Forwarding Kerberos Credentials - SSH

Jeffrey Altman jaltman at columbia.edu
Fri Jun 20 22:19:39 EDT 2003


In article <p0521060bbb1902beb3a0@[137.78.212.225]>,
Henry B. Hotz <hotz at jpl.nasa.gov> wrote:
: "Me Too" (TM)
: 
: So, is that possible?
: 
: Ideally, is it possible in an application that only talks generic 
: SSL, so that it could in turn call a module that made use of the tgt? 
: (The thread is sshd, but I'm thinking maybe 
: Apache/{PHP,Perl}/{Postgres,AFS}.)

The TLS KRB5 cipher does not support credential forwarding.

SSH and TLS (aka SSL 3.1) are completely different and incompatible
protocols which are used for different purposes.

Jeffrey Altman

-- 
 Jeffrey Altman * Volunteer Developer      Kermit 95 2.1 GUI available now!!!
 The Kermit Project @ Columbia University  SSH, Secure Telnet, Secure FTP, HTTP
 http://www.kermit-project.org/            Secured with MIT Kerberos, SRP, and 
 kermit-support at columbia.edu               OpenSSL.


More information about the Kerberos mailing list