[256] in Info-AFS_Redistribution

home help back first fref pref prev next nref lref last post

Re: MIT kerberos <-> kaserver interworking

daemon@ATHENA.MIT.EDU (Bruce Howard)
Fri Jul 26 03:45:55 1991

From: Bruce Howard <bhoward@citi.umich.edu>
To: basch@MIT.EDU (Richard Basch)
Cc: jm36+@andrew.cmu.edu, ccaamrg@ucl.ac.uk, info-afs@transarc.com
Date: Thu, 25 Jul 91 14:22:23 EDT
In-Reply-To: <9107241516.AA16640@tardis>; from "Richard Basch" at Jul 24, 91 11:16 am

> [ text deleted ]
>
> I know Univ. of Mich. has a modified string_to_key.  I believe I
> also have a copy, but I have to experiment a bit more.  It can be done
> as a change to the library, without much difficulty.  I do not like the
> internals of the library, either.
>
> [ further text deleted ]

our code attempts decryption of the tgs ticket using keys produced
from both the transarc and the athena string_to_key() routines.
this has allowed us to authenticate both in the athena cell as well
as in others that use transarc's string_to_key().  btw, i also had
to modify the code requesting an afs service ticket to use a non-null
instance (ATHENA.MIT.EDU) whenever requesting an afs service ticket
for the athena cell.

				bruce

home help back first fref pref prev next nref lref last post