realbasic-nug
[Top] [All Lists]

Re: Securing Client Server Communications?

To: REALbasic NUG <realbasic-nug@lists.realsoftware.com>
Subject: Re: Securing Client Server Communications?
From: Charles Yeomans <charles@declareSub.com>
Date: Fri, 29 Aug 2008 20:08:05 -0400
Authentication-results: mx.google.com; spf=neutral (google.com: 74.124.194.228 is neither permitted nor denied by best guess record for domain of realbasic-nug-bounces@lists.realsoftware.com) smtp.mail=realbasic-nug-bounces@lists.realsoftware.com
Delivered-to: listarchive@realsoftware.com
In-reply-to: <C4DDD601.7BD56%heizer1@llnl.gov>
References: <C4DDD601.7BD56%heizer1@llnl.gov>
Reply-to: REALbasic NUG <realbasic-nug@lists.realsoftware.com>
Sender: realbasic-nug-bounces@lists.realsoftware.com

On Aug 29, 2008, at 7:36 PM, Charles E. Heizer wrote:

Hello,
I'm looking for a little help in trying to figure out the best approach to
securing the communications of my application.

I have a small agent which has a scheduler in it right now that kicks off jobs as defined. But what I want to do now is add a listener to my client so
that I can send commands from a central server.

I have played with a few of the client server examples and have started to grasp the whole thing but before I get to far down the road I would like to know how/best way to secure the communication/command from the server to the
client to prevent man-in-the-middle etc...

Your question is basically impossible to answer without a more clearly defined threat model. I don't mean to be dismissive, but this is a tough problem. For example, do you want to protect against rogue processes running on the same machine? That's not currently possible in REALbasic because of problems with the FolderItem class. Actually, it's possible, but not too feasible -- I don't know a way to securely create temp files without doing it entirely using C functions.

Encrypted communication is mostly a solved problem, depending on the problem.

Surely there are people at llnl.gov that understand this sort of thing :)

Charles Yeomans

_______________________________________________
Unsubscribe or switch delivery mode:
<http://www.realsoftware.com/support/listmanager/>

Search the archives:
<http://support.realsoftware.com/listarchives/lists.html>


<Prev in Thread] Current Thread [Next in Thread>