[38345] in Kerberos

home help back first fref pref prev next nref lref last post

security implications of ignore_acceptor_hostname

daemon@ATHENA.MIT.EDU (Ben Gooley)
Fri Sep 28 19:13:38 2018

MIME-Version: 1.0
From: Ben Gooley <bgooley@cloudera.com>
Date: Fri, 28 Sep 2018 16:13:08 -0700
Message-ID: <CAP9ATsJZsy9AaeDhEmsSS8eaQfZCN6j+cvqjC2=fxAcoMyzffA@mail.gmail.com>
To: kerberos@mit.edu
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
Errors-To: kerberos-bounces@mit.edu

Hello Kerberos Community,

Could someone explain a possible threat due to enabling
"ignore_acceptor_hostname=true" with an example?  I am trying to assess the
risk in using that configuration.


Thanks!

Ben
________________________________________________
Kerberos mailing list           Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos

home help back first fref pref prev next nref lref last post