Security in CMAN

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



IMO, there're lack security check in cman join/leave mechanism, that's means a aborative udp packet made the cluster untrusted, if there's a manageable authorization password input through proc entries, the wrong configured node or the cracker without the cluster-extension authorized word will not bother the cluster message passing. a simple memcmp calling in the beginning of process_message will out sight of load.
 
 
sincerely Michael Moore
--

Linux-cluster@xxxxxxxxxx
https://www.redhat.com/mailman/listinfo/linux-cluster

[Index of Archives]     [Corosync Cluster Engine]     [GFS]     [Linux Virtualization]     [Centos Virtualization]     [Centos]     [Linux RAID]     [Fedora Users]     [Fedora SELinux]     [Big List of Linux Books]     [Yosemite Camping]

  Powered by Linux