linux-nfs.vger.kernel.org archive mirror
 help / color / mirror / Atom feed
* Kernel NFS client and Kerberos delegation
@ 2018-10-08 19:46 Language Lawyer
  2018-10-09 13:11 ` Benjamin Coddington
  0 siblings, 1 reply; 5+ messages in thread
From: Language Lawyer @ 2018-10-08 19:46 UTC (permalink / raw)
  To: linux-nfs

Hi,

AFAIU kernel NFS client keeps ID -> Name mapping in the "id_resolver" keyring.
Do I understand it correctly that with this hard mapping it is not possible for a service to access a kerberized NFS storage on behalf of some user using user's delegated (for example, with S4U2Self+S4U2Proxy) credentials?

^ permalink raw reply	[flat|nested] 5+ messages in thread

end of thread, other threads:[~2018-10-10 10:45 UTC | newest]

Thread overview: 5+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2018-10-08 19:46 Kernel NFS client and Kerberos delegation Language Lawyer
2018-10-09 13:11 ` Benjamin Coddington
2018-10-09 13:44   ` Language Lawyer
2018-10-09 14:34     ` Benjamin Coddington
2018-10-10 10:45       ` Language Lawyer

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox;
as well as URLs for NNTP newsgroup(s).