Date: Wed, 22 Aug 2001 17:41:57 +0100 From: Dave Ryan <dave.ryan@eircom.net> To: freebsd-security@FreeBSD.ORG Subject: kerberosV - SecurID Message-ID: <20010822174157.A28071@alpha.eng.eircom.net> In-Reply-To: <200108221628.f7MGSud60744@khavrinen.lcs.mit.edu>; from wollman@khavrinen.lcs.mit.edu on Wed, Aug 22, 2001 at 12:28:56PM -0400 References: <3B83A8BC.BCF790A0@karolinelund.dk> <20010822140020.A1911@alpha.eng.eircom.net> <200108221628.f7MGSud60744@khavrinen.lcs.mit.edu>
next in thread | previous in thread | raw e-mail | index | archive | help
-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Does anyone know if RSA Securid OTP's are used anywhere to enhance the ticket granting phase of a kerberos authentication sequence? e.g. A user is challeneged for their username, password and/or PASSCODE, which is then passed onto the KDC, which then talks to an RSA ACE Agent which validates the autenticity of the user based on the credentials supplied. The user is then given a token etc. ... Anyone got any ideas about that? Its been suggested to me to look into the ietf workings around hardware pre authentication. I have seen references for securid support in IV, and I think in a dated version developed by cygnus a while back - I could be wrong. Regards, Dave. - -- Dave Ryan Computer Incident Response Team dave.ryan@eircom.net Eircom Multimedia -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.0.6 (OpenBSD) Comment: For info see http://www.gnupg.org iEYEARECAAYFAjuD4NIACgkQHSjBCI+q2yIlUQCaAtM+uO7qLjKvOGmUHB8Bhqfg yS0AniMUs3/hBARI8Fq1UsabcX087/8W =P0yh -----END PGP SIGNATURE----- To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-security" in the body of the message
Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20010822174157.A28071>