[25077] in Kerberos

home help back first fref pref prev next nref lref last post

Re: Clarifications sought on Kerberos SA: TGS_REQ and Server Auth??

daemon@ATHENA.MIT.EDU (Surendra Babu A)
Wed Dec 7 13:40:39 2005

Date: Wed, 07 Dec 2005 18:08:09 +0530
From: Surendra Babu A <surendra.a@samsung.com>
To: "Douglas E. Engert" <deengert@anl.gov>
Message-id: <001901c5fb2b$17024f40$16466c6b@sisodomain.com>
MIME-version: 1.0
Content-Type: text/plain; charset=iso-8859-1
Content-Transfer-Encoding: 7BIT
cc: kerberos@mit.edu
Errors-To: kerberos-bounces@mit.edu

 > 
> > 2. For Server Authentication feature: if the Application Server is a Kerberised ESMTP server, how it 
> 
> should proceed? After sending the Service ticket to ESMTP server, what should happen? Could you please
> 
> let me know the Client and Applciation Server handshake and transfer machanism till Server Authentication
> 
> feature happens?
> 
> Rather then using raw Kerberos, can you use gssapi? Gss addresses many of these issues.
> 
> 
Surendra: 

1. If I use GSSAPI, how it can resolve these issues? COuld you please let me know the steps to clarify the same? Any pointers on this is appreciated very well. How Server Authentication happens with GSSAPI? How does Service Ticket transferred?

2. What kind of implamentation should be done at ESMTP client side to handle the Kerberised ESMTP Server response?


> > 
> > Please let me know your thoughts. 
> > 
> > Thank you,
> > -Surendra
> > ________________________________________________
> > Kerberos mailing list           Kerberos@mit.edu
> > https://mailman.mit.edu/mailman/listinfo/kerberos
> > 
> > 
> 
> -- 
> 
>   Douglas E. Engert  <DEEngert@anl.gov>
>   Argonne National Laboratory
>   9700 South Cass Avenue
>   Argonne, Illinois  60439
>   (630) 252-5444
> 
> 
________________________________________________
Kerberos mailing list           Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos

home help back first fref pref prev next nref lref last post