From: Robert Klemme Date: 2008-05-26T21:49:39+09:00 Subject: Re: Need your recommendations for TCP Server/Client design 2008/5/24 Aaron Turner : > The easiest way to add SSL to any application is to run stunnel on > each of your servers and have it proxy to your server listing on a > port on the loopback interface. That way your server doesn't even > have to know SSL and it's easy to debug. Whatever you do DO NOT > design your own crypto solution- notice the Debian guys couldn't even > make a small "fix" without breaking ssh horribly. Definitively not cook your own! > On a side note, there are already free solutions for this sort of > thing... just search freshmeat.net. Yet another alternative might be to just use ssh, i.e. replace your demon with sshd and execute commands directly via ssh. This also allows for secure file transfers (scp). dshc and dshp then become wrapper for a ssh call. Note that with ssh-agent you don't even have to enter passwords for all the servers. Kind regards robert -- use.inject do |as, often| as.you_can - without end