CASA/CASA-auth-token/non-java/client/mechanisms/krb5
2006-11-02 04:35:33 +00:00
..
linux Fixed all of the compiler warnings for the client components. 2006-10-06 20:13:14 +00:00
windows Made changes necessary to build the client on windows using cygwin. 2006-11-02 04:35:33 +00:00
interface.c Adding client files lost during folder re-structuring. 2006-08-07 19:12:49 +00:00
internal.h Made modifications to switch the client to communicate with ATSs over SSL. Still need to make changes to the linux rpc.c to have all of the necessary changes completed. 2006-11-02 03:49:16 +00:00
Makefile.am Made changes necessary to build the client on windows using cygwin. 2006-11-02 04:35:33 +00:00
README Brought up to date the README and TODO files. 2006-10-10 14:47:19 +00:00
TODO Brought up to date the README and TODO files. 2006-10-10 14:47:19 +00:00
util.c Adding client files lost during folder re-structuring. 2006-08-07 19:12:49 +00:00

/***********************************************************************
 * 
 *  Copyright (C) 2006 Novell, Inc. All Rights Reserved.
 *
 *  This library is free software; you can redistribute it and/or
 *  modify it under the terms of the GNU Lesser General Public
 *  License as published by the Free Software Foundation; version 2.1
 *  of the License.
 *
 *  This library is distributed in the hope that it will be useful,
 *  but WITHOUT ANY WARRANTY; without even the implied warranty of
 *  MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the GNU
 *  Library Lesser General Public License for more details.
 *
 *  You should have received a copy of the GNU Lesser General Public
 *  License along with this library; if not, Novell, Inc.
 * 
 *  To contact Novell about this file by physical or electronic mail, 
 *  you may find current contact information at www.novell.com.
 * 
 *  Author: Juan Carlos Luciani <jluciani@novell.com>
 *
 ***********************************************************************/
/***********************************************************************
 *
 *  README for krb5mech
 *
 ***********************************************************************/

INTRODUCTION

krb5mech is a client authentication mechanism for the support of Kerberos 5
authentication. The mechanism leverages the services of the native Kerberos 5
client to obtain Kerberos Tokens that can be used for authenticating an entity
to a Kerberos service.


SECURITY CONSIDERATIONS

The tokens that krb5mech generates are only utilized to authenticate the client
entity to the Kerberos service, because of this, auth_token relies on SSL for
server authentication. auth_token does not leverage the capabilities of GSSAPI
for data privacy and data integrity purposes.