Re: Future of krb5 authentication - Mailing list pgsql-hackers

From Tom Lane
Subject Re: Future of krb5 authentication
Date
Msg-id 10614.1184795523@sss.pgh.pa.us
Whole thread Raw
In response to Re: Future of krb5 authentication  (Magnus Hagander <magnus@hagander.net>)
Responses Re: Future of krb5 authentication  (Stephen Frost <sfrost@snowman.net>)
List pgsql-hackers
Magnus Hagander <magnus@hagander.net> writes:
> The issue is *not* about GSSAPI vs krb5. It's with GSSAPI vs SSPI.

> The wire protocol is the same for them. It's a matter of which *client
> library* should be used to produce the packets that go over the network.

Oh, they're fully interchangeable at the wire level?  Is this true both
with respect to the PG client/backend protocol and the protocol to the
authentication server?  If there's no interoperability issues then I
agree that a configure-time choice is sufficient for selecting which
library to use.
        regards, tom lane


pgsql-hackers by date:

Previous
From: Gregory Stark
Date:
Subject: Re: Future of krb5 authentication
Next
From: Tom Lane
Date:
Subject: Re: Why so many out-of-disk-space failures on buildfarm machines?