[36204] in Kerberos
Regarding long term TGT
daemon@ATHENA.MIT.EDU (Manish Gupta)
Fri Jun 13 07:52:10 2014
MIME-Version: 1.0
Date: Fri, 13 Jun 2014 17:21:52 +0530
Message-ID: <CACtQqm9P_m85QS2yWMEMGs=2SPZ42Vb7HHGrWxesPXLfFJRNhg@mail.gmail.com>
From: Manish Gupta <logonmanish@gmail.com>
To: kerberos <kerberos@mit.edu>
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
Errors-To: kerberos-bounces@mit.edu
Hi,
kerberos implementation in my platform take cares of secure storage of
kerberos credential cache. it is protected from any unauthorized access.
In this case is there any harm in using long term TGT, like TGT valid for a
month?
I cannot understand how it can be exploited if TGT is long term.
Regards,
Manish
--
It is hard to tell the world we live in, is either reality or dream
________________________________________________
Kerberos mailing list Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos