I actually don't mind the external daemon connecting to DGD. My concerns are: 1. Efficiency losses in crossing process boundaries 2. Security issues in properly authenticating the external daemon SSH encryption of "highly unlikely but still possible to break" versus the guarantees of uid/gid/address space integrity provided by an OS