[8059] in Kerberos
Re: Fw: keberos@mit.edu
daemon@ATHENA.MIT.EDU (georgesr@wrq.com)
Thu Sep 19 16:23:38 1996
Date: Thu, 19 Sep 1996 12:58:49 -0700
From: georgesr@wrq.com
To: hartmans@MIT.EDU
Cc: kerberos@MIT.EDU
Thank you Sam for your reply on the telnet questions I had. However I still
have couple more questions
I agree that a checksum is good to enhance authentication. However at this
time it still looks pretty week in telnet since it checksums a known value
(i.e. two bytes) and the checksum itself is CRC32 (granted that it is
included in the encrypted ap_req). Does this mean that future telnet
clients can be configured to use stronger checksums (like RSA_DES_MD5)?
Also my concern (which I am dealing with anyway) is that, there are
commercial telnetd out there that use the older stuff. And I (like others)
have to support both versions in my clients. At this time I succeeded to
make my telnet client work with both versions and I see the benefit of the
newer stuff.
So in short, do you forsee new telnet authentication specs comming out in
the near future?
Thank you again for your reply
Regards
Georges Rahbani (LFI, FAS, Chapman, GTC, ... grad.)
Reflection Secure Group
Walker Richer & Quinn, Inc.
georgesr@wrq.com