top | item 16445883

(no title)

fazza99 | 8 years ago

what was wrong with webmin?

(ducks)

discuss

order

excalibur|8 years ago

How to get recommendations for a software solution on HN: 1. Submit an Ask HN thread, and ask for advice. 2. Watch your thread get no response or interest from anybody. 3. Give up on HN and go build your own solution. 4. When it's ready, submit it to HN to help others in your situation. 5. The recommendations you were looking for will appear in the comments.

nathan_f77|8 years ago

Haha, now I'm worried that this is going to happen to me. I'm looking for a production-ready Terraform/CloudWatch project for Rails + Sidekiq: https://news.ycombinator.com/item?id=16447092

If I can't find anything, I'm going to build it myself. (And I'm going to add Cockpit to my servers.)

wingworks|8 years ago

Haha, it's scary how close to reality this is. At least for me.

thinkMOAR|8 years ago

freehunter|8 years ago

Yeah, getting Webmin security right is possible but very challenging. Whenever I'm doing a security assessment at a client and I see traffic to/from servers on port 10000 I always make a note that there's probably some vulnerabilities there that our pentest guys will want to explore.

I have no idea if Cockpit is any more secure, but Webmin does have its fair share of security issues.

Celarnor|8 years ago

Honestly what I'm thinking.