From tlyu at MIT.EDU Wed Jan 14 19:38:13 2004 From: tlyu at MIT.EDU (Tom Yu) Date: Wed Jan 14 19:45:57 2004 Subject: MIT Kerberos for Windows 2.5 installer available Message-ID: -----BEGIN PGP SIGNED MESSAGE----- There is now an installer available for MIT Kerberos for Windows 2.5. You may download it from the MIT Kerberos distribution page, http://web.mit.edu/kerberos/dist/ The main MIT Kerberos web page is http://web.mit.edu/kerberos/ -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.0.7 (SunOS) iQCVAwUBQAXg/KbDgE/zdoE9AQFJQAP/dlpqJ6te7w1RmIWaIG5arF6i+crgA3lx gU9baRQVQHhR7IOAu+aCXBmih4UVeIh3ygHZ5z3e+vSzNc6svjPTDx9cMikze+r+ 7xpnuIGL6+aFHKsu/zCEdSi/M4K90mqqnYLe86RieDgPEG7mt1u1DxXEE3rMv5Rt 7g5VN3sZM1k= =2eYj -----END PGP SIGNATURE----- From tlyu at MIT.EDU Thu Feb 26 20:15:12 2004 From: tlyu at MIT.EDU (Tom Yu) Date: Thu Feb 26 20:16:32 2004 Subject: krb5-1.3.2 is released Message-ID: -----BEGIN PGP SIGNED MESSAGE----- The MIT Kerberos Team announces the availability of MIT Kerberos 5 Release 1.3.2. Please see below for a list of some major changes since krb5-1.3.1, or consult the README file in the source tree for a more detailed list of significant changes. RETRIEVING KERBEROS 5 RELEASE 1.3.2 =================================== You may retrieve the Kerberos 5 Release 1.3.2 source from the following URL: http://web.mit.edu/kerberos/dist/ The homepage for the krb5-1.3.2 release is: http://web.mit.edu/kerberos/krb5-1.3/ Further information about Kerberos 5 may be found at the following URL: http://web.mit.edu/kerberos/ MAJOR CHANGES SINCE RELEASE 1.3.1 ================================= * Support for AES in GSSAPI has been implemented. This corresponds to the in-progress work in the IETF (CFX). * Added a new ccache type "MSLSA:" for read-only access to the MS Windows LSA cache. * On Windows, krb5.exe now has a checkbox to request addressless tickets. * To avoid compatibility problems, unrecognized TGS options will now be ignored. * 128-bit AES has been added to the default enctypes. * AES cryptosystem now chains IVs. This WILL break backwards compatibility for the kcmd applications, if they are using AES session keys. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.0.7 (SunOS) iQCVAwUBQD6aI6bDgE/zdoE9AQH+bwQAlC2pvr+DbnYNw8NzlBAng6Hpqf3b5StJ sZDakTpcOSalnouKv5TxRjLyG9hu9kz7e1Vl1/b9BDU5ROx9yTZnIV5PSxVO8JzR QjfCM/hp1k+UeEtc81b63Thw//le4PBMc+8NM03Rmyiro4780SXKcbgyV+yF5ijD Bj8AOFxdc1A= =uPfm -----END PGP SIGNATURE----- From tlyu at MIT.EDU Tue Mar 23 16:15:38 2004 From: tlyu at MIT.EDU (Tom Yu) Date: Tue Mar 23 16:17:09 2004 Subject: MIT Kerberos for Windows 2.6 is released Message-ID: -----BEGIN PGP SIGNED MESSAGE----- The MIT Kerberos Team is pleased to announce the immediate availability of MIT Kerberos for Windows 2.6. Please consult the Release Notes file included in the distribution package for further details on changes. The distribution packages and Release Notes are available from the download link on the MIT Kerberos distribution page, http://web.mit.edu/kerberos/dist/ The main MIT Kerberos web page is http://web.mit.edu/kerberos/ What's New in Kerberos for Windows 2.6: * Leash has been turned into a System Tray application * Leash implements IP address change detection which is used in conjunction with KDC Probing to determine when ticket getting dialogs should be displayed to the end user * Leash API functions no longer display dialogs to the end user on failure * Kerberos 5 Credential Cache Name changes are now functional * aklog support for Kerberos 5 credentials has been added [-5 switch] * krb5_cc api support for accessing the Microsoft Kerberos LSA cache in read-only mode. Use a ccache name of "MSLSA:". * Kerberos 5 library updated to release 1.3.2 * KClient and GSSAPI libraries will now automatically display the Leash Obtain Ticket Getting Tickets dialog box when a request for service tickets is made and no TGTs exist. This can be disabled by defining the environment variable KERBEROSLOGIN_NEVER_PROMPT. * The Leash online help functionality has been updated. The HtmlHelp engine is now used instead of WinHelp. All content has been updated. * A new installer based on the open source NullSoft Installation System is provided. Source is provided as part of the SDK to allow for customization. * A new GSS Sample Application client has been added to the distribution which is compatible with the Unix gss-server sample service. * Improvements to the Winsock Helper Library (WSHELP32.DLL) to avoid several problems related to initializing the list of DNS servers. Whenever possible the operating system versions of resolver functions are used instead of the internal versions. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.0.7 (SunOS) iQCVAwUBQGCo/abDgE/zdoE9AQEkZAP/YYaJLnyoWQ6b0jZSb7faw2GGL3J6CeeP +p53fMU1+i7gDz2fKaNAAdqcfYUAfnSUKzTDtDjNNlHxPsKFuaEaPm79xjT4u7Xw itc/WlrMlgJMUYCSn/QiGowXrr+zVp86ueCBCyOL4DCGHhASCbz4aFn89d+BgXem z7SZzddqJZ8= =YrwR -----END PGP SIGNATURE-----