Q: Auth server

Date: Tue, 23 Oct 2001 09:03:59 +0200
How does the auth server work? I've read the doc (but not the source),
but I still have only a vague idea about it.
Mainly the translators check who opens (or modifies ?) a node using
auth? But how looks the protocol?

What prevents a user to set up a loop-like translator, modify some
setuids et. al. on the fs-image to obtain root privileges, for example?
Or can only user X translators provide user X setuid? 

