On Mon, Aug 22, 2011 at 10:07 AM, Rick Cochran <r...@cornell.edu> wrote:
> My understanding of the Kerberos changes is Lion is:
>
>  o Weak encryption types are now dis-allowed.
>
>  o TCP protocol is used when large TGTs (eg. from Active Directory KDCs) are
> involved.
>
> Although potentially disruptive, these seem logical to me.
>
> Do you know of any others?

oh, sadly, yes.

most of the API is missing, including the "yes, we know we have weak
crypto on" API calls, and the calls to translate error messages.
in some cases "missing" means not "no routine" but instead "routine
which returns something, possibly success, despite not being
implemented"


-- 
Derrick
_______________________________________________
OpenAFS-info mailing list
OpenAFS-info@openafs.org
https://lists.openafs.org/mailman/listinfo/openafs-info

Reply via email to