查看: 904| 回复: 1
跳转到指定楼层
上一主题 下一主题
收起左侧

[题目讨论] fundamentals of software architecture pub-sub vs queue in a bidding system

全局:

注册一亩三分地论坛,查看更多干货!

您需要 登录 才可以下载或查看附件。没有帐号?注册账号

x
On page 33 of "fundamentals of software architecture", in the "analyze trade-offs" section, it says:
In analyzing the differences, notice first in Figure 2-8 that with a topic, any‐
one can access bidding data, which introduces a possible issue with data access and
data security. In the queue model illustrated in Figure 2-9, the data sent to the queue
can only be accessed by the specific consumer receiving that message. If a rogue ser‐
vice did listen in on a queue, those bids would not be received by the corresponding
service, and a notification would immediately be sent about the loss of data (and
hence a possible security breach). In other words, it is very easy to wiretap into a
topic, but not a queue.

My question is:

How can you detect that the bids were not received by the corresponding service so you can send a notification about the data loss/security breach?

上一篇:求推荐一个IT管理软件的系统设计讲解
下一篇:系统设计大全(求米版)
🔗
 楼主| jackxpeng 2023-2-2 04:03:18 | 只看该作者
全局:
Perhaps intended services have a secret key that the rogue service doesn't have? So once an item is popped but not acknowledged with the right hash we will know that the item was taken by an unauthorized service?
回复

使用道具 举报

您需要登录后才可以回帖 登录 | 注册账号
隐私提醒:
  • ☑ 禁止发布广告,拉群,贴个人联系方式:找人请去🔗同学同事飞友,拉群请去🔗拉群结伴,广告请去🔗跳蚤市场,和 🔗租房广告|找室友
  • ☑ 论坛内容在发帖 30 分钟内可以编辑,过后则不能删帖。为防止被骚扰甚至人肉,不要公开留微信等联系方式,如有需求请以论坛私信方式发送。
  • ☑ 干货版块可免费使用 🔗超级匿名:面经(美国面经、中国面经、数科面经、PM面经),抖包袱(美国、中国)和录取汇报、定位选校版
  • ☑ 查阅全站 🔗各种匿名方法

本版积分规则

>
快速回复 返回顶部 返回列表