Re: Why do "strict acceptor checking"?

Russ Allbery <[email protected]> Tue, 08 Oct 2024 18:19:01 -0700
Newsgroups gmane.comp.encryption.kerberos.general
Organization The Eyrie
Message-ID <[email protected]>
Ken Hornstein via Kerberos <[email protected]> writes:

>> Me too. We've been recommending calling gss_accept_sec_context with
>> GSS_C_NO_CREDENTIAL for a long time, and almost no one does that.  it's
>> very annoying.

> It's comforting to know that at least I'm not the only old, grizzled
> Kerberos user that feels that way.

You definitely are not.  I don't know how many times I've tried to explain
this to people.

-- 
Russ Allbery ([email protected])             <https://www.eyrie.org/~eagle/>
________________________________________________
Kerberos mailing list           [email protected]
https://mailman.mit.edu/mailman/listinfo/kerberos