• thejml@sh.itjust.works
    link
    fedilink
    English
    arrow-up
    22
    ·
    1 day ago

    Honestly, as a Systems/DevOps engineer it’s always been well know that if you have physical access, you have zero chance of security. Sure it might take more time if precautions were followed, but you will be owned eventually, that’s guaranteed.

    • Dubiousx99@lemmy.world
      link
      fedilink
      English
      arrow-up
      10
      ·
      1 day ago

      This is one of our most frustrating fights I have with our security design reviewers. Effectively functionless mitigations that create extra obstacles for our service reps to deal with during troubleshooting. One example is our equipment is installed in access restricted areas, in a locked rack. We don’t need to disable unused Ethernet ports on our networking equipment that exists in a locked cabinet and it will take away our ability to repatch equipment to a different switch in the system to assist in troubleshooting.