Proposal to export gssapi context

Nicolas Williams Nicolas.Williams at sun.com
Wed Mar 24 15:33:05 EST 2004


On Wed, Mar 24, 2004 at 03:27:45PM -0500, Sam Hartman wrote:
> >>>>> "Nicolas" == Nicolas Williams <Nicolas.Williams at sun.com> writes:
> 
>     Nicolas> On Wed, Mar 24, 2004 at 02:49:38PM -0500, Sam Hartman wrote:
>     Sam> I don't think having a macro for the current version in a public
>     Sam> header is a good idea.  People might use it and failing to think of a
>     Sam> way of using it that would be correct.
> 
>     Sam> The version number should be in the structure name.
> 
>     Nicolas> IIRC I convinced Sam on the phone that it is entirely possible to have
>     Nicolas> an interoperable standard for exported context tokens for the Kerberos V
>     Nicolas> mechanism.
> 
> But you didn't convince me we were doing that nor that we should be
> doing that for this application.
> 
> 
> The NFS implementation would rather deal with a C struct than
> something they have to parse.  That's clearly outside the scope of the
> IETF.

For an Internet-Draft I'd insist on ASN.1.  For this purpose I think XDR
is quite appropriate (newsflash: the NFS implementation already uses XDR
in the kernel :)  so using XDR here does not add any significant burden
on the kernel).

Cheers,

Nico
-- 


More information about the krbdev mailing list