Simo wrote:
> One draft would deal with defining a standard AuthorizationData
> container similar to AD-KDCIssued, but that includes the additional
> Checksums we need to verify the PAC content.
> The second draft instead would define the Posix Authorization data
> also in terms of one or more AD elements, to be embedded in the
> container defined in the first draft.
I support splitting the draft this way; I think it better matches how
authorization data has been used in the past.
_______________________________________________
ietf-krb-wg mailing list
[email protected]
https://lists.anl.gov/mailman/listinfo/ietf-krb-wg
lmpx.com only provides a reader for public news (NNTP) servers. It is not
affiliated with the servers or forums shown here and is not responsible for
the content of articles, which is written by their respective authors.