IANA GSSAPI name registry out of date

Henry B. Hotz hotz at jpl.nasa.gov
Thu Jun 30 18:10:39 EDT 2005


On Jun 30, 2005, at 2:00 PM, Jeffrey Hutzelman wrote:

> On Thursday, June 30, 2005 01:20:42 PM -0700 "Henry B. Hotz"  
> <hotz at jpl.nasa.gov> wrote:
>
>> There was a thread around February 15, 2004 on this subject.
>
> Hm.  At first glance, I thought this was overbroad, as the registry in  
> question is intended for GSSAPI service names.  However, the  
> description associated with that registry also makes specific mention  
> of SASL and Kerberos, and there is considerable value in avoiding any  
> collisions in these spaces.

Agreed.  Also there is the possibility that e.g. PostgreSQL (postgres)  
might be upgraded from bare Kerb 5 to gssapi and would expect to keep  
the same service principal.

> So yes, assuming the registration policy permits it, I believe it  
> would be a good idea to register there any known Kerberos service  
> names which are not in general use.

Seems like we really want a generic registry, not just a gssapi one.  I  
would argue for a new registry if the current one won't stretch.
------------------------------------------------------------------------ 
----
The opinions expressed in this message are mine,
not those of Caltech, JPL, NASA, or the US Government.
Henry.B.Hotz at jpl.nasa.gov, or hbhotz at oxy.edu



More information about the krbdev mailing list