AFS and tokenforwarding

Dug Song dugsong at monkey.org
Fri Oct 5 07:12:52 EST 2001


On Thu, Oct 04, 2001 at 10:59:38PM +0200, Serge Droz wrote:

> Now what do you mean by that?  The server is authenticated (vi the
> server key) before the token is passed.  You can't do any better (at
> least in ssh1).

that's kind of the point. it isn't real authentication, it's user
acceptance of server credentials which may actually be from a
man-in-the-middle.

> What is teh point of tokenpassing under AFS? If I have to use my afs
> password, I'll get a tokem anyway, so I won't need to pass one.

you may have tokens for multiple cells you wish to pass transparently.

-d.

---
http://www.monkey.org/~dugsong/



More information about the openssh-unix-dev mailing list