shibboleth-dev - RE: Shibboleth and Kerberos Tickets
Subject: Shibboleth Developers
List archive
- From: "Scott Cantor" <>
- To: <>
- Subject: RE: Shibboleth and Kerberos Tickets
- Date: Mon, 16 Jul 2007 11:56:55 -0400
- Organization: The Ohio State University
> The proxy token is treated like a password by the applications, but the
> PAM module verifies the ticket data and checks the lifetime. If we used
> just any static attribute, that would not be secure.
Ok, but if it's a binary blob, what's the significant difference between the
original service ticket and this thing?
-- Scott
- Re: Source attributes from LDAP, (continued)
- Re: Source attributes from LDAP, Nate Klingenstein, 07/12/2007
- RE: Source attributes from LDAP, Lisa Tan, 07/12/2007
- Re: Source attributes from LDAP, Nate Klingenstein, 07/12/2007
- Re: Source attributes from LDAP, Nate Klingenstein, 07/12/2007
- Re: Shibboleth and Kerberos Tickets, Chad La Joie, 07/12/2007
- Re: Shibboleth and Kerberos Tickets, Chad La Joie, 07/13/2007
- RE: Shibboleth and Kerberos Tickets, Scott Cantor, 07/13/2007
- Re: Shibboleth and Kerberos Tickets, Shilen Patel, 07/13/2007
- RE: Shibboleth and Kerberos Tickets, Scott Cantor, 07/13/2007
- Re: Shibboleth and Kerberos Tickets, Shilen Patel, 07/16/2007
- RE: Shibboleth and Kerberos Tickets, Scott Cantor, 07/16/2007
- Re: Shibboleth and Kerberos Tickets, Shilen Patel, 07/16/2007
- RE: Shibboleth and Kerberos Tickets, Scott Cantor, 07/16/2007
- Re: Shibboleth and Kerberos Tickets, Shilen Patel, 07/16/2007
- RE: Shibboleth and Kerberos Tickets, Scott Cantor, 07/13/2007
- Re: Shibboleth and Kerberos Tickets, Shilen Patel, 07/13/2007
- Re: Shibboleth and Kerberos Tickets, RL 'Bob' Morgan, 07/19/2007
Archive powered by MHonArc 2.6.16.