[16348] in Kerberos-V5-bugs

home help back first fref pref prev next nref lref last post

[krbdev.mit.edu #7707] [Comment] Credential cache API does not

daemon@ATHENA.MIT.EDU (Greg Hudson via RT)
Thu Sep 5 14:26:12 2019

From: "Greg Hudson via RT" <rt-comment@KRBDEV-PROD-APP-1.mit.edu>
In-Reply-To: 
Message-ID: <rt-4.4.4-130376-1567707947-1106.7707-8-0@mit.edu>
To: "AdminCc of krbdev.mit.edu Ticket #7707":;
Date: Thu, 05 Sep 2019 14:25:47 -0400
MIME-Version: 1.0
Reply-To: rt-comment@KRBDEV-PROD-APP-1.mit.edu
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
Errors-To: krb5-bugs-bounces@mit.edu


https://krbdev.mit.edu/rt/Ticket/Display.html?id=7707
This is a comment.  It is not sent to the Requestor(s):

However we do this, it would be good if callers had to go to minimum effort to
atomically refresh creds for a client principal.

One approach is a gic option to atomically store creds obtained by
krb5_get_init_creds_*(), to be used instead of
krb5_get_init_creds_opt_set_out_ccache(). This option could perhaps accept an
optional string argument to name the collection or ccache to refresh, and use
the default cache or collection otherwise.


_______________________________________________
krb5-bugs mailing list
krb5-bugs@mit.edu
https://mailman.mit.edu/mailman/listinfo/krb5-bugs

home help back first fref pref prev next nref lref last post