Jacques A. Vidrine 6710968492 [Dug this out of an email I sent November 2002.]
Currently, if the AS exchange uses PA-ENC-TIMESTAMP, a Heimdal client
will transmit the AS-REQ with one PA-ENC-TIMESTAMP for every supported
encryption type.  This is bad because:

   (1) An eavesdropper collecting this information for dictionary
       attacks will have his life made easier, since he can use
       DES (rather than a stronger crypto system).
   (2) Waste of CPU cycles on client.
   (3) (Maybe) cryptanalysis is assisted by capturing ciphtertexts
       that are known to be the same plaintext encrypted with the
       same key in several algorithms (though the confounder confounds
       this).

The KDC provides the list of etypes supported in PA-ETYPE-INFO in the
KRB-ERROR reply ... let's use the first one, eh?


git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@11646 ec53bebd-3082-4978-b11e-865c3cabbd6b
2003-02-16 06:41:25 +00:00
2003-01-16 19:10:55 +00:00
2003-02-10 10:04:14 +00:00
x
2002-12-18 17:34:42 +00:00
2001-08-08 15:48:37 +00:00
x
2003-02-04 21:50:50 +00:00
2002-09-09 22:29:26 +00:00
1997-09-29 13:24:51 +00:00
2003-02-04 21:50:49 +00:00
2000-06-07 10:01:25 +00:00
2002-08-21 13:29:08 +00:00
2002-08-09 15:58:31 +00:00
2002-08-09 15:58:31 +00:00
2002-08-09 15:58:31 +00:00
1998-08-14 12:05:21 +00:00
2001-06-23 22:27:51 +00:00
2002-08-09 15:57:15 +00:00
1999-10-28 18:34:50 +00:00
2000-07-28 13:32:26 +00:00
2000-11-15 22:54:15 +00:00
2002-08-09 15:56:13 +00:00
2002-08-09 15:56:48 +00:00
x
2002-08-28 21:31:24 +00:00
2000-07-27 02:33:54 +00:00
2001-08-09 08:43:42 +00:00
2001-09-27 16:27:30 +00:00
2001-08-08 12:45:50 +00:00

$Id$

Heimdal is a Kerberos 5 implementation.

Please see the manual in doc, by default installed in
/usr/heimdal/info/heimdal.info for information on how to install.
There are also briefer man pages for most of the commands.

Bug reports and bugs are appreciated, see more under Bug reports in
the manual on how we prefer them.

For more information see the web-page at
<http://www.pdc.kth.se/heimdal/> or the mailing lists:

heimdal-announce@sics.se	low-volume announcement
heimdal-discuss@sics.se		high-volume discussion

send a mail to heimdal-announce-request@sics.se and
heimdal-discuss-request@sics.se respectively to subscribe.
Languages
C 92.1%
Roff 2.8%
Shell 2.3%
Makefile 0.7%
M4 0.5%
Other 1.4%