[19633] in Kerberos

home help back first fref pref prev next nref lref last post

Re: Windows 2000 Server as KDC

daemon@ATHENA.MIT.EDU (Ken Hornstein)
Tue Jul 22 11:33:29 2003

Message-Id: <200307221532.h6MFWFsG029327@ginger.cmf.nrl.navy.mil>
To: John Rudd <jrudd@ucsc.edu>
In-Reply-To: Message from John Rudd <jrudd@ucsc.edu> 
	<B0B6E748-BC58-11D7-A34A-003065F939FE@ucsc.edu> 
Date: Tue, 22 Jul 2003 11:32:15 -0400
From: Ken Hornstein <kenh@cmf.nrl.navy.mil>
cc: kerberos@mit.edu
Errors-To: kerberos-bounces@mit.edu

>We're not running OpenAFS.  Still Transarc AFS.

Heh, sucks to be you :-)

>I hadn't heard that there's a pure krb5 solution for AFS, though ... 
>even with OpenAFS.

Well, I wouldn't call it "pure".  It's restricted to single-DES, and it's
only "sorta" V5, but it's enough to fix the V4 cross-realm security hole.

--Ken
________________________________________________
Kerberos mailing list           Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos

home help back first fref pref prev next nref lref last post