wasmcloud-otp icon indicating copy to clipboard operation
wasmcloud-otp copied to clipboard

Capability providers can't verify source of shutdown message

Open stevelr opened this issue 4 years ago • 0 comments

Capability provider shutdown messages (on topic wasmbus.rpc.LATTICE.PROVIDER.LINKNAME.shutdown) are unsigned, so anybody connected to the nats network could send a message on this topic and force a capability provider to go down.

Should these be signed invocations so the provider can verify that the sender is a trusted host?

stevelr avatar Oct 20 '21 20:10 stevelr