[38988] in Kerberos

home help back first fref pref prev next nref lref last post

Re: heimdal http proxy

daemon@ATHENA.MIT.EDU (Benjamin Kaduk)
Sun Sep 12 13:03:51 2021

Date: Sun, 12 Sep 2021 10:01:07 -0700
From: Benjamin Kaduk <kaduk@mit.edu>
To: Jeffrey Altman <jaltman@secure-endpoints.com>
Message-ID: <20210912170107.GO96301@kduck.mit.edu>
MIME-Version: 1.0
Content-Disposition: inline
In-Reply-To: <6589bffb-75be-62f3-5e3e-6c0b315dd865@secure-endpoints.com>
Cc: "kerberos@mit.edu" <kerberos@mit.edu>
Content-Type: text/plain; charset="utf-8"
Errors-To: kerberos-bounces@mit.edu
Content-Transfer-Encoding: 8bit

On Sun, Sep 12, 2021 at 07:49:57AM -0400, Jeffrey Altman wrote:
> On 9/11/2021 11:22 AM, Charles Hedrick (hedrick@rutgers.edu) wrote:
> > We don’t currently explore our Kerberos servers to the Internet, but we do have an https proxy for MIT kerberos. Heimal apparently has its own HTTP proxy. Does anyone know of software to implement the proxy?
> I believe the question that should be asked is
> 
>   "Can an https proxy client compatible with MIT Kerberos be implemented
> for Heidmal?"

My understanding is that MIT Kerberos just implemented compatibility for
Microsoft's MS-KKDCP protocol,
https://docs.microsoft.com/en-us/openspecs/windows_protocols/ms-kkdcp/5bcebb8d-b747-4ee5-9453-428aec1c5c38

-Ben
________________________________________________
Kerberos mailing list           Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos


home help back first fref pref prev next nref lref last post