Great Circle Associates Firewalls
(November 1996)
 

Indexed By Date: [Previous] [Next] Indexed By Thread: [Previous] [Next]

Subject: Re: POP3 proxy
From: Todd Graham Lewis <lists @ reflections . mindspring . com>
Date: Thu, 7 Nov 1996 20:26:46 -0500 (EST)
To: Craig Brozefsky <cosmo @ ebs . net>
Cc: firewalls @ GreatCircle . COM
In-reply-to: <Pine . A32 . 3 . 94 . 961107174833 . 29002B-100000 @ fozzie . secapl . com>

On Thu, 7 Nov 1996, Tony Iannotti wrote:

> On Thu, 7 Nov 1996, Craig Brozefsky wrote:
> 
> > On Wed, 6 Nov 1996, Tony Iannotti wrote:
> > 
> > > > 	Encrypting & authenticating this link is a very good idea, on
> > > > top of apop.  Kerberized mail, if I remember correctly, will be
> > > > encrypted on the wire.
> > > 
> > >   I thought kerberos only did authentication, not session encryption?
> > 
> > It's broken tho.
> 
> The encryption or authentication part? How so? Pointers welcome if this is
> a faq.

I, too, am curious.  We have encrypting kerberized applications all over 
the place, all from the latest distribution.  Which part, indeed, is broken?

__
Todd Graham Lewis             Linux!                 Core Engineering
Mindspring Enterprises  tlewis @
 mindspring .
 com   (800) 719 4664, x2804


Follow-Ups:
References:
Indexed By Date Previous: Re: Plain-text passwords
From: Ron DuFresne <dufresne @ parka . winternet . com>
Next: Netbios
From: jonj @ inel . gov
Indexed By Thread Previous: Re: POP3 proxy
From: Tony Iannotti <tony @ fozzie . secapl . com>
Next: Broken Kerberos?
From: Leonard Miyata <leonard @ geminisecure . com>

Google
 
Search Internet Search www.greatcircle.com