RFC 4120:The Kerberos Network Authentication Servi...
RFC-Ref

version


Click on the red underlined text to get to the source

... Kerberos network authentication system is based. It also specifies Version 5 of the Kerberos protocol. The motivations, goals, assumptions, and rationale behind most design decisions are treated ...
... system administrator, or application developer. Higher-level papers describing Version 5 of the Kerberos system [NT94] and documenting ...
... Kerberos system [NT94] and documenting version 4 [SNS88] are available elsewhere. ...
... DS81]. The original design and implementation of Kerberos Versions 1 through 4 was the work of two former Project Athena staff members, Steve Miller of Digital Equipment Corporation and Clifford Neuman (now at the ...
... Kerberos. Version 5 of the Kerberos protocol (described in this document) has evolved because of new requirements ...
... evolved because of new requirements and desires for features not available in Version 4. The design of Version 5 was led by Clifford Neuman and John Kohl with much input from the community. The ...
... requirements and desires for features not available in Version 4. The design of Version 5 was led by Clifford Neuman and John Kohl with much input from the community. The development of the MIT ...
... effort, the document cites the contribution of the proposer. Reference implementations of both Version 4 and Version 5 of Kerberos ...
... Reference implementations of both Version 4 and Version 5 of Kerberos are publicly available, and commercial implementations have been ...
... are publicly available, and commercial implementations have been developed and are widely used. Details on the differences between Versions 4 and 5 can be found in [KNT94]. ...
... fields often results in the entire message being discarded without an error indication. Future versions of this specification will provide guidelines to ensure that ASN.1 fields can be added without creating ...
... dog that guards Hades. Key Version Number (kvno) A tag ...


... client cannot detect replays, fabrications, or modifications. A solution to this problem will be included in a future version of the protocol. ...
... KRB_AP_ERR_MSG_TYPE error. If the key version indicated by the Ticket in the KRB_AP_REQ is not one the server can use (e.g., it ...
... doesn't have the proper key to decipher the ticket. The ticket is decrypted using the version of the server's key specified by the ticket. If the decryption routines detect a ...
... Note that in the Kerberos Version 4 protocol, the timestamp in the reply was the client ...
... client's timestamp plus one. This is not necessary in Version 5 because Version 5 messages are formatted in such a way that it is not possible to create ...
... timestamp plus one. This is not necessary in Version 5 because Version 5 messages are formatted in such a way that it is not possible to create the reply by judicious message surgery ...
... secret key. Furthermore, the client's key's expiration date and the key version number fields are left out since these values are stored along with the client's database ...
... the application. The message is first checked by verifying that the protocol version and type fields match the current version ...
... version and type fields match the current version and KRB_SAFE, respectively. A mismatch generates a KRB_AP_ERR ...
... the application. The message is first checked by verifying that the protocol version and type fields match the current version ...
... version and type fields match the current version and KRB_PRIV, respectively. A mismatch generates a KRB_AP_ERR ...
... DES session key. Starting at version 1.2.5, MIT Kerberos ...
... error code is reported for use by the application. The message is verified by checking that the protocol version and type fields match the current version and KRB_CRED, ...
... version and type fields match the current version and KRB_CRED, respectively. A mismatch generates a KRB_AP_ERR ...


... ISO-646/ECMA-6 [ISO-646/ECMA-6] International Reference Version (IRV) (a.k.a. U.S. ASCII), which mostly works. ...
... Although this results in changes to the abstract types from the RFC 1510prop(-> 4120prop) version, the encoding in DER should be unaltered. Historical ...
... the constant integer 5. There is no easy way to make this field into a useful protocol version number, so its value is fixed. msg-type ...
... databases from Kerberos Version 4. A KDC ...
... kvno This field contains the version number of the key under which data is encrypted. It is only present in messages encrypted ...
... tkt-vno This field specifies the version number for the ticket format. This document describes version number 5. ...
... This field specifies the version number for the ticket format. This document describes version number 5. realm ...
... pvno This field is included in each message, and specifies the protocol version number. This document specifies protocol version 5. ...
... This field is included in each message, and specifies the protocol version number. This document specifies protocol version 5. msg-type ...
... Note that in KRB_TGS_REQ, the protocol version number appears twice and two different message types appear: the KRB_TGS ...
... secret key, and the client's key version number is included in the key version number for the encrypted data ...
... client's key version number is included in the key version number for the encrypted data. For KRB_TGS ...
... session key from the TGT used in the request. In that case, no version number will be present in the EncryptedData sequence. ...
... The KRB_AP_REQ message contains the Kerberos protocol version number, the message type KRB_AP ...
... authenticator-vno This field specifies the version number for the format of the authenticator. This document specifies version ...
... version number for the format of the authenticator. This document specifies version 5. crealm and cname ...
... The KRB_AP_REP message contains the Kerberos protocol version number, the message type, and an encrypted ...


... protocols. 22-25. Reserved for use in the Kerberos Version 5 GSS-API mechanisms [RFC4121 ...
... Protocol Version Number ...
... pvno 5 Current Kerberos protocol version number ...
... KDC_ERR_BAD_PVNO 3 Requested protocol version number not supported KDC ...
... KRB_AP_ERR_BADVERSION 39 Protocol version mismatch KRB_AP_ERR ...
... KRB_AP_ERR_BADKEYVER 44 Specified version of key is not available KRB_AP ...


... Version 5 of the Kerberos protocol supports a myriad of options. Among these are multiple encryption ...
... Implementations which are configured in this way can be said to support Kerberos Version 5 Specification 2 (5.2). Specification 1 (deprecated) may be found in RFC 1510prop(-> 4120prop). ...


... Hinden, R. and S. Deering, "Internet Protocol Version 6 (IPv6) Addressing Architecture ...


... Linn, J., "The Kerberos Version 5 GSS-API Mechanism", RFC 1964prop, June 1996. ...
... Zhu, L., Jaganathan, K., and S. Hartman, "The Kerberos Version 5 Generic Security Service Application Program Interface (GSS-API) Mechanism: Version 2 ...
... Version 5 Generic Security Service Application Program Interface (GSS-API) Mechanism: Version 2", RFC 4121prop, July 2005. ...



Google
Web
RFC-Ref