.3692893.1201071808.34DC69C6@webmail.messagingengine.com>
     [not found]                       ` <L04pIDW--B-0@tutanota.com-L04pQDl----0>
2017-12-11 14:04                         ` mad.scientist.at.large
     [not found]                         ` <<L04pIDW--B-0@tutanota.com-L04pQDl----0>
     [not found]                           ` <L04svRt--3-0@tutanota.com-L04t2Dq ----0>
     [not found]                             ` <L04svRt--3-0@tutanota.com-L04t2Dq----0>
2017-12-11 14:45                               ` mad.scientist.at.large
2017-12-11 13:27                 ` Kai Peter
2017-12-12 23:23               ` allan gottlieb
2017-12-13  8:06                 ` Alan McKinnon
2017-12-13 11:04                   ` Neil Bothwick
2017-12-13 11:46                     ` Marc Joliet
2017-12-13 14:05                       ` Dale
2017-12-14  7:54                   ` J. Roeleveld
2017-12-15  3:05                     ` Kai Krakow
2017-12-15  6:38                       ` J. Roeleveld
2017-12-15  8:47                         ` Kai Krakow
2017-12-15  9:28                         ` Neil Bothwick
2017-12-14 16:03                   ` Ian Zimmerman
2017-12-15  0:35                     ` Peter Humphrey
2017-12-15  1:12                       ` R0b0t1
2017-12-15  1:25                         ` Marc Joliet
2017-12-15  7:36                           ` J. Roeleveld
2017-12-09 12:04     ` Taiidan
2017-12-09 12:08       ` Alan McKinnon
2017-12-10  9:55         ` Wols Lists
2017-12-10 10:13           ` Alan Mackenzie
2017-12-10 21:02             ` Wols Lists
2017-12-10 23:08               ` Walter Dnes
2017-12-11 15:22                 ` Tom H
2017-12-11 19:20                 ` Wol's lists
2017-12-11 23:24                   ` Peter Humphrey
2017-12-12 10:34                     ` Neil Bothwick
2017-12-13  1:11                       ` Peter Humphrey
2017-12-13 10:57                         ` Neil Bothwick
2017-12-13 17:52                       ` Walter Dnes
2017-12-14  6:26                         ` Ian Zimmerman
2017-12-12  3:51                   ` mad.scientist.at.large
2017-12-11 18:56             ` Neil Bothwick
2017-12-11 21:03               ` Alan Mackenzie
2017-12-11 22:00                 ` Tom H
2017-12-11 22:29                 ` Neil Bothwick [this message]
2017-12-12 12:09                   ` Tom H
2017-12-12 12:11                   ` Wols Lists
2017-12-12 12:23                     ` Arve Barsnes
2017-12-12  7:01                 ` J García
2017-12-12 10:32                   ` Neil Bothwick
2017-12-12 18:55                   ` Alan Mackenzie
2017-12-12 20:11                     ` Wols Lists
2017-12-13  0:02                       ` Neil Bothwick
2017-12-13 14:01                         ` Wols Lists
2017-12-13 14:06                           ` Alon Bar-Lev
2017-12-13 15:17                           ` Neil Bothwick
2017-12-13 22:18                             ` Wols Lists
2017-12-12 20:11                     ` Neil Bothwick
2017-12-13 11:34             ` Marc Joliet
2017-12-13 12:46               ` Neil Bothwick
2017-12-13 19:37               ` Alan Mackenzie
2017-12-14  7:38                 ` Kai Peter
2017-12-14 10:57                 ` Marc Joliet
2017-12-14 15:52                   ` Ian Zimmerman
2017-12-15  1:16                     ` Marc Joliet
2017-12-15  9:50                       ` Wols Lists
2017-12-10 10:17           ` Nikos Chantziaras
2017-12-10 10:25           ` Jorge Almeida

Reply instructions:

You may reply publicly to this message via plain-text email
using any one of the following methods:

* Save the following mbox file, import it into your mail client,
  and reply-to-all from there: mbox

  Avoid top-posting and favor interleaved quoting:
  https://en.wikipedia.org/wiki/Posting_style#Interleaved_style

* Reply using the --to, --cc, and --in-reply-to
  switches of git-send-email(1):

  git send-email \
    --in-reply-to=20171211222917.7660652b@digimed.co.uk \
    --to=neil@digimed.co.uk \
    --cc=gentoo-user@lists.gentoo.org \
    /path/to/YOUR_REPLY

  https://kernel.org/pub/software/scm/git/docs/git-send-email.html

* If your mail client supports setting the In-Reply-To header
  via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line before the message body.
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox