[16668] in Kerberos_V5_Development

home help back first fref pref prev next nref lref last post

Kerberized NFS Vs NFS over VPN tunnel

daemon@ATHENA.MIT.EDU (sandeep patil)
Sun Mar 6 23:15:21 2011

Message-ID: <BAY156-w44CCA4CC14FA69F759FD6C8CC70@phx.gbl>
From: sandeep patil <san_patil@hotmail.com>
To: krbdev <krbdev@mit.edu>
Date: Mon, 7 Mar 2011 04:15:18 +0000
MIME-Version: 1.0
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
Errors-To: krbdev-bounces@mit.edu


Hi,
    I have been a big fan of Kerberos and kerberized NFS. While Kerberized NFS provides granular per message encryption (krb5p, krb5i etc) between the kerberized NFS client and kerberized NFS server (per mount basis), what would be the additional advantages of deploying kerberized NFS infrastructure as opposed to having VPN tunnel between the NFS client and NFS server?
In other words does a VPN tunnel between NFS client  system and NFS server system override the need to have a kerberized NFS infrastructure ?

Any valued thoughts will help understand this choices a real-time deployment can make. 

Thanks
-S
 		 	   		  
_______________________________________________
krbdev mailing list             krbdev@mit.edu
https://mailman.mit.edu/mailman/listinfo/krbdev

home help back first fref pref prev next nref lref last post