[8059] in Kerberos

home help back first fref pref prev next nref lref last post

Re: Fw: keberos@mit.edu

daemon@ATHENA.MIT.EDU (georgesr@wrq.com)
Thu Sep 19 16:23:38 1996

Date: Thu, 19 Sep 1996 12:58:49 -0700
From: georgesr@wrq.com
To: hartmans@MIT.EDU
Cc: kerberos@MIT.EDU

Thank you Sam for your reply on the telnet questions I had. However I still 
have couple more questions

I agree that a checksum is good to enhance authentication. However at this 
time it still looks pretty week in telnet since it checksums a known value 
(i.e. two bytes) and the checksum itself is CRC32 (granted that it is 
included in the encrypted ap_req). Does this mean that future telnet 
clients can be configured to use stronger checksums (like RSA_DES_MD5)?
Also my concern (which I am dealing with anyway) is that, there are 
commercial telnetd out there that use the older stuff. And I (like others) 
have to support both versions in my clients. At this time I succeeded to 
make my telnet client work with both versions and I see the benefit of the 
newer stuff.
So in short, do you forsee new telnet authentication specs comming out in 
the near future?
Thank you again for your reply
Regards
Georges Rahbani (LFI, FAS, Chapman, GTC, ... grad.)
Reflection Secure Group
Walker Richer & Quinn, Inc.
georgesr@wrq.com

home help back first fref pref prev next nref lref last post