Tom Yu | 9 Oct 2008 20:13
Picon
Favicon

draft-lha-gssapi-delegate-policy-01.txt

I have examined draft-lha-gssapi-delegate-policy-01.txt and believe
that it is ready to submit for publication.  The rationale section
that I requested addresses some of Michael Allen's concerns,
explaining why we want to proceed with GSS_C_DELEG_POLICY_FLAG rather
than something like GSS_C_DELEG_IGNORE_POLICY_FLAG, despite the
proposal being non-ideal if we were designing GSS-API anew today.

I believe the GSS_C_DELEG_POLICY_FLAG proposal is an incremental
improvement to the security of GSS-API.  Even if it is not ideal, I
think it is more deployable than a solution involving
GSS_C_DELEG_IGNORE_POLICY_FLAG.  Theoretically superior security is
not helpful if nobody is willing to deploy it.
Shawn M Emery | 11 Oct 2008 07:15
Picon

IETF 73 Agenda


Please review the meeting agenda for IETF 73:

http://www.ietf.org/proceedings/08nov/agenda/kitten.txt

and let us know if you would like to add or change anything.

Shawn and Alexey
kitten co-chairs
--
The IESG | 30 Oct 2008 16:21
Picon
Favicon

Last Call: draft-ietf-kitten-gssapi-channel-bindings (Clarifications and Extensions to the GSS-API for the Use of Channel Bindings) to Proposed Standard

The IESG has received a request from the Kitten (GSS-API Next Generation)
WG (kitten) to consider the following document:

- 'Clarifications and Extensions to the GSS-API for the Use of Channel 
   Bindings '
   <draft-ietf-kitten-gssapi-channel-bindings-05.txt> as a Proposed
Standard

The IESG plans to make a decision in the next few weeks, and solicits
final comments on this action.  Please send substantive comments to the
ietf <at> ietf.org mailing lists by 2008-11-13. Exceptionally, 
comments may be sent to iesg <at> ietf.org instead. In either case, please 
retain the beginning of the Subject line to allow automated sorting.

The file can be obtained via
http://www.ietf.org/internet-drafts/draft-ietf-kitten-gssapi-channel-bindings-05.txt

IESG discussion can be tracked via
https://datatracker.ietf.org/public/pidtracker.cgi?command=view_id&dTag=12903&rfc_flag=0

Gmane