Wednesday, August 24, 2005

Security by obscurity isn't all bad

InfoWorld's new security columnist Roger Grimes defends obscurity as a security technique. Here's his key point:
I didn’t say security by obscurity was the only defense technique someone should use. I didn’t even say it was real security, but I am saying that it should be an important part of most computer defense strategies.
In other words, it's a valid part of the security mix, not a complete solution. So obscure away while you follow other best practices.


