IETF RFC 6113 PDF

IETF RFC 6113 PDF

Name:
IETF RFC 6113 PDF

Published Date:
04/01/2011

Status:
[ Active ]

Description:

A Generalized Framework for Kerberos Pre-Authentication

Publisher:
Internet Engineering Task Force

Document status:
Active

Format:
Electronic (PDF)

Delivery time:
10 minutes

Delivery time (for Czech version):
200 business days

SKU:
ietf-rfc-6113_2876364

Choose Document Language:
14.40 €
Need Help?

Kerberos is a protocol for verifying the identity of principals (e.g., a workstation user or a network server) on an open network. The Kerberos protocol provides a facility called pre-authentication. Pre-authentication mechanisms can use this facility to extend the Kerberos protocol and prove the identity of a principal.

This document describes a more formal model for this facility. The model describes what state in the Kerberos request a preauthentication mechanism is likely to change. It also describes how multiple pre-authentication mechanisms used in the same request will interact.

This document also provides common tools needed by multiple pre-authentication mechanisms. One of these tools is a secure channel between the client and the key distribution center with a reply key strengthening mechanism; this secure channel can be used to protect the authentication exchange and thus eliminate offline dictionary attacks. With these tools, it is relatively straightforward to chain multiple authentication mechanisms, utilize a different key management system, or support a new key agreement algorithm.


Edition : 11
File Size : 1 file , 79 KB
Number of Pages : 48
Published : 04/01/2011

History


Related products

IETF RFC 1000
Published Date: 08/01/1987
The Request for Comments Reference Guide
21.00 €
IETF RFC 4560
Published Date: 06/01/2006
Definitions of Managed Objects for Remote Ping, Traceroute, and Lookup Operations
19.80 €

Best-Selling Products