9fans - fans of the OS Plan 9 from Bell Labs
 help / color / mirror / Atom feed
From: Nathaniel W Filardo <nwf@cs.jhu.edu>
To: Fans of the OS Plan 9 from Bell Labs <9fans@9fans.net>
Subject: Re: [9fans] Multi-domain authentication?
Date: Tue, 21 Oct 2008 13:43:10 -0400	[thread overview]
Message-ID: <20081021174310.GR4216@masters10.cs.jhu.edu> (raw)
In-Reply-To: <a4e6962a0810202029k71aeaf0fxddfbc065d4b1f0bb@mail.gmail.com>

[-- Attachment #1: Type: text/plain, Size: 871 bytes --]

On Mon, Oct 20, 2008 at 10:29:17PM -0500, Eric Van Hensbergen wrote:
> Good general problem, I'd also like to add my personal pain point that
> only the file server knows about the relationship between groups and
> users.  It'd be nice to have a more general service to take care of
> this, and include some ability to assign remote delegated user names
> to local groups.
>
> I also like the idea of having "user-context" groups where users can
> create their own groups and assign local and remote users to them for
> the purposes of accessing file servers they "own".

My internalized model of how this should work is AFS's ACL system (if that's
not a dirty word...) and the associated PTS group system.  Between them,
they provide excellent ability to talk about users from remote cells and
allow users to create and manage their own groups.

--nwf;

[-- Attachment #2: Type: application/pgp-signature, Size: 204 bytes --]

  parent reply	other threads:[~2008-10-21 17:43 UTC|newest]

Thread overview: 15+ messages / expand[flat|nested]  mbox.gz  Atom feed  top
2008-10-21  0:49 erik quanstrom
2008-10-21  1:05 ` andrey mirtchovski
2008-10-21  2:25   ` ron minnich
2008-10-21  3:29 ` Eric Van Hensbergen
2008-10-21  7:25   ` roger peppe
2008-10-21  7:52   ` Steve Simon
2008-10-21 17:43   ` Nathaniel W Filardo [this message]
  -- strict thread matches above, loose matches on Subject: below --
2008-10-21 17:45 erik quanstrom
2008-10-21 13:14 erik quanstrom
2008-10-20 23:43 erik quanstrom
2008-10-21  0:09 ` andrey mirtchovski
2008-10-21  0:10   ` erik quanstrom
2008-10-21  0:40     ` andrey mirtchovski
2008-10-21  2:21 ` Nathaniel W Filardo
2008-10-20  4:38 Nathaniel W Filardo

Reply instructions:

You may reply publicly to this message via plain-text email
using any one of the following methods:

* Save the following mbox file, import it into your mail client,
  and reply-to-all from there: mbox

  Avoid top-posting and favor interleaved quoting:
  https://en.wikipedia.org/wiki/Posting_style#Interleaved_style

* Reply using the --to, --cc, and --in-reply-to
  switches of git-send-email(1):

  git send-email \
    --in-reply-to=20081021174310.GR4216@masters10.cs.jhu.edu \
    --to=nwf@cs.jhu.edu \
    --cc=9fans@9fans.net \
    /path/to/YOUR_REPLY

  https://kernel.org/pub/software/scm/git/docs/git-send-email.html

* If your mail client supports setting the In-Reply-To header
  via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line before the message body.
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox;
as well as URLs for NNTP newsgroup(s).