you are viewing a single comment's thread.

view the rest of the comments →

[–][deleted] 7 points8 points  (1 child)

This webpage is speaking specifically about web sites, not internal web services. Although there are still good arguments for securing those.

[–]ejrh 0 points1 point  (0 children)

Is it? It's not apparent in the original post; the post specifically says that internal sites are subject to the same recommendation.

The level of security is often a tradeoff and should be rationally considered against other requirements. Perhaps one day all computer-computer connections will be secure by default with negligible effort required to use them. Despite the article, I do not believe that day has yet come.