krb5 & OTP or challange based auth

Mihai RUSU dizzy at roedu.net
Fri Mar 19 02:31:28 EST 2004


On Thu, 18 Mar 2004, Sam Hartman wrote:

> Yes the protocol supports it and MIT Kerberos clients implement this
> part of the protocol.  Our KDC does not really support this feature
> though.
> 
> But you could write code to implement

Cool, then at least I dont have to change the protocol and be incompatible 
with the rest of the world :)

Could you direct me first to some document/RFC that describes this method 
of the server sending the client a text to display ? (to get some 
background first). Then if you could tell me what kerberos library 
functions are involved with this and where in the codes of the KDC should 
I start to look into doing this ?

Thanks!

PS: my changes/patches if any will be open source

-- 
Mihai RUSU                                    Email: dizzy at roedu.net
GPG : http://dizzy.roedu.net/dizzy-gpg.txt    WWW: http://dizzy.roedu.net
                       "Linux is obsolete" -- AST


More information about the Kerberos mailing list