Skip site navigation (1)Skip section navigation (2)
Date:      Wed, 22 Aug 2001 17:41:57 +0100
From:      Dave Ryan <dave.ryan@eircom.net>
To:        freebsd-security@FreeBSD.ORG
Subject:   kerberosV - SecurID
Message-ID:  <20010822174157.A28071@alpha.eng.eircom.net>
In-Reply-To: <200108221628.f7MGSud60744@khavrinen.lcs.mit.edu>; from wollman@khavrinen.lcs.mit.edu on Wed, Aug 22, 2001 at 12:28:56PM -0400
References:  <3B83A8BC.BCF790A0@karolinelund.dk> <20010822140020.A1911@alpha.eng.eircom.net> <200108221628.f7MGSud60744@khavrinen.lcs.mit.edu>

next in thread | previous in thread | raw e-mail | index | archive | help
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Does anyone know if RSA Securid OTP's are used anywhere to enhance the ticket
granting phase of a kerberos authentication sequence?

e.g.

A user is challeneged for their username, password and/or PASSCODE, which is
then passed onto the KDC, which then talks to an RSA ACE Agent which validates
the autenticity of the user based on the credentials supplied. The user is
then given a token etc. 

...

Anyone got any ideas about that? Its been suggested to me to look into the
ietf workings around hardware pre authentication. I have seen references for
securid support in IV, and I think in a dated version developed by cygnus
a while back - I could be wrong.

Regards,
Dave.

- -- 
Dave Ryan		Computer Incident Response Team	
dave.ryan@eircom.net	Eircom Multimedia
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.0.6 (OpenBSD)
Comment: For info see http://www.gnupg.org

iEYEARECAAYFAjuD4NIACgkQHSjBCI+q2yIlUQCaAtM+uO7qLjKvOGmUHB8Bhqfg
yS0AniMUs3/hBARI8Fq1UsabcX087/8W
=P0yh
-----END PGP SIGNATURE-----

To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-security" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20010822174157.A28071>