[23375] in Kerberos

home help back first fref pref prev next nref lref last post

Re: Windows Kerberos PAC patent

daemon@ATHENA.MIT.EDU (Jeffrey Altman)
Fri Feb 11 00:06:38 2005

From: Jeffrey Altman <jaltman2@nyc.rr.com>
Message-ID: <70XOd.2222$534.1336@twister.nyc.rr.com>
Date: Fri, 11 Feb 2005 05:02:59 GMT
To: kerberos@mit.edu
Errors-To: kerberos-bounces@mit.edu

Fredrik Tolf wrote:
> I have to admit that I don't know a lot about Windows and Kerberos.
> However, as I've understood it, the only thing that really prevents you
> from using a MIT KDC for Windows clients is the authorization data they
> ship in the ticket, right? And this is called "PAC", right?
> 
> I've let myself understand that Microsoft has somehow patented this PAC
> field. Now, I'm wondering if anyone in this newsgroup would happen to
> know what patent this is and if there's any way I can have a look at it
> (mostly for curiosity reasons)?
> 
> Thanks!
> 
> Fredrik Tolf

Microsoft cannot patent the authorization data field of a Kerberos 
ticket because that is published in public form by the IETF and was
invented outside of Microsoft.

Microsoft may very well have a patent on what they store inside the 
field.  However, they have made the contents publicly available provided
you are willing to accept their license agreement.

See archives of this group from summer 2000 for details.

Jeffrey Altman
________________________________________________
Kerberos mailing list           Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos

home help back first fref pref prev next nref lref last post