Chris is also pretty allergic to layers and indirection in his software unless they're absolutely necessary, so he's quite happy that he can talk directly to kerberos, since he's not going to swap out the security layer or anything, so GSSAPI would just be adding overhead (conceptual, if not computational) for me.
Chris On 2011/07/22 17:04, Greg Hudson wrote: > On Fri, 2011-07-22 at 18:10 -0400, Nico Williams wrote: >> Why are you not using the GSS-API? > > Chris started out by asking about user-to-user auth, so I didn't > redirect him to GSSAPI since, as far as I know, GSSAPI doesn't have a > story there (for the krb5 mech, at least). > > > ________________________________________________ Kerberos mailing list [email protected] https://mailman.mit.edu/mailman/listinfo/kerberos
