RE: SASL authentication

2009-03-18 Thread Xu, Qiang (FXSGSC)
> -Original Message- > From: kerberos-boun...@mit.edu > [mailto:kerberos-boun...@mit.edu] On Behalf Of Michael Str?der > Sent: Wednesday, March 18, 2009 2:34 PM > To: kerberos@mit.edu > Subject: Re: SASL authentication > > Did you try command-line option -A when invoking kinit as I > sug

Re: Training courses

2009-03-18 Thread Dax Kelson
On Wed, 2009-03-18 at 21:14 -0400, Bill Heese wrote: > Sorry If this topic has been covered.. I recently ran across an issue with > Kerberos that was beyond my teams capabilities. > > Can anyone recommend a solid Kerberos based training course? It doesn't have > to be platform specific... We're ru

Re: Java app as Windows Service w/JGSS+Kerberos - should it work?

2009-03-18 Thread Chris
On Mar 11, 5:08 pm, Chris wrote: > I know this is a fairly specific configuration but I'm hoping someone > may have some experience to offer - have you been able to get a GSS- > API-enabled Java server application running as a Windows Service with > a local KeyTab file? If you have gotten this to

Training courses

2009-03-18 Thread Bill Heese
Sorry If this topic has been covered.. I recently ran across an issue with Kerberos that was beyond my teams capabilities. Can anyone recommend a solid Kerberos based training course? It doesn't have to be platform specific... We're running it on OSX 10.5. Thanks Bill _

RE: [Mitkc-web] Kerberos in Browser based Applications

2009-03-18 Thread Karp, Alan H
Security depends on where you put the token. If the URL is guessable, you're subject to clickjacking. See http://www.hpl.hp.com/techreports/2009/HPL-2009-20.html. Alan Karp Principal Scientist Virus Safe Computing Initiative Hewlett-Packard Laboratories 1501 Page Mill

Re: SASL authentication

2009-03-18 Thread Michael Ströder
Xu, Qiang (FXSGSC) wrote: >> -Original Message- >> From: kerberos-boun...@mit.edu >> [mailto:kerberos-boun...@mit.edu] On Behalf Of Michael Str?der >> Sent: Tuesday, March 17, 2009 8:20 PM >> To: kerberos@mit.edu >> Subject: Re: SASL authentication >> >> First try to do a kinit with provid

RE: SASL authentication

2009-03-18 Thread Xu, Qiang (FXSGSC)
> -Original Message- > From: kerberos-boun...@mit.edu > [mailto:kerberos-boun...@mit.edu] On Behalf Of Michael Str?der > Sent: Tuesday, March 17, 2009 8:20 PM > To: kerberos@mit.edu > Subject: Re: SASL authentication > > First try to do a kinit with providing the password. After > that y