[Gt-eos] myproxy w/o globus

Mischa Salle msalle at nikhef.nl
Thu Nov 9 14:24:37 CET 2017


On Thu, Nov 09, 2017 at 02:11:53PM +0100, Paul Millar wrote:
> On 08/11/17 21:33, Mischa Salle wrote:
> > Creating RFC proxies and hence doing delegation is also not really
> > part of OpenSSL itself, you'll have to do that by hand in any case.
> > VOMS, cANL and Globus therefore have their own code but all using
> > OpenSSL. So there is code duplication between Globus, VOMS and cANL,
> > each being independent of the other two, but each using similar
> > code.
> 
> Would it make sense to try to push at least some this functionality
> upstream, into OpenSSL?

My first inclination is to say no, that's almost surely not going to
work. What's now in OpenSSL is I think the best people could manage in
the past and OpenSSL is trying to make the codebase simpler and smaller.
On the other hand, if we can provide simple and straightforward
additions that can be integrated into OpenSSL and do part of the job,
that might just be achievable.
Short answer: I think it will not be worth the effort but that's only my
opinion.

    Cheers,
    Mischa

-- 
Nikhef                      Room  H155
Science Park 105            Tel.  +31-20-592 5102
1098 XG Amsterdam           Fax   +31-20-592 5155
The Netherlands             Email msalle at nikhef.nl
  __ .. ... _._. .... ._  ... ._ ._.. ._.. .._..
-------------- next part --------------
A non-text attachment was scrubbed...
Name: smime.p7s
Type: application/x-pkcs7-signature
Size: 3402 bytes
Desc: not available
URL: <http://mailman.egi.eu/pipermail/discuss/attachments/20171109/1f96ba2e/attachment.p7s>


More information about the discuss mailing list