From mboxrd@z Thu Jan 1 00:00:00 1970 Message-ID: To: 9fans@9fans.net Date: Tue, 3 Feb 2009 19:40:35 +0200 From: lucio@proxima.alt.za In-Reply-To: MIME-Version: 1.0 Content-Type: text/plain; charset="US-ASCII" Content-Transfer-Encoding: 7bit Subject: Re: [9fans] Sources Gone? Topicbox-Message-UUID: 94cf6bbc-ead4-11e9-9d60-3106f5b1d025 > but as i said, i'm naive when it comes to crypto; maybe > there's no way of doing this with any decent degree > of security or usefulness. Encryption is always a two-way path: for every bit of piece of mind encryption provides, there is a corresponding fear of losing access. Also, encryption tends to slow things down and considering that I'm now getting rather jaded about the fact that my fresh fossil/venti server has taken five days, twice, to dump -a little over 1GB of data on two separate occasions, I'm not sure encryption is affordable. I think that venti should be protected, the recommended approach is to place the fossil server and its venti archive on a separate physical network (127.1 isn't too bad, but two hosts might be more convenient) I'm not sure if one can do better than that. It is unfortunate that fossil and CPU services are very likely to occur on the same host. In that respect KenFS is a much nicer administrative entity. ++L