[2719] in Kerberos
Re: Kerberized ftp with encryption option available.
daemon@ATHENA.MIT.EDU (Ruixi Yuan)
Wed Jun 2 17:28:02 1993
Date: Wed, 2 Jun 93 16:05:43 CDT
From: yuan@syl.dl.nec.com (Ruixi Yuan)
To: lunt@ctt.bellcore.com
Cc: cat-ietf@mit.edu, kerberos@Athena.MIT.EDU
>Ruixi,
> I have been working on an Internet standard
>which defines extensions to the FTP protocol which
>provide integrity and confidentiality on both the
>control and data channels. I have also implemented
>this using BSD ftp/ftpd and Kerberos Version 4.
>The intent is to introduce Kerberos Version 5 by means
>of the GSSAPI.
>
> See the file draft-ietf-cat-ftpsec-01.txt
>on nnsc.nsf.net in the internet-drafts directory.
>Also, the code and documentation is available via
>anonymous FTP from thumper.bellcore.com in /pub/lunt.
>The working group mailing list is cat-ietf@mit.edu.
>Comments are appreciated.
>
>-- Steve
>
>Steven J. Lunt lunt@bellcore.com
>Information Technology Security RRC 1L-213
>Bellcore 444 Hoes Lane
>(908) 699-4244 Piscataway, NJ 08854
>
Steve:
I have ftped and read your internet draft on the FTP security
extensions. I think the proposed extensions address most of
of the security needs. Two minor comments are:
- Sometimes, there is no clear separation between authentication
and authorization. Thus the commands AUTH, ADAT, USER PASS
maybe organized in a different manner to address it.
- On the encryption of ascii text, is it possible to have some
buffering scheme to avoid encoding each charactor individully?
BTW, how do I subscribe the mailing list cat-ietf@mit.edu?
Regards,
--- Ruixi
==========================================================
Ruixi Yuan yuan@syl.dl.nec.com
NEC Systems Lab. (214)518-3585(voice)
1901 Gateway Drive (214)518-3552(fax)
Irving, TX 75038