Re: DBIS - new IETF drafts

Charlie <[email protected]> Thu, 9 Jan 2014 19:32:28 -0500
Newsgroups gmane.ietf.ldapext
Message-ID <CAJb3uA6mXTXvBtFc1W=_eCYbfEgGJibdwu1zxU4BtiZvCw6-zg@mail.gmail.com>
What I have learned from about a decade of quietly following LDAP
across multiple forums and lists is the following:

1) Whenever people say "nobody is using this/that" they are invariably wrong.

2) POSIX group semantics are the bane of open-source LDAP.  The
functional paradigm that a member is an attribute of a group is
fundamentally broken; group membership is an attribute of the member.
The security concerns frequently raised concerning this are all either
trivially solvable or pragmatically completely bogus.

3) Howard knows what he's talking about.  But Kurt also knows what
he's talking about, and Kurt wrote "multi-master considered harmful"
(draft-zeilenga-ldup-harmful-00).  Sometimes real world pragmatism
obviates perfectly valid academic arguments.

--Charlie