Re: [ceph-devel] Ceph Authentication and Authorization

2009-08-14 Thread Sage Weil
On Fri, 14 Aug 2009, Adam Lewis wrote: > Sage, > > > I suspect most users will be satisfied with the ability to delegate trust to > > (root on) a client host mounting the fs, as they're accustomed to doing > > with NFS. > > Don't assume that I'm satisfied with anything I'm accustomed to doing > w

Re: [ceph-devel] Ceph Authentication and Authorization

2009-08-14 Thread Adam Lewis
Sage, > I suspect most users will be satisfied with the ability to delegate trust to > (root on) a client host mounting the fs, as they're accustomed to doing > with NFS. Don't assume that I'm satisfied with anything I'm accustomed to doing with NFS ;) Okay, back to lurking. Adam On Fri, Aug

Re: [ceph-devel] Ceph Authentication and Authorization

2009-08-14 Thread Sage Weil
Hi Ethan! On Fri, 14 Aug 2009, Ethan L. Miller wrote: > Andrew Leung, Stephanie Jones, and I designed a protocol to do this in > 2007. You should look at the paper we wrote: > This protocol deals primarily with the problem of authorizing clients t

Re: [ceph-devel] Ceph Authentication and Authorization

2009-08-14 Thread Ethan L. Miller
Andrew Leung, Stephanie Jones, and I designed a protocol to do this in 2007. You should look at the paper we wrote: The protocol we designed used the MDS to hand out keys, and supported group authentication as well as expiring keys with group ren