AFS and tokenforwarding
Dug Song
dugsong at monkey.org
Fri Oct 5 07:12:52 EST 2001
On Thu, Oct 04, 2001 at 10:59:38PM +0200, Serge Droz wrote:
> Now what do you mean by that? The server is authenticated (vi the
> server key) before the token is passed. You can't do any better (at
> least in ssh1).
that's kind of the point. it isn't real authentication, it's user
acceptance of server credentials which may actually be from a
man-in-the-middle.
> What is teh point of tokenpassing under AFS? If I have to use my afs
> password, I'll get a tokem anyway, so I won't need to pass one.
you may have tokens for multiple cells you wish to pass transparently.
-d.
---
http://www.monkey.org/~dugsong/
More information about the openssh-unix-dev
mailing list