Re: [kitten] Clarification of gss_add_cred() behavior

Benjamin Kaduk <kaduk@MIT.EDU> Fri, 20 March 2015 00:20 UTC

Return-Path: <kaduk@mit.edu>
X-Original-To: kitten@ietfa.amsl.com
Delivered-To: kitten@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 6D89B1A1A0F for <kitten@ietfa.amsl.com>; Thu, 19 Mar 2015 17:20:41 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -4.211
X-Spam-Level:
X-Spam-Status: No, score=-4.211 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, RCVD_IN_DNSWL_MED=-2.3, SPF_PASS=-0.001, T_RP_MATCHES_RCVD=-0.01] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id cTrjNG5FrgCT for <kitten@ietfa.amsl.com>; Thu, 19 Mar 2015 17:20:40 -0700 (PDT)
Received: from dmz-mailsec-scanner-7.mit.edu (dmz-mailsec-scanner-7.mit.edu [18.7.68.36]) (using TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 3CCDE1A066B for <kitten@ietf.org>; Thu, 19 Mar 2015 17:20:22 -0700 (PDT)
X-AuditID: 12074424-f79f56d000000da5-3c-550b67c5871f
Received: from mailhub-auth-3.mit.edu ( [18.9.21.43]) (using TLS with cipher DHE-RSA-AES256-SHA (256/256 bits)) (Client did not present a certificate) by dmz-mailsec-scanner-7.mit.edu (Symantec Messaging Gateway) with SMTP id 2A.15.03493.5C76B055; Thu, 19 Mar 2015 20:20:21 -0400 (EDT)
Received: from outgoing.mit.edu (outgoing-auth-1.mit.edu [18.9.28.11]) by mailhub-auth-3.mit.edu (8.13.8/8.9.2) with ESMTP id t2K0KL14011167; Thu, 19 Mar 2015 20:20:21 -0400
Received: from multics.mit.edu (system-low-sipb.mit.edu [18.187.2.37]) (authenticated bits=56) (User authenticated as kaduk@ATHENA.MIT.EDU) by outgoing.mit.edu (8.13.8/8.12.4) with ESMTP id t2K0KJPw024584 (version=TLSv1/SSLv3 cipher=DHE-RSA-AES256-SHA bits=256 verify=NOT); Thu, 19 Mar 2015 20:20:20 -0400
Received: (from kaduk@localhost) by multics.mit.edu (8.12.9.20060308) id t2K0KI1Q025007; Thu, 19 Mar 2015 20:20:18 -0400 (EDT)
Date: Thu, 19 Mar 2015 20:20:18 -0400
From: Benjamin Kaduk <kaduk@MIT.EDU>
To: Nico Williams <nico@cryptonector.com>
In-Reply-To: <20150319195605.GM8099@localhost>
Message-ID: <alpine.GSO.1.10.1503192019350.3953@multics.mit.edu>
References: <20150319025202.GB8099@localhost> <alpine.GSO.1.10.1503191446260.3953@multics.mit.edu> <20150319194002.GG4309@mournblade.imrryr.org> <alpine.GSO.1.10.1503191541510.3953@multics.mit.edu> <20150319195605.GM8099@localhost>
User-Agent: Alpine 1.10 (GSO 962 2008-03-14)
MIME-Version: 1.0
Content-Type: TEXT/PLAIN; charset="US-ASCII"
X-Brightmail-Tracker: H4sIAAAAAAAAA+NgFvrOIsWRmVeSWpSXmKPExsUixCmqrXs0nTvU4NYia4ujm1exWJy6doTN gcnj5alzjB5LlvxkCmCK4rJJSc3JLEst0rdL4Mr4cm0ee8ELporb188zNjDOZepi5OCQEDCR mL+IpYuRE8gUk7hwbz1bFyMXh5DAYiaJbfMbwBJCAhsZJfbf0YNIHGKSOL1nFxOE08AosWnq PTaQSSwC2hL3W8tAGtgEVCRmvtnIBmKLCGhKXJ+3FMxmFhCWWH9uBjNIubCAncS2qU4gYU4B PYn7f/eB7eIVcJDY0nSPGWL8c0aJGxdXgPWKCuhIrN4/BapIUOLkzCcsEDO1JJZP38YygVFw FpLULCSpBYxMqxhlU3KrdHMTM3OKU5N1i5MT8/JSi3TN9XIzS/RSU0o3MYLClN1FZQdj8yGl Q4wCHIxKPLwrRblDhVgTy4orcw8xSnIwKYnyciUAhfiS8lMqMxKLM+KLSnNSiw8xSnAwK4nw JngC5XhTEiurUovyYVLSHCxK4rybfvCFCAmkJ5akZqemFqQWwWRlODiUJHh504AaBYtS01Mr 0jJzShDSTBycIMN5gIZ3gdTwFhck5hZnpkPkTzHqctyZ8n8RkxBLXn5eqpQ4LwtIkQBIUUZp HtwcWHp5xSgO9JYw71KQKh5gaoKb9ApoCRPQkn+1XCBLShIRUlINjAv2z/ZPYG+aLrk84P/v 89HHJ2RIzNyenh/3el764y4XZ4Wj5+7c2rTr3gQD7VST7WLLjRe6bC/m5vh17tb5v1VVWxSz +ngnK6curHdQvXuuQ2bWIhlRtR+uzh7lhycfy2JTn+L6v6EiryvW5ynvGe/Oc5vWTkjyNRZn nV0858PruUasXg2rfiqxFGckGmoxFxUnAgB5vRcXCgMAAA==
Archived-At: <http://mailarchive.ietf.org/arch/msg/kitten/jVMd9pAcWr6NIyn3tPH5Ik0eYOE>
Cc: kitten@ietf.org
Subject: Re: [kitten] Clarification of gss_add_cred() behavior
X-BeenThere: kitten@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: Common Authentication Technologies - Next Generation <kitten.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/kitten>, <mailto:kitten-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/kitten/>
List-Post: <mailto:kitten@ietf.org>
List-Help: <mailto:kitten-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/kitten>, <mailto:kitten-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 20 Mar 2015 00:20:41 -0000

On Thu, 19 Mar 2015, Nico Williams wrote:

> GSS_C_NO_NAME.  But then I can never use GSS_Add_cred() to acquire a
> signle-element credential, and I must always use GSS_Acquire_cred() for
> that (which is lame for several reasons).

Perhaps I'm just being slow today, but could you say more about what these
reasons for lameness are?

Thanks,

Ben