4 Apr 2005 22:31
Protocol Action: 'The Simple and Protected GSS-API Negotiation Mechanism' to Proposed Standard
The IESG <iesg-secretary <at> ietf.org>
2005-04-04 20:31:19 GMT
2005-04-04 20:31:19 GMT
The IESG has approved the following document: - 'The Simple and Protected GSS-API Negotiation Mechanism ' <draft-ietf-kitten-2478bis-05.txt> as a Proposed Standard This document is the product of the Kitten (GSS-API Next Generation) Working Group. The IESG contact persons are Sam Hartman and Russ Housley. Technical Summary This document specifies a negotiation mechanism for the Generic Security Service Application Program Interface (GSS-API) which is described in RFC 2743. GSS-API peers can use this negotiation mechanism to choose from a common set of security mechanisms. If per-message integrity services are available on the established mechanism context, then the negotiation is protected against an attacker forcing the selection of a mechanism not desired by the peers. Working Group Summary At IETF 61, a team of implementors, the WG Chair, and the AD met to validate the approach to providing security and backward compatibility. WGLC in December produced several issues which were subsequently addressed on the mailing list with clear consensus. It is the opinion of the chair that a second WGLC was not required.(Continue reading)
RSS Feed