[7161] in Kerberos
PCT (barely relevant)
daemon@ATHENA.MIT.EDU (Scott D. Centurino)
Sun Apr 28 12:31:30 1996
To: kerberos@MIT.EDU
Date: 28 Apr 1996 16:18:36 GMT
From: sdcfred@MIT.EDU (Scott D. Centurino)
I know that this is not the most appropriate place to post this
question, but I am unsure of what newsgroup is appropriate
(pointers welcome).
Has anyone looked at Microsoft's PCT (version 2.00)?
(http://pct.microsoft.com/security.html#pct, protocol spec at
http://pct.microsoft.com/pct/pct.htm)
I am curious as to how people feel about its usefulness for user-
level authentication. I have some doubts, since it relies on either
public key use (cumbersome for human use), or sending the password
encrypted in the session key (potentially weak).
Followups here, by email, or after I'm pointed to the right place,
greatly appreciated.
-Scott Centurino