On Mon, Aug 22, 2011 at 10:07 AM, Rick Cochran <r...@cornell.edu> wrote: > My understanding of the Kerberos changes is Lion is: > > o Weak encryption types are now dis-allowed. > > o TCP protocol is used when large TGTs (eg. from Active Directory KDCs) are > involved. > > Although potentially disruptive, these seem logical to me. > > Do you know of any others?
oh, sadly, yes. most of the API is missing, including the "yes, we know we have weak crypto on" API calls, and the calls to translate error messages. in some cases "missing" means not "no routine" but instead "routine which returns something, possibly success, despite not being implemented" -- Derrick _______________________________________________ OpenAFS-info mailing list OpenAFS-info@openafs.org https://lists.openafs.org/mailman/listinfo/openafs-info