[openamq-dev] Encryption/C++ API
Russell Adams
RLAdams at AdamsInfoServ.Com
Sat Apr 19 21:47:41 CEST 2008
On Sat, Apr 19, 2008 at 11:32:17AM +0200, Pieter Hintjens wrote:
> On Fri, Apr 18, 2008 at 10:43 PM, Russell Adams
> <RLAdams at adamsinfoserv.com> wrote:
>
> > Using SSL encryption & signing on messages at the client level makes
> > plenty of sense to me. That could also be integrated with
> > retransmission logic.
>
> Yes, indeed.
>
> > This hit close to home for a need I had, and have been researching
> > alternatives among the open MQ implementations.
>
> OK, we'll look at it. What is your timescale? We're in the middle of
> other work on OpenAMQ (new release coming soon) but we could look at a
> security framework after that.
>
Again, this sounds like it should be managed at the client side
leaving MQ neutral. Are there existing client libraries that could be
adapted to this purpose? I'm not familiar with any.
My target language is currently Perl or Ruby, and I'm already
performing SSL file level operations I suspect I could quickly adapt
to OpenAMQ. I just don't want to reinvent the wheel.
> > I'd like to see an "untrusted" broker on the net that passes around
> > encrypted & signed messages between clients.
>
> Absolutely. Have you looked at
> http://wiki.openamq.org/package:switch-or-broker?
>
> This is our model for large area deployments of AMQP - federations of
> untrusted brokers, and reliability (and security) done end-to-end
> between clients.
I saw that presentation, and was impressed by the concepts.
------------------------------------------------------------------
Russell Adams RLAdams at AdamsInfoServ.com
PGP Key ID: 0x1160DCB3 http://www.adamsinfoserv.com/
Fingerprint: 1723 D8CA 4280 1EC9 557F 66E8 1154 E018 1160 DCB3
More information about the openamq-dev
mailing list