Kerberos vs. LDAP for authentication -- any opinions?

Garrett Wollman wollman at lcs.mit.edu
Thu Jan 29 21:41:00 EST 2004


In article <86y8rqpasv.fsf at number6.magda.ca>,
David Magda  <dmagda+trace040127 at ee.ryerson.ca> wrote:

>And what prevents a Kerberos server from being compromised? Any
>system can have a root-kit installed on it.

The fact that nobody has access to it (assuming it was competently
installed).

-GAWollman

-- 
Garrett A. Wollman   | As the Constitution endures, persons in every
wollman at lcs.mit.edu  | generation can invoke its principles in their own
Opinions not those of| search for greater freedom.
MIT, LCS, CRS, or NSA| - A. Kennedy, Lawrence v. Texas, 539 U.S. ___ (2003)


More information about the Kerberos mailing list