diff --git a/auth_token/client/mechanisms/krb5/README b/auth_token/client/mechanisms/krb5/README new file mode 100644 index 00000000..6b5f03b1 --- /dev/null +++ b/auth_token/client/mechanisms/krb5/README @@ -0,0 +1,30 @@ +/*********************************************************************** + * + * README for krb5mech + * + ***********************************************************************/ + +INTRODUCTION + +krb5mech is a client authentication mechanism for the support of Kerberos 5 +authentication. The mechanism leverages the services of the native Kerberos 5 +client to obtain Kerberos Tokens that can be used for authenticating an entity +to a Kerberos service. + + +SECURITY CONSIDERATIONS + +The tokens that krb5mech generates are only utilized to authenticate the client +entity to the Kerberos service, because of this, auth_token relies on SSL for +server authentication. auth_token does not leverage the capabilities of GSSAPI +for data privacy and data integrity purposes. + + + + + + + + + + diff --git a/auth_token/client/mechanisms/krb5/TODO b/auth_token/client/mechanisms/krb5/TODO new file mode 100644 index 00000000..c7b55ce1 --- /dev/null +++ b/auth_token/client/mechanisms/krb5/TODO @@ -0,0 +1,14 @@ +/*********************************************************************** + * + * TODO for krb5mech + * + ***********************************************************************/ + +INTRODUCTION + +This file contains a list of the items still outstanding for krb5mech. + +OUTSTANDING ITEMS + +- Implementation of Linux specific code. +