[OpenAFS] kerberos 5 encryption types status

Matt W. Benjamin matt@linuxbox.com
Tue, 12 Jan 2010 17:47:18 -0500 (EST)


Hi,

Interested folks are welcome to try rxk5 in its current form.  Feel free to email me or Marcus if this would be helpful to you.

Regards,

Matt

----- "Russ Allbery" <rra@stanford.edu> wrote:

> Jack Neely <jjneely@pams.ncsu.edu> writes:
> 
> > I'm researching upgrading our aging (1.2) Kerberos 5 infrastructure
> to
> > 1.6.  I'm attempting to figure out how the upgrade and new
> encryption
> > types would affect our AFS deployment.  Russ's email from 2007 was
> > helpful in this:
> 
> >    
> http://www.openafs.org/pipermail/openafs-info/2007-March/025509.html
> 
> > Do the current versions of OpenAFS (1.4.7 and mostly 1.4.11) still
> only
> > support des-cbc-crc for their service principles?  
> 
> Yes.  Changing this would likely warrant a 2.0 release of OpenAFS.
> 
> > What encryption types are supported with rxk5?
> 
> Either rxk5 or rxgk would support any encryption types supported by
> the
> underlying Kerberos implementation.
> 
> -- 
> Russ Allbery (rra@stanford.edu)            
> <http://www.eyrie.org/~eagle/>
> _______________________________________________
> OpenAFS-info mailing list
> OpenAFS-info@openafs.org
> https://lists.openafs.org/mailman/listinfo/openafs-info

-- 

Matt Benjamin

The Linux Box
206 South Fifth Ave. Suite 150
Ann Arbor, MI  48104

http://linuxbox.com

tel. 734-761-4689
fax. 734-769-8938
cel. 734-216-5309