|  |  | 
  
    |  |  | 
 
  |   |  | 
  
    |  |  | 
  
    |  |  | 
  
    |   xen-api
| On Tue, Feb 06, 2007 at 08:29:13PM +0000, John Levon wrote:
> I suppose I don't quite understand what the PAM usage in xend is for then. It
> can't provide any additional security (since we must gate users at the point 
> of
> access over a secure transport). Obviously you'd like 'username' so that later
> auditing features can use it, but surely it's the responsibility of the secure
> transport to provide that and make sure it's authorized anyway.
Your secure transport might not have any per-user authentication.  It would
not be unreasonable to use SSL without client certificates, for example.
Ewan.
_______________________________________________
xen-api mailing list
xen-api@xxxxxxxxxxxxxxxxxxx
http://lists.xensource.com/cgi-bin/mailman/listinfo/xen-api
 | 
 |  | 
  
    |  |  |