SASL/GSSAPI bind in LDAP plugin?

Frank Cusack fcusack at fcusack.com
Tue Feb 28 17:00:02 EST 2006


On February 28, 2006 8:40:02 AM -0800 Frank Cusack <fcusack at fcusack.com> wrote:
> On February 25, 2006 9:46:02 AM -0600 greg at enjellic.com wrote:
>> The open-architecture community never developed a holistic view of
>> IAA.  Authentication and authorization needed to be architecturally
>> wedded but this never occurred until Microsoft stepped in and filled
>> the void.  That effectively ceded the most critical element of modern
>> information delivery architectures to proprietary control.
>>
>> The Open-Source community responded in typical fashion by moving to
>> create a functional clone of the AD model.  Great and inspired
>> engineering which ultimately indemnifies the position of the pundits
>> that OSS replicates rather than innovates.
>
> I guess you've never heard of SESAME.  Nor do you seem to understand
> how absolute control over a dominant platform allows one to dictate
> the (so-called) standards used, regardless of technical merit or
> external input.

ps. I didn't mean to imply anything about technical or practical merit
of combined auth/autz.

-frank



More information about the krbdev mailing list