[2409] in Kerberos
[STURTEVANT@ccv.nersc.gov (Allen Sturtevant - ESnet): Update on my
daemon@ATHENA.MIT.EDU (Jon A. Rochlis)
Tue Dec 1 16:29:49 1992
Date: Tue, 01 Dec 92 16:29:40 EST
From: jon@MIT.EDU (Jon A. Rochlis)
To: kerberos-mtg@menel.local
For the record ...
------- Forwarded Message
Received: from MIT.MIT.EDU by e40-po.MIT.EDU (5.61/4.7) id AA07964; Wed, 4 Nov 92 20:04:17 EST
Received: from lbl.gov by MIT.EDU with SMTP
id AA02077; Wed, 4 Nov 92 20:04:02 EST
Received: from CCV.NERSC.GOV by lbl.gov (4.1/1.39)
id AA02906; Wed, 4 Nov 92 18:00:55 PPE
Date: Wed, 4 Nov 1992 17:00:52 -0800 (PST)
From: STURTEVANT@ccv.nersc.gov (Allen Sturtevant - ESnet)
Message-Id: <921104170052.22a0024d@CCV.NERSC.GOV>
Subject: Update on my ESCC "Kerberos Sources" action item...
To: escc@lbl.gov, escc-sec-wg@es.net
X-Vmsmail-To: SMTP%"escc@lbl.gov",SMTP%"escc-sec-wg@es.net"
ESCC,
At the September ESCC Meeting at FNAL, I volunteered to get info on
public domain versions of "kerberized" standard clients and servers. I
queried the ESCC Security Working Group and the ESCC Authentication Task
Force and came up with the information listed at the end of this message. I
would like to thank the following people for providing me with this
information:
Tim Howes (University Of Michigan)
Joe Ramus (NERSC)
Russ Wright (LBL)
This information is also available on the ESnet Info Server in the
directory/file:
[ANONYMOUS.ESNET-DOC]KERBEROS-SOURCES.TXT
Allen Sturtevant Lawrence Livermore National Laboratory
Group Leader, NIS Group National Energy Research Supercomputer Center
ESnet (Energy Sciences Network) P.O. Box 5509, Mail-Stop L-561
Internet: Sturtevant@es.net Livermore, CA 94551 USA
DECnet: ESNIC::APS (42158::APS) Phone: +1 510-422-8266 FAX: +1 510-422-0435
X.400: /PN=Sturtevant/O=NERSC/PRMD=ESnet/ADMD= /C=US/
--------------------------------------------------------------------------------
Known Public Domain Kerberized Client/Server Software
as of Monday, November 2, 1992
--------------------------------------------------------------------------------
Client/Server Code : X.500 Lightweight Directory Access Protocol
Supported Platforms(s)/OS : SunOS, and other UNIX?
Version of Kerberos Used : MIT V4
Internet Host : terminator.cc.umich.edu
Directory : x500
Comments (optional) : Mutual authentication to both the LDAP server
and the DSA is supported. IP address checking on the DSA server side is
disabled, so security is somewhat weakened. This was necessary to allow
the LDAP server to act as proxy for the LDAP client, without trusting the
LDAP server with the client's password. A future version is planned that
supports Kerberos V5.
- - - - - - - - - -
Client/Server Code : The MIT Kerberos 4 package including Key Data
Base server, libraries, clients, and servers.
Supported Platforms(s)/OS : SunOS for Sparc, Sun3, Sun386i, DEC Ultrix,
NeXt
Version of Kerberos Used : MIT V4
Internet Host : nic.es.net
Directory : [oer.source.mit-kerberos-v4]
Comments (optional) : This port of Kerberos 4 was done at the Los
Alamos Lab. It includes bug fixes and makefile fixes.
- - - - - - - - - -
Client/Server Code : MIT Kerberos 4 ported to HP-UX
Supported Platforms(s)/OS : HP-UX rev 7 & 8
Version of Kerberos Used : MIT V4
Internet Host : telford.nsa.hp.com
Directory : pub/krb4/krb4.cpio.Z
Comments (optional) : The BSD "r" commands are missing. Contact
ramus@nersc.gov for some bug fixes.
- - - - - - - - - -
Client/Server Code : telnet & telnetd
Supported Platforms(s)/OS : This is a distribution of both client and
server telnet. These programs have been
compiled on:
telnet telnetd
BSD 4.3 Reno X X
UNICOS 5.1 X X
UNICOS 6.0 X X
UNICOS 6.1 X X
UNICOS 7.0 X X
SunOs 3.5 X X (no linemode in server)
SunOs 4.1 X X (no linemode in server)
DYNIX V3.0.17.9 X X (no linemode in server)
Ultrix 3.1 X X (no linemode in server)
Ultrix 4.0 X X (no linemode in server)
In addition, previous versions have been
compiled on the following machines, but were
not available for testing this version.
telnet telnetd
Next1.0 X X
UNICOS 5.0 X X
SunOs 4.0.3c X X (no linemode in server)
BSD 4.3 X X (no linemode in server)
DYNIX V3.0.12 X X (no linemode in server)
Version of Kerberos Used : MIT V4
Internet Host : ftp.uu.net
Directory : /packages/bsd-sources/usr.bin/telnet/*
/packages/bsd-sources/libexec/telnetd/*
/packages/bsd-sources/lib/libtelnet/*
Comments (optional) : The top level generic makefiles are missing.
Contact ramus@nersc.gov if you need the makefiles.
- - - - - - - - - -
Client/Server Code : rkinit, rkinitd
Supported Platforms(s)/OS : Most Unix systems
Version of Kerberos Used : MIT V4
Internet Host : toxicwaste.mit.edu
Directory : /pub/archive/kerberos/rkinit.tar.Z
Comments (optional) : rkinit provides a safe way to get a Kerberos
ticket on a remote host. Passwords are encrypted over the wire.
--------------------------------------------------------------------------------
------- End of Forwarded Message