[Csync2] Feature/change suggestions
Wolfram Schlich
lists at wolfram.schlich.org
Sat Feb 16 16:05:00 CET 2008
Hi,
now that csync2 maintainership has been handed over to Lars,
I have a few feature and change suggestions:
1. Make the paths to csync2_ssl_cert.pem and csync2_ssl_key.pem
configurable from within csync2.cfg
2. Support binding to a specific local address for outgoing
connections (useful for a machine with multiple "service"
addresses of a single subnet)
3. Support POSIX ACLs and extended attributes (like rsync -AX)
4. Support peer certificate verification by checking the certificate
trust chain (against given CAs and CRLs) and comparing the
certificate CommonName with the peer hostname/FQDN, thus
making it possible to use a *real* PKI infrastructure instead
of just caching certificates and comparing checksums on subsequent
runs.
Thanks for considering! :)
--
Regards,
Wolfram Schlich <wschlich at gentoo.org>
Gentoo Linux * http://dev.gentoo.org/~wschlich/
More information about the Csync2
mailing list