A proposal for Kea configuration design

Francis Dupont fdupont at isc.org
Thu May 1 09:06:22 UTC 2014


Tomek Mrugalski writes:

> 4. After 0.9, we will design some form of secure socket that we'll be
> able to send commands over.

=> please don't use SSL/TLS (or similar protocol) to provide the "secure"
in this. I believe today I don't need more arguments to explain the
reason...

Regards

Francis Dupont <fdupont at isc.org>

PS: I suggest a locally bound socket: it offers the same security (or
better :-) than a TLS code with a private key in a file.


More information about the kea-dev mailing list