[zeromq-dev] SASL support?

Martin Lucina mato at kotelna.sk
Tue Jan 26 17:56:16 CET 2010

avbidder at fortytwo.ch said:
> Either way: it might be good for 0MQ to explicitly state that it doesn't 
> care about security by itself, but concentrates on getting the bytes over 
> the network fast.  Together with pointers to solutions that implement 
> security, this should keep 0MQ thin - depending on application, varous 
> securrity strategies are obviously possible, and supporting them all would 
> only bloat 0MQ (... until it becomes yet another of these huge enterprisey 
> middlewares ... ;-)

I completely agree. As others have said in this thread, many solutions for
security exist and many man-years of development have been spent in getting
these right. There is no point in reinventing the wheel in OMQ, at least
until someone comes along with a real use case that disqualifies any
existing solutions.

Martin, we should document this as suggested by Adrian and provide pointers
to the relevant solutions (at least IPsec and OpenVPN spring to mind).


