[110] in Kerberos

home help back first fref pref prev next nref lref last post

Re: Operations and Maintenance of RV

jon@ATHENA.MIT.EDU (jon@ATHENA.MIT.EDU)
Sun Aug 9 21:29:37 1987

From Saltzer@ATHENA.MIT.EDU  Tue Sep 30 11:47:48 1986
Date: Tue, 30 Sep 86 10:24:44 EDT
To: miller%erlang.DEC@decwrl.DEC.COM  (Steve Miller)
Subject: Re: Operations and Maintenance of RVDs kludge
Cc: rvd-info@athena.mit.edu, kerberos@athena.mit.edu,
        miller%erlang.DEC@decwrl.DEC.COM
In-Reply-To: miller%erlang.DEC@decwrl.DEC.COM  (Steve Miller)'s message of 29-Sep-1986 1650
From: Jerome H. Saltzer <Saltzer@ATHENA.MIT.EDU>
Originating-Client:  <E40-391A-1.MIT.EDU>


> Another temporary alternative for RVD administration is to clone to
> routines Mark setup for the rcmd stuff, and use the same routines
> with a separate file listing the authorized Kerberos names who are
> valid rvd administrators.  I had previously suggested making this
> form of local authorization more generic than just rcmd.

I have a different problem with that proposal: it is implementing a
service-specific access control list.  I would rather put the effort
int a rudimentary access control list service.

						Jerry


home help back first fref pref prev next nref lref last post