Date: 2006-01-23 08:06 pm (UTC)
From: (Anonymous)
Push is indeed better, but far from perfect. Instead of a single point of failure, push gives you as many points of failure and vulnerability to attack as there are systems, scripts, and admins capable of pushing out the configs.

Better yet is rendezvous, where admins must authenticate at the clients before providing authorization for a certain central server to push one or more config files for one time only. Certainly this can be done in a script, but it allows different clients to have different passwords if you want, or find that you need that.

No avoiding the trade-off between ease and risk.
This account has disabled anonymous posting.
If you don't have an account you can create one now.
HTML doesn't work in the subject.
More info about formatting

Profile

xthread: (Default)
xthread

July 2014

S M T W T F S
  12345
6789101112
13141516171819
20212223242526
27282930 31  

Most Popular Tags

Style Credit

Expand Cut Tags

No cut tags
Page generated Dec. 25th, 2025 03:23 am
Powered by Dreamwidth Studios