[33135] in Kerberos

home help back first fref pref prev next nref lref last post

Announce: GSSAPI Key Exchange Patch for OpenSSH 5.7p1

daemon@ATHENA.MIT.EDU (Simon Wilkinson)
Tue Jan 25 14:58:23 2011

Message-Id: <B0AFA57B-E2DB-4DF2-896F-9E67DB6A0B43@inf.ed.ac.uk>
From: Simon Wilkinson <sxw@inf.ed.ac.uk>
To: openssh-unix-dev@mindrot.org, kerberos@mit.edu, heimdal-discuss@sics.se
Mime-Version: 1.0 (Apple Message framework v936)
Date: Tue, 25 Jan 2011 10:51:53 +0000
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
Errors-To: kerberos-bounces@mit.edu

Hi,

I'm pleased to announce the availability of my GSSAPI Key Exchange  
patch for OpenSSH 5.7p1. In addition to adding support for key  
exchange, vital for enterprise users of SSH and Kerberos, it also adds  
a number of other GSSAPI related features:
    *) Cascading Credential Renewal - when enabled, credentials  
renewed on your local workstation are automatically forwarded to hosts  
which you have logged in to.
    *) Load balancer support - GSSAPI connections are now supported to  
hosts behind a round-robin DNS load balancer
    *) Multi-homed host support - GSSAPI connections can be performed  
to hosts where each interface has a unique name
    *) Identity selection - the client and server identity can be  
selected, increasing flexibility in complex authentication scenarios.

The latest version of the code is available from the git repository at
https://github.com/SimonWilkinson/gss-openssh/

Patches can be downloaded from
http://www.sxw.org.uk/computing/patches/openssh.html

The only changes in this release are those necessary for the patch to  
apply to the 5.7p1 tree.

Cheers,

Simon.

________________________________________________
Kerberos mailing list           Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos

home help back first fref pref prev next nref lref last post