Skip site navigation (1)Skip section navigation (2)
Date:      Wed, 22 Aug 2001 12:28:56 -0400 (EDT)
From:      Garrett Wollman <wollman@khavrinen.lcs.mit.edu>
To:        Dave Ryan <dave.ryan@eircom.net>
Cc:        freebsd-security@FreeBSD.ORG
Subject:   Re: kerberosIV
Message-ID:  <200108221628.f7MGSud60744@khavrinen.lcs.mit.edu>
In-Reply-To: <20010822140020.A1911@alpha.eng.eircom.net>
References:  <3B83A8BC.BCF790A0@karolinelund.dk> <20010822140020.A1911@alpha.eng.eircom.net>

next in thread | previous in thread | raw e-mail | index | archive | help
<<On Wed, 22 Aug 2001 14:00:20 +0100, Dave Ryan <dave.ryan@eircom.net> said:

> There is quite a bit of documentation for KerberosV and its quite easy to
> setup, I would suggest moving to that if you have no specific reason for
> using kerberosIV. Heimdal is in the ports.

Furthermore, there are substantial weaknesses in the v4 protocol which
are fixed in v5.  Unless there is a need to be backward-compatible
at an existing site, v4 should never be installed (not even the v5
code in v4-compatibility mode).

-GAWollman


To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-security" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?200108221628.f7MGSud60744>