Review of AEAD Encryption API Project; concluding December 5, 2008

Luke Howard lukeh at padl.com
Mon Dec 1 16:43:10 EST 2008


> These are not arguments to the call to gss_unwrap_iov.  I assume what
> you're saying here is how does the unwrapper know what to pass in to
> gss_wrap_length_iov?  Luke, do you anticipate that the receiver of a
> message would need to call wrap_length?  I'd generally assume they
> would either use a stream buffer or would already know the
> decomposition.

Agreed.

>    Love> How does the consumer know the size of the header when in
>    Love> DCE mode, its always header + trailer ?
> No, I'd expect that in DCE mode no trailer would be used.
> It's my understanding that gss_wrap_iov_length will give you the  
> header size.


Correct.

-- Luke



More information about the krbdev mailing list