Re: [Vrs-development] Cluster image security/privacy question

From: morphius
Subject: Re: [Vrs-development] Cluster image security/privacy question
Date: Thu, 02 May 2002 00:28:03 -0700 (PDT)


  We should probably just be very careful with our table of VRS nodes.  We
should also make sure that we only a few IP addresses in
tables, and instead use node ID's that are defined within the given VRS.
Then we can have a lookup service that will return the IP of a node given its
ID.  In that case, if someone gets a copy of the node table, they'll know
only some virtual ID numbers, and the capabilities of those hosts, which
should not do them any good unless they themselves can authenticate into the
VRS and use the lookup service to obtain actual IP addresses of the nodes.
Basically, as we are distributing everything else, we should distribute the
storage of the node ID -> IP address mapping.


Each LDS gets a node id when joining the VRS. If any LDS requires information 
from any other LDS, it will use the node id to request information. The LDS 
which needs the information will use some thing similiar to ARP and the LDS 
providing the info will use RARP for authentication.

Does this make sense

- Morphius

