Auditing Feature in Kerberos

Sam Hartman hartmans at MIT.EDU
Tue Jan 24 15:16:21 EST 2006


I think that the big missing part of the current logging system that
makes it hard to use for auditing is that it does not link service
tickets that are issued by the TGS to the TGT used to issue them.

The other problem is that the format of the data cannot easily be
parsed or stored in a database.

--Sam




More information about the krbdev mailing list