Jan Pechanec wrote:
[...]
>       do you mean that it could be dynamic, ie. that the mapping could be 
> done in an external module that would be dlopen()'ed, for example? So that 
> adding a new mapping wouldn't need a change in KMF itself or DTD?

What about a PAM module ? Making this available through PAM, this auth
method could be used at every level in the system...

-- 

Best Regards,

        Massimiliano Pala

--o------------------------------------------------------------------------
Massimiliano Pala [OpenCA Project Manager]            pala at cs.dartmouth.edu
                                                  project.manager at openca.org

Dartmouth Computer Science Dept               Home Phone: +1 (603) 397-3883
PKI/Trust - Office 063                        Work Phone: +1 (603) 646-9179
--o------------------------------------------------------------------------
-------------- next part --------------
A non-text attachment was scrubbed...
Name: smime.p7s
Type: application/x-pkcs7-signature
Size: 3088 bytes
Desc: S/MIME Cryptographic Signature
URL: 
<http://mail.opensolaris.org/pipermail/kmf-discuss/attachments/20071220/7908af61/attachment.bin>

Reply via email to