diff --git a/Security-Overview.md b/Security-Overview.md index 37a7158..eb0f892 100644 --- a/Security-Overview.md +++ b/Security-Overview.md @@ -14,7 +14,7 @@ master | gRPC | secured by mutual TLS volume | gRPC | secured by mutual TLS filer | gRPC | secured by mutual TLS master | http | "weed master -disableHttp", disable http operations, only gRPC operations are allowed. -filer | http | "weed filer -disableHttp", disable http operations, only gRPC operations are allowed. +filer | http | "weed filer -disableHttp", disable http operations, only gRPC operations are allowed. This works with "weed mount" by FUSE. volume | http write | set `jwt.signing.key` in `security.toml` in master and volume servers to check token for write operations volume | http read | unprotected, but url is not guessable