[864] in Zephyr_Bugs

home help back first fref pref prev next nref lref last post

Re: Question about multi-homed machines...

daemon@ATHENA.MIT.EDU (Robert Tommaselli)
Wed Jun 18 08:01:56 1997

From: "Robert Tommaselli" <rtommase@fir.fbc.com>
Date: Wed, 18 Jun 1997 08:01:35 -0400
In-Reply-To: John Hawkinson <jhawk@MIT.EDU>
        "Re: Question about multi-homed machines..." (Jun 18,  7:27)
Reply-To: rtommase@fir.fbc.com
To: John Hawkinson <jhawk@MIT.EDU>, Greg Hudson <ghudson@MIT.EDU>
Cc: bug-zephyr@MIT.EDU

John,
  Thanks for the idea. Since I work for a Swiss bank and security is
paramount.  I'll opt for the least impactant solution. Some smart-alic will
probably find a way to abuse a bind() lib resolver thats a bit "loose".
I do agree that this seems like it would be a problem for more than just
zephyr software.

Luckily we have a strict global naming scheme that I can leverage a quick fix
on. I'll change the ip checking to on the zephyr server to resolve names using
the global nameing extentions.

ie. "hosta"  will also authenticate "hosta-le[0-3]" and "hosta-fddi[0-3]".

Thanks again.

robert

On Jun 18,  7:27, John Hawkinson wrote:
> Subject: Re: Question about multi-homed machines...
> | This is a long-standing known bug.  There aren't any particularly good
> | workarounds, unfortunately (other than setting the machine's hostname
> | to something that resolves to the interface address used to talk to
> | the server).
>
> And the potentially wasteful (of addresing) solution of assigning
> a numbered loopback to all such multihomed machines and modifying
> applications, such as zephyr, to bind to such a numbered loopback.
>
> Actually, it ocurrs to me that another solution would be to modify the
> C librarie's bind() call, at least for those applications that use
> dynamic linking...
>
> One would expect this problem to be an issue for multiple software
> packages...
>
> --jhawk
>-- End of excerpt from John Hawkinson



-- 
*****************************************************************
*   A little KINDness is 	   ,==,==========.  		*
*  	is all you need,	  /_| [___] |___|U  		*
*   	  Robert Tommaselli      /  ]      o _   U Volkswagon	*
*				 U-(_)------(_)--' 95 EV-Camper *	
**** The bus came by, I got on, that's when it all began ********



home help back first fref pref prev next nref lref last post