17 Jun
2013
17 Jun
'13
5:43 p.m.
On Mon, Jun 17, 2013 at 10:04 AM, Nikolay Shopik shopik@inblock.ru wrote:
Well I doubt observium could be disaster for network as its only reading stuff and not commit anything.
Only disaster could happend and this is when obs stop working and you noticing this late billing for example.
I think the biggest risk would be if the code was trojan'd and you had IPMI passwords in there, since they're basically the keys to the castle. Granted, you should probably only be giving observium access to read-only IPMI profiles, but BMCs don't always make that easy or straightforward to set up.
--
David Brodbeck
System Administrator, Linguistics
University of Washington