[PATCH] New external idmap module

simo idra at samba.org
Wed May 31 19:14:08 GMT 2006


On Wed, 2006-05-31 at 21:14 +0200, Volker Lendecke wrote:
> On Wed, May 31, 2006 at 03:07:47PM -0400, simo wrote:
> > > What is the difference to doing it in the winbind idmap
> > > child? What is the difference in the unix domain protocol to
> > > the network protocol? Why implement two different protocols?
> > 
> > The ability to provide a non-GPL compatible local daemon without the
> > performance hit of a secure protocol.
> 
> I'm 99.9% certain that latency hits you much more than
> signing the requests/responses. We're not talking about bulk
> reads, we're talking about requests in the order of less
> than 100 bytes. I would be extremely surprised if signing
> these request costs *any* noticable amount of CPU.

Fair enough,
I will look to see what is needed to go into this direction.

Any preference on the kind of protocol/encryption to be used?

Simo.

-- 
Simo Sorce
Samba Team GPL Compliance Officer
email: idra at samba.org
http://samba.org



More information about the samba-technical mailing list