[cvsnt-dev] Re: Re[2]: cvs.cvsnt.org is down??

Tony Hoyle tony.hoyle at march-hare.com
Mon Aug 1 20:25:47 BST 2005


Community technical support mailing list was retired 2010 and replaced with a professional technical support team. For assistance please contact: Pre-sales Technical support via email to sales@march-hare.com.


David Somers wrote:

> 
> It is a bit, well, actually, a lot of hassle. However, such is the price
> that has to be paid if you want two-way authenticated as well as encrypted
> comunications.

In theory on Win32 it can be written using Stunnel, which can use the 
Win2003 Enterprise CA to do stuff... so at least on Win32 it'd be easier 
to use.

> BTW, will any of this be incorporated into the ACL system... in the sense of
> saying something like user X is only allow to do certain things when they
> connect over a secure channel and have the right client certificate?
> 
You can already disable all insecure protocols... that level of ACL 
isn't that useful - for example kerberos is secure but you can't get 
access to certificates.

Tony


More information about the cvsnt-dev mailing list