MIT Kerberos for Windows 2.6.4 is released

Tom Yu tlyu at MIT.EDU
Wed Jul 14 17:03:10 EDT 2004


-----BEGIN PGP SIGNED MESSAGE-----

The MIT Kerberos Team announces the availability of MIT Kerberos for
Windows 2.6.4.

The distribution packages and Release Notes are available from the
download link on the MIT Kerberos distribution page,

         http://web.mit.edu/kerberos/dist/

The main MIT Kerberos web page is

         http://web.mit.edu/kerberos/

MIT Kerberos for Windows 2.6.4 is a bug fix release containing the
following changes:

* Solve problem in MSLSA: ccache which would result in premature
  process termination on non-English versions of Windows if
  Kerberos credentials were not available from LSA credential
  manager.

* Apply automatic import restrictions from the MSLSA credentials
  cache to the GSSAPI acquire credentials when necessary code.

* Kerberos 5 library updated to release 1.3.4.  See the Kerberos 5
  README file for details of the changes in the Kerberos 5 version
  1.3.4 distribution.

* The Microsoft LSA Cache since its release has suffered from two
  deficiencies:

        (1) the KERB_EXTERNAL_TICKET does not provide a field
            containing the Client Principal's Realm; and

        (2) the LSA will not cache tickets if either a specific set of
            ticket flags or encryption types are specified.

  Microsoft will soon be making available via PSS a fix for Windows XP
  and Windows 2003 which will allow KFW to properly determine the
  Client Principal's Realm for all tickets in the LSA cache and
  instruct the LSA to cache all tickets obtained via the MSLSA:
  krb5_ccache interface.  KFW 2.6.4 Beta 2 contains the code necessary
  to recognize that the fix has been installed and do the right thing
  to take advantage of this new (corrected) functionality.

* a minor fix to the SDK

* a change to the installer to support XP SP2 compatibility

* a fix to the MSLSA to further reduce the number of queries sent to the KDC

* Installer modified to create Terminal Server application
  compatibility registry entries

* leash extended dialog functions corrected to properly implement
  forward compatibility

MIT requests that all organizations which are distributing Kerberos for
Windows update to this release.
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.0.7 (SunOS)

iQCVAwUBQPWfnqbDgE/zdoE9AQGOnAQAiP7Vd+lpMu81mpFA5WlC16xbsuXB1sjW
GKJ0xdsjqpsNoPvWxpIXJF/sM8sAUTOV3edf6Ih046aO3gWaathJ9EOCpvlhXa7k
9R6DOG+UNESCeZB/pXXxhSdoL2B1uqUYLPfl52SRZOsO5tI4p+uR/lzu0RH3L34k
ITAuY1hxhlI=
=KJuX
-----END PGP SIGNATURE-----
_______________________________________________
kerberos-announce mailing list
kerberos-announce at mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos-announce


More information about the Kerberos mailing list