ad-assurance - Re: [AD-Assurance] NTLMv2 and Kerberos with RC4-HMAC
Subject: Meeting the InCommon Assurance profile criteria using Active Directory
List archive
- From: David Walker <>
- To:
- Cc: DHW <>
- Subject: Re: [AD-Assurance] NTLMv2 and Kerberos with RC4-HMAC
- Date: Mon, 20 May 2013 09:26:25 -0700
- Authentication-results: sfpop-ironport04.merit.edu; dkim=pass (signature verified)
It occurs to me that we don't have the following IAP section in our table:4.2.5.3 (S) (B) SECURE COMMUNICATION Communication between Subject and IdP must use a Protected Channel. I believe this is intended to address communication of authentication secrets, particularly when combined with 4.2.5.1 and 4.2.5.2, but it doesn't actually say that. I suppose this could be an alternative means proposal (to say that a protected channel isn't required unless an authentication secret is being transmitted), or we could simply state it as our interpretation. Ann, what do you think? David On Mon, 2013-05-20 at 09:13 -0700, David Walker wrote: Thanks, Brian. I decided to remove the sentence. |
- [AD-Assurance] NTLMv2 and Kerberos with RC4-HMAC, David Walker, 05/17/2013
- RE: [AD-Assurance] NTLMv2 and Kerberos with RC4-HMAC, Brian Arkills, 05/20/2013
- Re: [AD-Assurance] NTLMv2 and Kerberos with RC4-HMAC, David Walker, 05/20/2013
- Re: [AD-Assurance] NTLMv2 and Kerberos with RC4-HMAC, David Walker, 05/20/2013
- RE: [AD-Assurance] NTLMv2 and Kerberos with RC4-HMAC, Eric Goodman, 05/20/2013
- Re: [AD-Assurance] NTLMv2 and Kerberos with RC4-HMAC, David Walker, 05/20/2013
- RE: [AD-Assurance] NTLMv2 and Kerberos with RC4-HMAC, Michael W. Brogan, 05/20/2013
- RE: [AD-Assurance] NTLMv2 and Kerberos with RC4-HMAC, Eric Goodman, 05/20/2013
- Re: [AD-Assurance] NTLMv2 and Kerberos with RC4-HMAC, David Walker, 05/20/2013
- RE: [AD-Assurance] NTLMv2 and Kerberos with RC4-HMAC, Capehart,Jeffrey D, 05/20/2013
- Re: [AD-Assurance] NTLMv2 and Kerberos with RC4-HMAC, David Walker, 05/20/2013
- RE: [AD-Assurance] NTLMv2 and Kerberos with RC4-HMAC, Capehart,Jeffrey D, 05/20/2013
- Re: [AD-Assurance] NTLMv2 and Kerberos with RC4-HMAC, David Walker, 05/20/2013
- Re: [AD-Assurance] NTLMv2 and Kerberos with RC4-HMAC, David Walker, 05/20/2013
- RE: [AD-Assurance] NTLMv2 and Kerberos with RC4-HMAC, Brian Arkills, 05/20/2013
Archive powered by MHonArc 2.6.16.