[15935] in Athena Bugs

home help back first fref pref prev next nref lref last post

acl handling

daemon@ATHENA.MIT.EDU (Brett David Rosen)
Tue May 12 14:38:14 1998

To: olc-bugs@MIT.EDU
Date: Tue, 12 May 1998 14:38:09 EDT
From: Brett David Rosen <bdrosen@MIT.EDU>


	I'm not sure if this a long standing feature or bug but I
just noticed the following:

If I have bdrosen.extra (or bdrosen.root, or anything that is bdrosen.* )
olcr will grant me the same priviledges as bdrosen, even though
I'm not on the acl.

oreplay/olist doesn't do this.

Apparently olcd does not use the kerberos instance name, in the
acl check routines, even though it is sent the information and
the acl routines do support instances.

(the olcr acl command doesn't seem to support instances either)

It looks like this would be a simple fix.

	Brett



home help back first fref pref prev next nref lref last post