[2690] in Kerberos

home help back first fref pref prev next nref lref last post

"Final" version of Kerberos V5 Spec now available

daemon@ATHENA.MIT.EDU (Clifford Neuman)
Wed Apr 21 14:58:24 1993

Date: Wed, 21 Apr 93 11:52:53 PDT
From: Clifford Neuman <bcn@ISI.EDU>
From: Clifford Neuman <bcn@ISI.EDU>
To: cat-ietf@MIT.EDU, kerberos@MIT.EDU, krb-protocol@MIT.EDU, ietf-aac@ISI.EDU

The final version of the Kerberos V5 protocol spec (revision 5.2) is
available from prospero.isi.edu with the pathname:

     /pub/papers/security/kerberos-5.2.{ps.Z,lpt.Z} 

There have been no changes to previously specified portions of the
protocol.  Wording has been clarified, and missing pseudocode has been
added.  We have specified the encrypted timestamp pre-authentication
method and have defined a new protocol message KRB_CRED to be used to
pass proxies or forwarded tickets to remote hosts.  This latter change
provides a well defined procedure so that applications will do it
correctly.  Note that the format of the KRB_CRED message has changed
from that in the pre-release of specification 5.2).

This specification has been submitted and will appear as an internet
draft shortly.  The specification will at that point be submitted for
publication as an RFC, together with other documents developed in the
CAT working group.  Although I expect this is the final version that
will appear as an internet draft, it may be possible to make minor
changes during final editing as an RFC.  As such, please let us know if
you discover any problems.  Thanks,

Clifford Neuman

home help back first fref pref prev next nref lref last post