rpc changes

Message boards : Questions and problems : rpc changes
Message board moderation

To post messages, you must log in.

AuthorMessage
Toby Broom

Send message
Joined: 14 Apr 12
Posts: 48
Switzerland
Message 100704 - Posted: 11 Sep 2020, 21:08:09 UTC

Hi,

I'm all for the security improvements, but it seems redundant to provide 2 different mechanisms to secure communications between boinc clients?

Could it be considered to use a single mechanism?

Thanks for consideration
ID: 100704 · Report as offensive
Bryn Mawr
Help desk expert

Send message
Joined: 31 Dec 18
Posts: 285
United Kingdom
Message 100714 - Posted: 12 Sep 2020, 18:13:02 UTC - in response to Message 100704.  

Hi,

I'm all for the security improvements, but it seems redundant to provide 2 different mechanisms to secure communications between boinc clients?

Could it be considered to use a single mechanism?

Thanks for consideration


For the higgorant amongst us could you list the two mechanisms? I only know of one :-)
ID: 100714 · Report as offensive
Toby Broom

Send message
Joined: 14 Apr 12
Posts: 48
Switzerland
Message 100912 - Posted: 1 Oct 2020, 18:54:53 UTC - in response to Message 100714.  

Sorry,

You have the

gui_rpc_auth.cfg which is enforced now.

remote_hosts.cfg which is white list of host, this is sort of redundant now as you need the key from gui_rpc_auth to make a connection, so kind of white list on client vs server.
ID: 100912 · Report as offensive
Bryn Mawr
Help desk expert

Send message
Joined: 31 Dec 18
Posts: 285
United Kingdom
Message 100914 - Posted: 1 Oct 2020, 20:27:22 UTC - in response to Message 100912.  

Sorry,

You have the

gui_rpc_auth.cfg which is enforced now.

remote_hosts.cfg which is white list of host, this is sort of redundant now as you need the key from gui_rpc_auth to make a connection, so kind of white list on client vs server.


Sorry, I see this as a single mechanism - these are the hosts that can access the system and this is the password that they have to quote. Without the host file anyone with a key logger or anyone monitoring the network link can get the password and access the system.
ID: 100914 · Report as offensive
Toby Broom

Send message
Joined: 14 Apr 12
Posts: 48
Switzerland
Message 101039 - Posted: 10 Oct 2020, 13:51:15 UTC - in response to Message 100914.  

OK, thanks I take this as a will not implement.
ID: 101039 · Report as offensive
Profile Jord
Volunteer tester
Help desk expert
Avatar

Send message
Joined: 29 Aug 05
Posts: 15480
Netherlands
Message 101044 - Posted: 10 Oct 2020, 15:58:00 UTC - in response to Message 101039.  

OK, thanks I take this as a will not implement.

We're not the developers. If that was a feature request, you have to ask at https://github.com/BOINC/boinc/issues, that's where the developers reside these days.
ID: 101044 · Report as offensive

Message boards : Questions and problems : rpc changes

Copyright © 2024 University of California.
Permission is granted to copy, distribute and/or modify this document under the terms of the GNU Free Documentation License, Version 1.2 or any later version published by the Free Software Foundation.