[openib-general] Should I use umad -or- osm

Michael S. Tsirkin mst at mellanox.co.il
Thu Dec 9 10:49:54 PST 2004


Hello!
Quoting r. Sean Hefty (mshefty at ichips.intel.com) "Re: [openib-general] Should I use umad -or- osm":
> Michael S. Tsirkin wrote:
> >Hello!
> >Quoting r. shaharf (shaharf at voltaire.com) "RE: [openib-general] Should I 
> >use umad -or- osm":
> >
> >>>>Anyone can have root
> >>>>access on his machine.
> >>>
> >>>1. Why not on the switch then?
> >>>
> >>
> >>What do you mean? To be able to send/recv mads it is enough to have one
> >>host with HCA. No switch can block root user sending mads unless pkey or
> >>mkey mechanism is used.
> >
> >
> >I mean that if a malicious user has control of a switch he can
> >cause even more problems.
> 
> IMO, if you have a malicious user on the fabric, then you've already 
> been compromised, and attacks on your IB network are probably not your 
> greatest worries.
> 

Thats what I was saying.

MST



More information about the general mailing list