Problems with Kerberos authentication over internet

Will Fiveash will.fiveash at oracle.com
Thu Jan 2 22:33:43 EST 2014


On Fri, Dec 27, 2013 at 02:31:27AM +0530, arpit.orb wrote:
>Hi,
>
>I am using Kerberos over internet by assigning a public IP to KDC. However, I have following doubts:
>
>1. Why is it that Kerberos is not deployed as preferred authentication mechanism over internet ? I understand that some reasons are vulnerability if KDC over port 88, address in tickets etc. But is there any other technical reason for which Kerberos should not be used over public network ?

Kerberos could be used over the Internet but whose going to admin that
KDC?

-- 
Will Fiveash
Oracle Solaris Software Engineer


More information about the Kerberos mailing list