Henry B. Hotz wrote:



Just to bring another issue into the discussion. What about if we use something besides Kerberos to get AFS tokens? Apple seems to be headed in the direction of using the Keychain Manager to show PKI- based permissions. That's a pretty disjoint GUI from Kerberos.app. My belief is that that's far enough off that it's worth doing something about the UI confusion with tokens and Kerberos anyway. Something to ponder in odd moments.

gssklog has been doing this for 5 years. The Globus GSI uses x.509
certificates, and has implementd a gssapi mechanisum. The gssklog
can use this to get AFS tokens.



------------------------------------------------------------------------ ----
The opinions expressed in this message are mine,
not those of Caltech, JPL, NASA, or the US Government.
[EMAIL PROTECTED], or [EMAIL PROTECTED]


_______________________________________________
OpenAFS-devel mailing list
[email protected]
https://lists.openafs.org/mailman/listinfo/openafs-devel



--

 Douglas E. Engert  <[EMAIL PROTECTED]>
 Argonne National Laboratory
 9700 South Cass Avenue
 Argonne, Illinois  60439
 (630) 252-5444
_______________________________________________
OpenAFS-devel mailing list
[email protected]
https://lists.openafs.org/mailman/listinfo/openafs-devel

Reply via email to