<?xml version="1.0"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
		<id>https://k5wiki.test.kerberos.org/wiki?action=history&amp;feed=atom&amp;title=Release_Meeting_Minutes%2F2013-02-12</id>
		<title>Release Meeting Minutes/2013-02-12 - Revision history</title>
		<link rel="self" type="application/atom+xml" href="https://k5wiki.test.kerberos.org/wiki?action=history&amp;feed=atom&amp;title=Release_Meeting_Minutes%2F2013-02-12"/>
		<link rel="alternate" type="text/html" href="https://k5wiki.test.kerberos.org/wiki?title=Release_Meeting_Minutes/2013-02-12&amp;action=history"/>
		<updated>2026-05-14T17:29:18Z</updated>
		<subtitle>Revision history for this page on the wiki</subtitle>
		<generator>MediaWiki 1.27.4</generator>

	<entry>
		<id>https://k5wiki.test.kerberos.org/wiki?title=Release_Meeting_Minutes/2013-02-12&amp;diff=5073&amp;oldid=prev</id>
		<title>TomYu: New page: {{minutes|2013}} David Benjamin, Thomas Hardjono, Greg Hudson, Ben Kaduk, Simo Sorce, Zhanna Tsitkov, Tom Yu  ;Greg: Started work on auth_to_local interface. Want to fix some existing beha...</title>
		<link rel="alternate" type="text/html" href="https://k5wiki.test.kerberos.org/wiki?title=Release_Meeting_Minutes/2013-02-12&amp;diff=5073&amp;oldid=prev"/>
				<updated>2013-02-13T18:17:02Z</updated>
		
		<summary type="html">&lt;p&gt;New page: {{minutes|2013}} David Benjamin, Thomas Hardjono, Greg Hudson, Ben Kaduk, Simo Sorce, Zhanna Tsitkov, Tom Yu  ;Greg: Started work on auth_to_local interface. Want to fix some existing beha...&lt;/p&gt;
&lt;p&gt;&lt;b&gt;New page&lt;/b&gt;&lt;/p&gt;&lt;div&gt;{{minutes|2013}}&lt;br /&gt;
David Benjamin, Thomas Hardjono, Greg Hudson, Ben Kaduk, Simo Sorce, Zhanna Tsitkov, Tom Yu&lt;br /&gt;
&lt;br /&gt;
;Greg: Started work on auth_to_local interface. Want to fix some existing behavior. Can't distinguish different realms. Also a problem when using regex-based rules.&lt;br /&gt;
&lt;br /&gt;
;Greg: Probably will leave things alone in case someone depends on it, and document behavior.&lt;br /&gt;
&lt;br /&gt;
;Tom: git.mit.edu firewalled from off-campus soon.&lt;br /&gt;
&lt;br /&gt;
Some discussion about CAMMAC. What purpose does a KDC MAC serve? Detached verification? Some people (Sam?) are skeptical about detached verification. Do we want something like ad-signedpath? What bits to sign?&lt;br /&gt;
&lt;br /&gt;
;Tom: S4U2Proxy -- CAMMAC as it currently exists is probably good enough to allow supporting it in the future. (e.g., could define a new authorization data type that MACs most of the content of the ticket, and put that in the CAMMAC.) So what is the minimum binding component?&lt;br /&gt;
&lt;br /&gt;
;Simo: cname, authtime, endtime -- to support detached verification.&lt;br /&gt;
&lt;br /&gt;
;Tom: Do you actually need detached verification?&lt;br /&gt;
&lt;br /&gt;
;Simo: Can probably use GSS proxy, but would like the option if needed in the future.&lt;br /&gt;
&lt;br /&gt;
;Tom: Will get text to you later this week.&lt;/div&gt;</summary>
		<author><name>TomYu</name></author>	</entry>

	</feed>