[32022] in Kerberos

home help back first fref pref prev next nref lref last post

kerberos and smartphone clients

daemon@ATHENA.MIT.EDU (Nikolay Shopik)
Sat Feb 6 16:05:24 2010

To: kerberos@mit.edu
From: Nikolay Shopik <shopik@inblock.ru>
Date: Fri, 05 Feb 2010 16:50:49 +0300
Message-ID: <hkh7pn$4et$1@ger.gmane.org>
Mime-Version: 1.0
X-Complaints-To: usenet@ger.gmane.org
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
Errors-To: kerberos-bounces@mit.edu

Hello everyone,

	I'm in middle of process making my mail server Kerberized. Currently my 
infrastructure is only password based, but I plan move to PKINIT thus 
using certificate based authentication. Afterward I though about my 
smartphone clients who use email on their phones this is exclusively 
iPhone users.
	So this makes me think I should leave regular password based 
authentication for these mobile clients, which isn't great because you 
have to manage two separate db for logins/passwords. In same time I 
though every mobile phone have smart card already which is SIM card, 
there even EAP-SIM allowing use it to authenticate to wireless networks. 
So what best way to accomplish this task, without making huge pain when 
managing logins/passwords?

________________________________________________
Kerberos mailing list           Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos

home help back first fref pref prev next nref lref last post