Re: [RFC v3] Security Label Support for NFSv4

From: James Morris
Date: Mon Oct 13 2008 - 19:32:40 EST


On Mon, 29 Sep 2008, David P. Quigley wrote:

> * New security flavor (auth_seclabel) to transport process label to
> server. This is a derivative of auth_unix so it does not support
> kerberos which has its own issues that need to be dealt with.

This is a problem, as discussed last year:

http://linux-nfs.org/pipermail/labeled-nfs/2007-November/000110.html

We can't require the use of a new auth flavor which is incompatible with
auth_gss.


- James
--
James Morris
<jmorris@xxxxxxxxx>
--
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@xxxxxxxxxxxxxxx
More majordomo info at http://vger.kernel.org/majordomo-info.html
Please read the FAQ at http://www.tux.org/lkml/