post
Now I know this is being done with encryption, but an open tunnel direct to your non dmz-ed system, is just begging to be hacked, and it will be, without a shadow of doubt.
As far as I know, the BOINC client just pulls down new data for processing when each batch of work is done. There's no pushing and no open tunnel or port. The software risk would be malicious code in a particular project (e.g. if it said it was folding proteins but actually mined bitcoins). I hope there's some vetting of project code.
The other risk is hardware (especially CPU and RAM) running its lifetime down more quickly because of the continual heavier usage.
In what sense is this "opening a direct tunnel?"
I don't think you really understand what's going on here; or otherwise, I don't.
I've used BOINC without issue for over a decade.
all 5 comments