CASA/CASA-auth-token/non-java/client/mechanisms/krb5
Juan Carlos Luciani 01b99ffc0d Making changes to remove the need for the auth.policy to contain
the mechanism information element. This change breaks the build since it
is not complete.
2006-11-03 13:35:36 +00:00
..
linux Making changes to remove the need for the auth.policy to contain 2006-11-03 13:35:36 +00:00
windows Making changes to remove the need for the auth.policy to contain 2006-11-03 13:35:36 +00:00
interface.c Adding client files lost during folder re-structuring. 2006-08-07 19:12:49 +00:00
internal.h Made modifications to switch the client to communicate with ATSs over SSL. Still need to make changes to the linux rpc.c to have all of the necessary changes completed. 2006-11-02 03:49:16 +00:00
Makefile.am Made changes necessary to build the client on windows using cygwin. 2006-11-02 04:35:33 +00:00
README Brought up to date the README and TODO files. 2006-10-10 14:47:19 +00:00
TODO Brought up to date the README and TODO files. 2006-10-10 14:47:19 +00:00
util.c Adding client files lost during folder re-structuring. 2006-08-07 19:12:49 +00:00

/***********************************************************************
 * 
 *  Copyright (C) 2006 Novell, Inc. All Rights Reserved.
 *
 *  This library is free software; you can redistribute it and/or
 *  modify it under the terms of the GNU Lesser General Public
 *  License as published by the Free Software Foundation; version 2.1
 *  of the License.
 *
 *  This library is distributed in the hope that it will be useful,
 *  but WITHOUT ANY WARRANTY; without even the implied warranty of
 *  MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the GNU
 *  Library Lesser General Public License for more details.
 *
 *  You should have received a copy of the GNU Lesser General Public
 *  License along with this library; if not, Novell, Inc.
 * 
 *  To contact Novell about this file by physical or electronic mail, 
 *  you may find current contact information at www.novell.com.
 * 
 *  Author: Juan Carlos Luciani <jluciani@novell.com>
 *
 ***********************************************************************/
/***********************************************************************
 *
 *  README for krb5mech
 *
 ***********************************************************************/

INTRODUCTION

krb5mech is a client authentication mechanism for the support of Kerberos 5
authentication. The mechanism leverages the services of the native Kerberos 5
client to obtain Kerberos Tokens that can be used for authenticating an entity
to a Kerberos service.


SECURITY CONSIDERATIONS

The tokens that krb5mech generates are only utilized to authenticate the client
entity to the Kerberos service, because of this, auth_token relies on SSL for
server authentication. auth_token does not leverage the capabilities of GSSAPI
for data privacy and data integrity purposes.