Re: multimple domain authentication
andrey mirtchovski <mirtchov-o/MP3MtDmzouExZ/[email protected]> Wed, 1 Sep 2004 17:15:31 -0600
| Newsgroups | gmane.os.plan9.nine-grid |
|---|---|
| Message-ID | <[email protected]> |
> I don't recall the context of that remark, but it seems doubtful > to me. The Plan 9 authentication mechanism depends on shared keys > that would be missing from that attempt to proxy if the mediator > doesn't do any rewriting. > i may have misunderstood -- it was some time ago when this topic went through the rounds :) i lack the security background to be able to evaluate the risks that are involved in rewriting the keys between clients and auth server (an obvious one is that the mediator will have access to the client's security keys no?), so back to square one then. :)