[35976] in Kerberos

home help back first fref pref prev next nref lref last post

Re: NSA backdoor risks in Kerberos

daemon@ATHENA.MIT.EDU (Albert Lunde)
Wed Apr 2 05:20:57 2014

Message-ID: <533BD669.9070201@panix.com>
Date: Wed, 02 Apr 2014 04:20:41 -0500
From: Albert Lunde <atlunde@panix.com>
MIME-Version: 1.0
To: Chris Hecker <checker@d6.com>, "kerberos@mit.edu" <kerberos@mit.edu>
In-Reply-To: <533BA9EB.6080308@d6.com>
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
Errors-To: kerberos-bounces@mit.edu

On 4/2/2014 1:10 AM, Chris Hecker wrote:
> Has there been a technical writeup of potential backdoor risks in
> Kerberos, similar to the stuff that keeps coming out about various RSA
> products:

The weak legacy algorithms listed in RFC 6649 could well be a 
vulnerability that wouldn't require a backdoor in the protocol as such.

________________________________________________
Kerberos mailing list           Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos

home help back first fref pref prev next nref lref last post