[19633] in Kerberos
Re: Windows 2000 Server as KDC
daemon@ATHENA.MIT.EDU (Ken Hornstein)
Tue Jul 22 11:33:29 2003
Message-Id: <200307221532.h6MFWFsG029327@ginger.cmf.nrl.navy.mil>
To: John Rudd <jrudd@ucsc.edu>
In-Reply-To: Message from John Rudd <jrudd@ucsc.edu>
<B0B6E748-BC58-11D7-A34A-003065F939FE@ucsc.edu>
Date: Tue, 22 Jul 2003 11:32:15 -0400
From: Ken Hornstein <kenh@cmf.nrl.navy.mil>
cc: kerberos@mit.edu
Errors-To: kerberos-bounces@mit.edu
>We're not running OpenAFS. Still Transarc AFS.
Heh, sucks to be you :-)
>I hadn't heard that there's a pure krb5 solution for AFS, though ...
>even with OpenAFS.
Well, I wouldn't call it "pure". It's restricted to single-DES, and it's
only "sorta" V5, but it's enough to fix the V4 cross-realm security hole.
--Ken
________________________________________________
Kerberos mailing list Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos