On Tue, May 6, 2014 at 2:01 PM, David Greenberg <[email protected]>wrote:
> We are actually working on solving #2, by adding mutual authentication > between masters and slaves, and ensure that each group knows in advance > what the valid masters/slaves are. This allows us to ensure that no > malicious masters/slaves can join the cluster and do bad stuff. Please > contact me directly if you're interested in discussing/partnering on this > work. > I'm interested to know what kind of authentication between masters and slaves you are talking about. We have a SASL based authentication in place (on the master branch not yet released) to authenticate masters and slaves.

