[1347] in Kerberos_V5_Development

home help back first fref pref prev next nref lref last post

Re: Audit GSS-API changes

daemon@ATHENA.MIT.EDU (Barry Jaspan)
Fri Jun 21 17:38:59 1996

Date: Fri, 21 Jun 1996 17:38:46 -0400
From: "Barry Jaspan" <bjaspan@MIT.EDU>
To: Marc Horowitz <marc@MIT.EDU>
Cc: "Barry Jaspan" <bjaspan@MIT.EDU>, krbdev@MIT.EDU
In-Reply-To: [1343]


I disagree that most of the functionality you added was required.  The
only reason (IMHO) to provide compatibility with the old krb5 OID is
so that old binaries continue to work, and in fact I'd limit that to
old clients working with new servers.  Thus, I do not think
gss_init_sec_context needs to understand the old/new oid distinction;
an already compiled program uses the old oid, anything compiled with
beta 7+ will use the new oid, and that's that.    Similarly with
gss_acquire_creds.

Since you've implemented your changes already, we could just leave
them in, or we could remove them on the grounds that they are
unnecessary complication that will probably screw us in the future, so
why not get rid of it now before anyone notices?

Barry

home help back first fref pref prev next nref lref last post