Infosec folks: "Don't do everything as root!"

Also infosec folks: "I use Kali linux for everything, and run everything as root"

@liamo To infosec folks: "This production application must run as root!"

After two weeks of fucking around with it... it really does need to run as root. It blows up any other way.

Shit.

@drwho good infosec folks know that generally not the ops people who are at fault, it's the software vendors who are wrong

@liamo When it's an in-house application, though...

And there are ops folks who really don't know or understand. I've worked with 'em. I'm pretty sure you have, too.

@drwho yeah fair point if it's in-house :)

I'm actually fine with ops people who don't know better or understand, cause it's a chance to teach.

People who know better but do the bad thing anyway are the ones who get beaten with the red pen