[451] in Kerberos
re: using Kerberos with AFS, some comments
daemon@TELECOM.MIT.EDU (Jerome H. Saltzer)
Wed Jul 20 15:38:34 1988
To: Mike Kazar <kazar+@andrew.cmu.edu>
Cc: kerberos@ATHENA.MIT.EDU
In-Reply-To: Mike Kazar <kazar+@andrew.cmu.edu>'s message of Fri, 1 Jul 88 14:23:52 -0400 (EDT)
From: Jerome H. Saltzer <Saltzer@ATHENA.MIT.EDU>
> The only problem we have in using Kerberos-format tickets in our
> system is that the lifetime field simply does not allow us to
> represent long expiration times.
I agree that inability to request long-lived tickets is a major
problem with the current protocol design and that the next Kerberos
release should fix it. Long-running computations are common in many
environments, and there has to be a way to allow them to be
authenticated.
Jerry