[17580] in Kerberos_V5_Development

home help back first fref pref prev next nref lref last post

Re: suggestion for locating master kdc logic

daemon@ATHENA.MIT.EDU (Nico Williams)
Mon Apr 9 17:06:31 2012

MIME-Version: 1.0
In-Reply-To: <20120409203755.GC2566@oracle.com>
Date: Mon, 9 Apr 2012 16:06:26 -0500
Message-ID: <CAK3OfOjFxS3L=MrKBN23eX+fTWSfBkzxNzWaM5QpRvHE-a3MjA@mail.gmail.com>
From: Nico Williams <nico@cryptonector.com>
To: Sam Hartman <hartmans@mit.edu>, krbdev@mit.edu
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
Errors-To: krbdev-bounces@mit.edu

Will, I think you could argue that the change required in Solaris
Kerberos to match MIT krb5 behavior in this case is a bug fix, not a
backwards-incompatible interface change requiring a minor release
vehicle.  If the ON c-team and/or PSARC disagree then you'll have to
stick to the divergence in behavior -- I don't think you should expect
MIT to "fix" this, because I don't think MIT should.

This may be a classic case of release schedule mismatches between
upstream and downstream.  This is something the upstream should
generally avoid doing to known, friendly downstream consumers, but
it's difficult to prevent entirely, particularly when the upstream is
less of a stickler for
behavior-that-rises-to-the-level-of-an-interface than PSARC might be.

Nico
--
_______________________________________________
krbdev mailing list             krbdev@mit.edu
https://mailman.mit.edu/mailman/listinfo/krbdev

home help back first fref pref prev next nref lref last post