[38988] in Kerberos
Re: heimdal http proxy
daemon@ATHENA.MIT.EDU (Benjamin Kaduk)
Sun Sep 12 13:03:51 2021
Date: Sun, 12 Sep 2021 10:01:07 -0700
From: Benjamin Kaduk <kaduk@mit.edu>
To: Jeffrey Altman <jaltman@secure-endpoints.com>
Message-ID: <20210912170107.GO96301@kduck.mit.edu>
MIME-Version: 1.0
Content-Disposition: inline
In-Reply-To: <6589bffb-75be-62f3-5e3e-6c0b315dd865@secure-endpoints.com>
Cc: "kerberos@mit.edu" <kerberos@mit.edu>
Content-Type: text/plain; charset="utf-8"
Errors-To: kerberos-bounces@mit.edu
Content-Transfer-Encoding: 8bit
On Sun, Sep 12, 2021 at 07:49:57AM -0400, Jeffrey Altman wrote:
> On 9/11/2021 11:22 AM, Charles Hedrick (hedrick@rutgers.edu) wrote:
> > We don’t currently explore our Kerberos servers to the Internet, but we do have an https proxy for MIT kerberos. Heimal apparently has its own HTTP proxy. Does anyone know of software to implement the proxy?
> I believe the question that should be asked is
>
> "Can an https proxy client compatible with MIT Kerberos be implemented
> for Heidmal?"
My understanding is that MIT Kerberos just implemented compatibility for
Microsoft's MS-KKDCP protocol,
https://docs.microsoft.com/en-us/openspecs/windows_protocols/ms-kkdcp/5bcebb8d-b747-4ee5-9453-428aec1c5c38
-Ben
________________________________________________
Kerberos mailing list Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos