Re: file-based credentials vs memory-based credentials

2010-01-25 Thread Love Hörnquist Åstrand
Hello, > I sometimes hears than kerberos 5 security is lowered by the use of file > based credentials, whereas kerberos 4 was using shared memory instead, > making much more difficult to an admin (for instance) to retrieve a > valid user ticket. kth-krb never had shared memory credentials, dun

Re: file-based credentials vs memory-based credentials

2010-01-20 Thread Ken Raeburn
On Jan 20, 2010, at 07:35, Guillaume Rousse wrote: > I sometimes hears than kerberos 5 security is lowered by the use of > file > based credentials, whereas kerberos 4 was using shared memory instead, > making much more difficult to an admin (for instance) to retrieve a > valid user ticket. Depe

file-based credentials vs memory-based credentials

2010-01-20 Thread Guillaume Rousse
Hello. I sometimes hears than kerberos 5 security is lowered by the use of file based credentials, whereas kerberos 4 was using shared memory instead, making much more difficult to an admin (for instance) to retrieve a valid user ticket. I know an admin user can scan the memory for a user tick