Hacker News new | past | comments | ask | show | jobs | submit login

Yes! The probability of a security vulnerability in the Apache install whose httpd.conf you had to write, running on a VPS you have to patch yourself, versus the probability of a security vulnerability in S3/CloudFront are indeed vastly different.

These are the kinds of trade offs we make.




1) I do not use Apache.

2) As for probability - I had zero security incidents on my personal website / blog in 15 years. And I did not spend my life patching things. Just few minutes every once in a while. Keep this FUD for uninformed.


Even if you did use Apache it’s FUD. It’s a very robust, well understood and documented technology.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: