Re: GGF's extensions to GSS in Public Comment

Sam Hartman <[email protected]> Fri, 23 Apr 2004 21:23:44 -0400
Newsgroups gmane.ietf.cat
Message-ID <[email protected]>
[ggf security group dropped; I'm not sure my comments are useful to
that forum.]

>>>>> "Nicolas" == Nicolas Williams <[email protected]> writes:


    >> Ideally, I agree - it would be nice we didn't have to use
    >> environment variables and didn't have to mess with this. But
    >> since we do, it seems like the best idea is to expose it so
    >> that it can be handled reasonably.

    Nicolas> You don't have to use environment variables.  Looks like
    Nicolas> you used them only because MIT krb5 did (and does).


Sorry for the long delay on this issue; somehow this thread got
missorted in my mail and I just now noticed it.

Random comments Nico has been making on the phone over the last week
all start to make more sense;)

MIT Kerberos only uses environment variables on some platforms.
Fundamentally the putenv solution does not even work with all the
common instances of the mechanisms for which it is designed.

In the interests of full disclosure, I was one of two reviewers
assigned to review this proposal for the security area.  My comments
were submitted to the ADs about two weeks ago, I believe they have
been sent to parties within the GGF, although Google suggests that no
one has made them available to the public.

--Sam

-++**==--++**==--++**==--++**==--++**==--++**==--++**==
This message was posted through the Stanford campus mailing list
server.  If you wish to unsubscribe from this mailing list, send the
message body of "unsubscribe ietf-cat-wg" to [email protected]