• racemaniac@lemmy.dbzer0.com
      link
      fedilink
      arrow-up
      3
      ·
      6 hours ago

      Suppose we all did read the docs. How possible is it with the complexity of a modern system to really take literally everything in account, and understand the implications oof everything to keep your system safe? It’s great that it’s documented, but if security isn’t the default option, it will lead to issues, and everything has become so complex, that imo correctly managing everything is literally impossible… This is a systemic issue, not a user issue.

      • Lemmert@reddthat.com
        link
        fedilink
        arrow-up
        1
        ·
        3 hours ago

        I don’t think it would’ve been an issue if they just put a warning in the getting started section in the docs (or if they just have secure defaults to begin with). But currently there’s no mention of it. It took almost a year for me to realise that I was running “production ready code” in root