bpa wrote: 
> From the BBC Nitro Public License
> https://developer.bbc.co.uk/nitropubliclicence
> 
> 
> If plugin developer uses a single key for a Plugin then BBC will
> aggregate all uses of the key by all users and so developer could never
> control the frequency or number of times the plugin accesses Nitro -
> potentially locking all users out.  As the key will be in a Perl plugin
> it will be open access and so it could be copied easily and used by
> others say to do a DDOS type attack on Nitro..
> 
> So it looks like every Plugin user would have to register with Nitro to
> use the same plugin, for security and to ensure frequency and number of
> access is under individual responsibility.

The BBC iPlayer app on android uses a single Nitro api key, which is
pretty easy to find out. So I guess your comment about a DDOS type
attack could apply to that key. As that one is under the BBC's control,
I suppose they probably allow nearly unlimited access though.

A get the impression that the BBC expect 3 classes of use of this API:
    
  [Apps under their own control, e.g. iPlayer, which can access the
  Nitro api directly
  Syndication partners, who front their users through their own servers,
  so probably only have a low number of Nitro accesses which only come
  from their own servers.
  Personal users, who do their own thing with their own API key, so
  expected low usage of the API.
  ]


------------------------------------------------------------------------
utgg's Profile: http://forums.slimdevices.com/member.php?userid=40900
View this thread: http://forums.slimdevices.com/showthread.php?t=103311

_______________________________________________
discuss mailing list
[email protected]
http://lists.slimdevices.com/mailman/listinfo/discuss

Reply via email to