Re: Alternative proxy-creds API for constrained-delegation
Isaac Boukris <[email protected]>
| Newsgroups | gmane.comp.encryption.kerberos.devel |
|---|---|
| Message-ID | <CAC-fF8QKWmNgJkFLdB9Z6Fq2rMLhY_yyqZs1MHTtPOCVouk4pw@mail.gmail.com> |
On Fri, Jun 5, 2020 at 4:47 PM Nico Williams <[email protected]> wrote: > > On Fri, Jun 05, 2020 at 12:11:44PM +0200, Isaac Boukris wrote: > > Actually, even with the cred_store option for delegation_policy, when > > using more than one type, one can't really tell what creds he got at > > the end. > > You need to know? Why? To know what I hold and what I can do with it. > Anyways, gss_store_cred_into2() gives us a way to get that. I'm not interested in what the delegation_policy was, but what the end results were. _______________________________________________ krbdev mailing list [email protected] https://mailman.mit.edu/mailman/listinfo/krbdev