Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

It is ridiculous to ask people to expose their Redis instances to the open internet while ignoring all the security risks associated with this, in addition to giving you full read/write access.

It wouldn't be much added complexity to require the use of something like stunnel or spiped. Or better yet a little daemon that streams the relevant data to your service; which can be audited and verified.



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: