
Donal K. Fellows wrote:
Andrew Grimshaw wrote:
Kerberos credentials. See my comment above. Or possibly I don’t know what in this case is meant by Kerberos credentials? For what? Presumably for the activity to execute with those credentials. Then why just Kerberos?
We (well, actually one of my colleagues who handles interfacing with our astrophysics and astronomy users) want it for AFS access so that we can access users' home directories. I'm less keen on having to require them to use Kerberos to authenticate to the BES instance in that case though, mostly because our IT department only tolerates Kerberos to support AFS.
I realize this isn't an OGF issue, but is the solution here to map from X.509 to Kerberos credentials, as we do in various Globus deployments for example? Ian.