review of Projects/replay_cache_collision_avoidance, ending Jan. 12

Tim Alsop Tim.Alsop at CyberSafe.com
Mon Dec 29 16:08:40 EST 2008


Tom,
The symlink is a directory. The directory name is rc
Thanks, Tim

Sent from my Windows Mobile® phone.

-----Original Message-----
From: Tom Yu <tlyu at MIT.EDU>
Sent: 29 December 2008 20:52
To: Tim Alsop <Tim.Alsop at CyberSafe.com>
Cc: jaltman at secure-endpoints.com <jaltman at secure-endpoints.com>; krbdev at mit.edu <krbdev at MIT.EDU>
Subject: Re: review of Projects/replay_cache_collision_avoidance,  ending Jan. 12


Tim Alsop <Tim.Alsop at CyberSafe.com> writes:

> The CyberSafe TrustBroker products use a replay cache file located
> in /var/tmp (symlink = /krb5/tmp/rc). The replay cache file can be
> relocated by changing the symlink after the product has been
> installed (or changing registry entry on Windows version). The
> format of the file is the same as MIT replay cache file format.  The
> KDC (TrustBroker Security Server) has an option to disable replay
> attack, and network replay detection.

Thanks, this is useful to know.  Is the symlink of a file or a
directory?




More information about the krbdev mailing list