[451] in Kerberos

home help back first fref pref prev next nref lref last post

re: using Kerberos with AFS, some comments

daemon@TELECOM.MIT.EDU (Jerome H. Saltzer)
Wed Jul 20 15:38:34 1988

To: Mike Kazar <kazar+@andrew.cmu.edu>
Cc: kerberos@ATHENA.MIT.EDU
In-Reply-To: Mike Kazar <kazar+@andrew.cmu.edu>'s message of Fri,  1 Jul 88 14:23:52 -0400 (EDT)
From: Jerome H. Saltzer <Saltzer@ATHENA.MIT.EDU>


> The only problem we have in using Kerberos-format tickets in our
> system is that the lifetime field simply does not allow us to
> represent long expiration times. 

I agree that inability to request long-lived tickets is a major
problem with the current protocol design and that the next Kerberos
release should fix it.  Long-running computations are common in many
environments, and there has to be a way to allow them to be
authenticated.

					Jerry

home help back first fref pref prev next nref lref last post