|
|
|
|||||
|
IcePAM and Hesperia::Bootstrap services
Hi,
There are a couple of utilities we developed which may be useful to other Ice users:
Bootstrap use multicast messages to publish or locate registries. You may force any computer to become a registry using a config option or (by default) you may leave registries unspecified and then they will be eventually be chosen among the computers running bootstrap. A pair of python scripts may be used to find the proxy for the locator (even if registry is replicated) or to reset the whole LAN to start a new election. Bootstrap automatically starts IceGridNode properly configured with IcePAM. In the default configuration people from the icegrid group will be able to create Admin sessions. In combination with IceStorm (also using multicast endpoints) you may use Bootstrap in a multi-LAN setup without any need for multicast routing. Beware that if security is a concern you should force all registries to be in known hosts. Also to prevent DoS attacks we plan to use an encrypted udp transport for the Bootstrap protocol.
Regards, F. Moya
__________________
Francisco Moya Fernandez Computer Architecture and Tecnology Group University of Castilla-La Mancha Debian Maintainer of ZeroC Ice packages. |
|
|||||
|
Sorry, there were some revisions afterwards and I only keep the latest revision. You may always browse the whole directory at:
Index of /~francisco.moya/debian Today the most recent Hesperia Bootstrap source is: http://arco.inf-cr.uclm.es/~francisc..._1.0.11.tar.gz And the IcePAM PermissionsVerifier: http://arco.inf-cr.uclm.es/~francisc...m_1.0.2.tar.gz Please, note that this is still a proof of concept. At the very least we should require some kind of endpoints using shared key cryptography. This is in my TODO list but it was delayed because we would like to implement a stackable endpoint abstraction (decorator). Something like this blowfish -s sharedKey|tcp This is not only useful for ciphering endpoints but also for things like reliable transports built on unreliable datagram transports: store_and_forward|bluetooth Regards, Paco
__________________
Francisco Moya Fernandez Computer Architecture and Tecnology Group University of Castilla-La Mancha Debian Maintainer of ZeroC Ice packages. |
![]() |
| Currently Active Users Viewing This Thread: 1 (0 members and 1 guests) | |
| Thread Tools | |
| Display Modes | Rate This Thread |
|
|
Similar Threads
|
||||
| Thread | Thread Starter | Forum | Replies | Last Post |
| Purify and IceBox services | xdm | Help Center | 4 | 06-07-2006 03:59 PM |
| Share endpoint between services in IceBox | rspivak | Help Center | 2 | 04-14-2006 06:18 AM |
| questions about windows services | OrNot | Help Center | 9 | 12-02-2005 05:26 AM |
| Help on creating services w/ ICE | stephan | Help Center | 6 | 02-02-2004 04:14 PM |
| Sincronithing services | xdm | Help Center | 4 | 01-16-2004 01:59 PM |