Nico Williams <[email protected]> writes:

> I.e., I prefer the Windows/AD model.  I get that in general that's a
> difficult model to apply outside Windows, but still, I prefer it.

We use separate user principals in Windows/AD for privileged actions for
exactly the same reason.

-- 
Russ Allbery ([email protected])             <http://www.eyrie.org/~eagle/>
________________________________________________
Kerberos mailing list           [email protected]
https://mailman.mit.edu/mailman/listinfo/kerberos

Reply via email to