[openamq-dev] Encryption/C++ API

Russell Adams RLAdams at AdamsInfoServ.Com
Sat Apr 19 21:47:41 CEST 2008


On Sat, Apr 19, 2008 at 11:32:17AM +0200, Pieter Hintjens wrote:
> On Fri, Apr 18, 2008 at 10:43 PM, Russell Adams
> <RLAdams at adamsinfoserv.com> wrote:
> 
> >  Using SSL encryption & signing on messages at the client level makes
> >  plenty of sense to me. That could also be integrated with
> >  retransmission logic.
> 
> Yes, indeed.
> 
> >  This hit close to home for a need I had, and have been researching
> >  alternatives among the open MQ implementations.
> 
> OK, we'll look at it.  What is your timescale?  We're in the middle of
> other work on OpenAMQ (new release coming soon) but we could look at a
> security framework after that.
> 

Again, this sounds like it should be managed at the client side
leaving MQ neutral. Are there existing client libraries that could be
adapted to this purpose? I'm not familiar with any.

My target language is currently Perl or Ruby, and I'm already
performing SSL file level operations I suspect I could quickly adapt
to OpenAMQ. I just don't want to reinvent the wheel.

> >  I'd like to see an "untrusted" broker on the net that passes around
> >  encrypted & signed messages between clients.
> 
> Absolutely.  Have you looked at
> http://wiki.openamq.org/package:switch-or-broker?
> 
> This is our model for large area deployments of AMQP - federations of
> untrusted brokers, and reliability (and security) done end-to-end
> between clients.

I saw that presentation, and was impressed by the concepts.


------------------------------------------------------------------
Russell Adams                            RLAdams at AdamsInfoServ.com

PGP Key ID:     0x1160DCB3           http://www.adamsinfoserv.com/

Fingerprint:    1723 D8CA 4280 1EC9 557F  66E8 1154 E018 1160 DCB3


More information about the openamq-dev mailing list