cryptofreak.org cryptofreak home projects
contact about
Contact:


projects
News Agenda
Antera Antera
News Commentator
News fcreate
Linux Porting Linux Porting
mod-chal mod-chal
Quake III Quake III
News Zope
Contact: webmaster

From: Perry and Lorae Merritt (plmerritt, hypermall dot net)
Date: 2001.09.27 - 06.22 MDT


X-Mailer: Microsoft Outlook Express 5.50.4522.1200

Don't start with me? I never planned to stop with you.

During the meeting you can tell me again(?) how you plan on moving the data
from the restore operation through the ADML to the fileystem. Are you
thinking you're going to send it through the portal/ioclt interface? If so,
how are you going to get it from the restore that is doing file writes?

It seems to me that if we don't expose our internal mechanism for figuring
out who's doing the open and subsequent writes, the opportunity for someone
wanting to break our system should be fairly narrow. In fact, whats to stop
them from writting their own ADC and doing whatever they want as it is?

P

----- Original Message -----
From: "Jay Miller" <jnmiller, cryptofreak dot org>
To: <antera, cryptofreak dot org>
Sent: Wednesday, September 26, 2001 10:42 PM
Subject: Re: Meeting thoughts and some other stuff.


> - Words by Perry and Lorae Merritt <plmerritt, hypermall dot net> [010926
17:53]:
> > Alright, so I used the mail list. Who did I send it to? Am I allowed to
know
> > that? ;-)
>
> Don't start with me.
>
> > You're right, the autorestore thing isn't real popular, at least with
me.
> > There's got to be a better way. What if we sent the ADML a message
through
> > the portal with some identification stuff, like the pid or ... then the
open
> > request could compare who's doing the open with the portal or ADC, or
backup
> > job, or whatever and treat it differently.
>
> Something like this could work, but might open us up to security
> concerns.. Hmm..
>
> - Other user space apps might be able to forge identifiers (especially
>   if it's something simple like uid or whatever..)
> - Our user space app would have to run as root to get past VFS
>   permissions checking - never a great idea.
>
> Also, keep in mind that we do migrate the file under the VFS's nose to
> some extent, what with setting the file size to zero, and all.  Putting
> it back shouldn't be too bad.
>
> What's the down side?  We're still letting the file system do it's job,
> and all the benefits of the VFS are still going to be useful when the
> open unblocks..?
>
> > Here's an idea, can we make the ADC like a stack, where we can stack
pieces
> > together to perform any number of tasks?
>
> Yeah, I thought about this today a little bit, too - in case you want
> virus checking *and* encryption, say.  I think it's a worthwhile idea,
> since I dunno how these modules would 'plug in' anyway.  It does seem
> like these 'preparation plugins' are not exactly used like a chain,
> though, with other ADCs.  The backup ADC we talked about, for instance,
> is just going to need to reference these things *during* its duration,
> not before or after.
>
> Maybe just the plugins could be chained like this..?
>
> It does sound good, albeit a bit much like the Windows NT model.
> <shudder>
>
> > I went out to the web page. Any way we can each get a name/password set
up?
>
> Sure, I guess, Mr. Make-More-Work-For-Jay.  Whaddya think, I have no JOB
> or something?!
>
> > You know, I own anterastorage.com would you like to set it up on your
server
> > Jay?
>
> Oh yeah - I saw that today, too, and was going to mention it.  I'd be
> happy to host anterastorage.com on my DNS servers, if you like.  We can
> point it to my page for now, and maybe develop a more dedicated one
> later.  Or perhaps keep mine for internal development (as it is) and use
> anterastorage.com for a public page.. once we're actually a business..
> heh.
>
> > Jay, I also have all of the docs on my computer. Is there a way I can
check
> > them into your cvs repository?
>
> Yes, I'll setup write access to the repository next time I have a
> moment to think about security.
>
> > Is Dan on this mailing list? Does he know about tomorrows meeting? Are
we
> > meeting tomorrow? Does Kevin know?
>
> Dan's on the list, and so is Kevin.. at least, they should be.  And I'll
> be at the meeting.
>
> --
> Jay Miller
>
> ICQ: 32123421 | YM: ladenedge | http://www.cryptofreak.org
> PGP: 0xedc9bb8d | 41a6428c 46abd36b 6b259b68 8a28ca4c edc9bb8c
> --
> This is the antera mailing list.  To unsubscribe, email
> majordomo, cryptofreak dot org with message body `unsubscribe antera'.
> Or, for more information, visit http://www.cryptofreak.org/.
>

--
This is the antera mailing list.  To unsubscribe, email
majordomo, cryptofreak dot org with message body `unsubscribe antera'.
Or, for more information, visit http://www.cryptofreak.org/.



This archive was generated by hypermail 2b30 : 2001.09.28 - 03.00 MDT