Skip to Content.
Sympa Menu

perfsonar-dev - Re: Security considerations in perfSONAR

Subject: perfsonar development work

List archive

Re: Security considerations in perfSONAR


Chronological Thread 
  • From: David Schmitz <>
  • To: Nicolas Simar <>
  • Cc: Cándido Rodríguez Montes <>, Roman Lapacz <>, Nina Jeliazkova <>, schmitz <>, Loukik Kudarimoti <>, "" <>
  • Subject: Re: Security considerations in perfSONAR
  • Date: Fri, 30 May 2008 18:13:04 +0200 (CEST)

Hi Nicolas,

> Hi Roman, Nina and David,
>
>
> Cándido Rodríguez Montes wrote:
> > Hi Nicolas and Loukik,
> > as perfSONAR MDM 3.0 is going to be installed by european NRENs, I would
> > like to know if they are/will be deploy their services over http or https.
> > Https is not a requirement for the authN process but it is helpful for
> > replying attacks, even the authN hasn't been part of perfSONAR!
>
> what would be the impact on the
> 1) the web-service development if we were to use https (none?)
> 2) on the visualisation (the way they access the web-service).?
Concerning the CNM (server) it should be no big problem,
because as far as I know HTTPS can easily be handled also in perl.
The CNM visualisation is not yet concerned with contacting directly MAs.
Otherwise, in Java HTTPS is probably also no problem.


Best Regards
David

>
> > So, in case perfSONAR services are reached by http, we should ask them to
> > move it to https.
>
> Thanks a lot.
>
> Nicolas
>
>
> > Regards
> >
> > --
> > Cándido Rodríguez Montes E-mail:
> >
> > <mailto:>
> > Middleware warrior Tel:+34 955 05 66 13
> > Red.ES/RedIRIS
> > Edificio CICA
> > Avenida Reina Mercedes, s/n
> > 41012 Sevilla
> > SPAIN
> >
> >
> >
> >
>
>

--

David Schmitz

Boltzmannstraße 1, 85748 Garching
Telefon: +49 89 35831-8765
Fax: +49 89 35831-9700
Leibniz-Rechenzentrum, Germany
Mail:





Archive powered by MHonArc 2.6.16.

Top of Page