[22248] in Kerberos
Re: GSSAPI security for connection encryption
daemon@ATHENA.MIT.EDU (Sam Hartman)
Thu Aug 19 17:50:51 2004
To: Markus Moeller <huaraz@moeller.plus.com>
From: Sam Hartman <hartmans@mit.edu>
Date: Thu, 19 Aug 2004 17:50:23 -0400
In-Reply-To: <200408191725.i7JHPS4w029742@fort-point-station.mit.edu> (Markus
Moeller's message of "Thu, 19 Aug 2004 13:25:28 -0400 (EDT)")
Message-ID: <tslzn4qssps.fsf@cz.mit.edu>
MIME-Version: 1.0
Content-Type: text/plain; charset=us-ascii
cc: "''kerberos@mit.edu''" <kerberos@mit.edu>
cc: Ken Raeburn <raeburn@mit.edu>
Errors-To: kerberos-bounces@mit.edu
>>>>> "Markus" == Markus Moeller <huaraz@moeller.plus.com> writes:
Markus> will Sequence protection (GSS_C_SEQUENCE_FLAG)cover replay
Markus> protection (GSS_C_REPLAY_FLAG) as well or are there cases
Markus> were I need both ?
I'd recommend using both, but I believe sequence is typically a
superset.
________________________________________________
Kerberos mailing list Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos