FW: AGTk Security

Ivan R. Judson judson at mcs.anl.gov
Mon Aug 16 20:27:06 CDT 2004


In our current CVS I don't see this being set at all in
Security/Utilities.py

I think there is an interoperability issue, but we should consider turning
this on anyhow.

Perhaps this is something that should go into the second beta we're
planning.

--Ivan 

> -----Original Message-----
> From: Robert Olson [mailto:olson at mcs.anl.gov] 
> Sent: Monday, August 16, 2004 9:32 AM
> To: judson at mcs.anl.gov; ag-dev at mcs.anl.gov
> Subject: Re: FW: AGTk Security
> 
> At 12:01 PM 8/15/2004, Ivan R. Judson wrote:
> >This is something we should consider critical to address 
> before 2.3 is 
> >released.
> 
> Ah, yes. This was the issue that sent me into several days of 
> debugging the Globus/OpenSSL relationship, sigh.
> 
> Fixing this is a matter of ensuring that the server and 
> client get a TCPIOAttr that has had
> set_channel_mode(ioc.GLOBUS_IO_SECURE_PROTECTION_MODE_PRIVATE)
>  invoked.
> 
> This may cause a breakage between clients that are not 
> connecting with encryption to servers that have it
> 
> --bob 
> 
> 




More information about the ag-dev mailing list