[36204] in Kerberos

home help back first fref pref prev next nref lref last post

Regarding long term TGT

daemon@ATHENA.MIT.EDU (Manish Gupta)
Fri Jun 13 07:52:10 2014

MIME-Version: 1.0
Date: Fri, 13 Jun 2014 17:21:52 +0530
Message-ID: <CACtQqm9P_m85QS2yWMEMGs=2SPZ42Vb7HHGrWxesPXLfFJRNhg@mail.gmail.com>
From: Manish Gupta <logonmanish@gmail.com>
To: kerberos <kerberos@mit.edu>
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
Errors-To: kerberos-bounces@mit.edu

Hi,

kerberos implementation in my platform take cares of secure storage of
kerberos credential cache. it is protected from any unauthorized access.

In this case is there any harm in using long term TGT, like TGT valid for a
month?

I cannot understand how it can be exploited if TGT is long term.

Regards,
Manish


-- 
It is hard to tell the world we live in, is either reality or dream
________________________________________________
Kerberos mailing list           Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos

home help back first fref pref prev next nref lref last post