Chris is also pretty allergic to layers and indirection in his software 
unless they're absolutely necessary, so he's quite happy that he can 
talk directly to kerberos, since he's not going to swap out the security 
layer or anything, so GSSAPI would just be adding overhead (conceptual, 
if not computational) for me.

Chris


On 2011/07/22 17:04, Greg Hudson wrote:
> On Fri, 2011-07-22 at 18:10 -0400, Nico Williams wrote:
>> Why are you not using the GSS-API?
>
> Chris started out by asking about user-to-user auth, so I didn't
> redirect him to GSSAPI since, as far as I know, GSSAPI doesn't have a
> story there (for the krb5 mech, at least).
>
>
>
________________________________________________
Kerberos mailing list           [email protected]
https://mailman.mit.edu/mailman/listinfo/kerberos

Reply via email to