[321] in Enterprise Print Delivery Team

home help back first fref pref prev next nref lref last post

InfoPrint Manager, Kerberos, and MIT

daemon@ATHENA.MIT.EDU (Rocklyn E. Clarke)
Thu Jun 22 19:06:09 2000

Date:         Thu, 22 Jun 00 17:35:14 EDT
From: "Rocklyn E. Clarke" <RCLARKE@MITVMA.MIT.EDU>
To: Enterprise Print Delivery Team <PRINTDEL@mit.edu>
Message-Id:   <000622.190058.EDT.RCLARKE@MITVMA.MIT.EDU>
MIME-Version: 1.0
Content-Type: TEXT/PLAIN; charset=US-ASCII
Content-Transfer-Encoding: 7BIT

Hi Team,

Jeff Banta joined me today for a conference call with Carl Kugler and Ron
Bailey of IBM.  We discussed the issues involved in kerberizing InfoPrint
Manager (IPM) for use at MIT.  In the course of our conversation, the IBM
folks suggested that we consider using IPM's DCE support to handle our
authentication needs.  This was consistent with an earlier suggestion by
our own Tom Yu from MIT's kerberos squad and I believe it is the sensible
course to pursue.  Carl pointed out that IPM would expect us to provide a
DCE namespace for authorizations and I suggested that we might be able to
set one up and populate it from the Roles Database.  We agreed to take the
following next steps:

1.  Carl Kugler will point me to IBM DCE documentation.
2.  I will pursue DCE to determine if our kerberos infrastructure can
    interoperate with it.
3.  I will communicate with them next week for follow up.

Later today, I was over in N42 and I mentioned this turn of events to Susan
Minai-Azary.  She thought that this sounded like a reasonable way to proceed,
but suggested that I check in with I/T Integration once I've finished my
DCE research.  She also added that it might be preferable to populate the
DCE namespace from the Data Warehouse rather than from Roles.

I expect to have more information next week.

Rocklyn

home help back first fref pref prev next nref lref last post