[24953] in Kerberos

home help back first fref pref prev next nref lref last post

Re: X.509 Interop

daemon@ATHENA.MIT.EDU (Jeffrey Altman)
Thu Nov 17 02:35:45 2005

From: Jeffrey Altman <jaltman2@nyc.rr.com>
Message-ID: <SJVef.30778$u43.2018@twister.nyc.rr.com>
Date: Thu, 17 Nov 2005 06:49:22 GMT
To: kerberos@mit.edu
Errors-To: kerberos-bounces@mit.edu

rektide@gmail.com wrote:
> What is available for interop between Kerberos and X.509?  I'm not
> really sure what I'm planning yet, but I enjoy kerberos for single sign
> on, and at the same time I plan on moving many of my applications
> towards X.509.  It'd be nice to have some way to unite the two.
> 
> Regards,
> Rektide

Platforms that support the "Public Cryptography for Initial Ticket
Acquisition" standard will allow you to use your X.509 certificate
to obtain a Kerberos TGT.

The CITI group at UMichigan also has a project that allows you to
use a Kerberos service ticket to obtain an X.509 certificate with
the same lifetime as the Kerberos ticket.

Jeffrey Altman
________________________________________________
Kerberos mailing list           Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos

home help back first fref pref prev next nref lref last post