Darren J Moffat writes:
> We already have (as of Solaris 2.6) a network based auth for users and
> network services - GSSAPI (and as of Solaris 10 SASL as well).

However, missing from that is a AAA infrastructure, including RADIUS
and Diameter for database connections and EAP for authentication
protocol plugins.

> The security issues with things like Wireless USB and Bluetooth are much
> more to do with the architecture of the protocols than they are about
> code reuse and central policy on the host OS.  In other words sadly
> already baked and we just have to work around them to secure the OS from
> them.

True, but the direction many of them seem to be going is to provide a
defined protocol-specific encapsulation for EAP, and then relying on
that to carry whatever authentication methods are desired.

-- 
James Carlson, KISS Network                    <[EMAIL PROTECTED]>
Sun Microsystems / 1 Network Drive         71.232W   Vox +1 781 442 2084
MS UBUR02-212 / Burlington MA 01803-2757   42.496N   Fax +1 781 442 1677
_______________________________________________
opensolaris-discuss mailing list
[email protected]

Reply via email to