[PATCH] New external idmap module
simo
idra at samba.org
Wed May 31 19:14:08 GMT 2006
On Wed, 2006-05-31 at 21:14 +0200, Volker Lendecke wrote:
> On Wed, May 31, 2006 at 03:07:47PM -0400, simo wrote:
> > > What is the difference to doing it in the winbind idmap
> > > child? What is the difference in the unix domain protocol to
> > > the network protocol? Why implement two different protocols?
> >
> > The ability to provide a non-GPL compatible local daemon without the
> > performance hit of a secure protocol.
>
> I'm 99.9% certain that latency hits you much more than
> signing the requests/responses. We're not talking about bulk
> reads, we're talking about requests in the order of less
> than 100 bytes. I would be extremely surprised if signing
> these request costs *any* noticable amount of CPU.
Fair enough,
I will look to see what is needed to go into this direction.
Any preference on the kind of protocol/encryption to be used?
Simo.
--
Simo Sorce
Samba Team GPL Compliance Officer
email: idra at samba.org
http://samba.org
More information about the samba-technical
mailing list