Re: documentation vs specification
Nico Williams <[email protected]>
| Newsgroups | gmane.comp.encryption.kerberos.heimdal.general |
|---|---|
| Message-ID | <CAK3OfOiX-ScTKOy=+yC9m_Lri71HGE=TKaHPe4LNyLwtuXoZLA@mail.gmail.com> |
On Mon, Oct 3, 2011 at 12:53 PM, Greg Hudson <[email protected]> wrote: > The MIT krb5 team is quite aware that Heimdal and Shishi share its > credential cache file format. The last time MIT krb5's format changed > was in 1995(*), and we are unlikely to change it again without serious > consideration for compatibility on the part of all implementations. > Part of the reason we haven't formally documented it is that Simon did > it for us in the Shishi documentation. (It would certainly be better if > it were specified as part of our own documentation, or in some kind of > neutral implementation standard document; that's just a matter of > resources and priorities.) > > (*) Support for "configuration values" was added a couple of years ago. > This is technically layered on top of the file format, but does affect > code which lists a ccache. Heimdal implemented this first and MIT krb5 > followed its lead. Would it be too much noise to mention that a) the referrals realm is a bit of a change, b) I dunno if JGSS was ever fixed to support ccache version 4. Nico --