| I think he's pointing out a more general problem.

Sure.  The problem with general problems is you can't solve them or
make tradeoffs around them.  You have to delve into each and say "what
can we do about this?" and "how much engineering weight should we give
this?"  In the case of Kerberos, I would venture to guess that it's
pretty low.  In which case, I think Apple might go back to Jake's
security issue with LoginWindow, and ask if the Kerberos issue is
reason enough to keep the behavior as is.

Obviously, there's a tradeoff for Apple here, and Apple has people who
have dug into the problem.  Those folks may well have good reasons to
keep things as they are.  From my seat as an Apple customer, I don't
understand those reasons, and the example given seems unlikely to be
important.  So I asked for more detail.

(Not speaking for my employer)

