Talking with Kerberized services using GSS-API

Frank Balluffi frank.balluffi at db.com
Fri Oct 18 14:23:22 EDT 2002


Luke,

Oops! You are correct (I just checked the RFC). Now I know. Thanks.

Frank



                                                                                                                                       
                      Luke Howard                                                                                                      
                      <lukeh at PADL.COM>         To:       Frank Balluffi/NewYork/DBNA/DeuBa at DBNA                                        
                                               cc:       kenh at cmf.nrl.navy.mil, kerberos at mit.edu, kerberos-admin at mit.edu               
                      10/18/2002 02:16         Subject:  Re: Talking with Kerberized services using GSS-API                            
                      PM                                                                                                               
                      Please respond to                                                                                                
                      lukeh                                                                                                            
                                                                                                                                       
                                                                                                                                       





>To the best of my knowledge, SASL supports authentication, but not
>(application-level) encryption, whereas the GSS-API supports authentication
>and encryption (e.g., via the gss_wrap and gss_unwrap functions).

No, SASL supports both integrity and privacy.

-- Luke

--
Luke Howard | PADL Software Pty Ltd | www.padl.com




--

This e-mail may contain confidential and/or privileged information. If you are not the intended recipient (or have received this e-mail in error) please notify the sender immediately and destroy this e-mail. Any unauthorized copying, disclosure or distribution of the material in this e-mail is strictly forbidden.





More information about the Kerberos mailing list