--On Wednesday, October 14, 2009 08:56:40 AM -0400 Chaskiel Grundman <[email protected]> wrote:

Does there necessarily have to be a transparent rekeying operation? Why
not just have the application layer return VICETOKENDEAD or some such and
have the client create a new connection (the cm already has code for
this...)

That was the original intent, so far as I can remember.
We (Jeff Altman, Love, and I) actually discussed the possibility of allowing for rekeying, and decided it wasn't worth the effort. If either party wants to enforce a maximum key life, in time or bytes, he can simply refuse to use the connection after that.

_______________________________________________
AFS3-standardization mailing list
[email protected]
http://michigan-openafs-lists.central.org/mailman/listinfo/afs3-standardization

Reply via email to