libcats.org
Главная

Kerberos: The Definitive Guide

Обложка книги Kerberos: The Definitive Guide

Kerberos: The Definitive Guide

First I would like to justify my 5 star rating. This book helped me out of a nasty multi-homed host and DNS problem when no other source could. Without this book I would have been troubleshooting this issue for days. I feel the book has paid for itself.



However, I wouldn't consider this "The Definitive Guide." It lacks documentation on the krb5.conf configuration file. I found myself referencing the krb5.conf(5) man page for additional info. Also, the documentation that comes with Heimdal is a very good good source for configuration settings.



Another deficiency is the GSSAPI coverage. I did have some trouble setting up my GSSAPI aware SSH with Kerberos. I found myself digging through the ssh man pages and doing some trial and error. Chapter 7 discusses Kerberos enabled applications. SSH is covered there, but I felt the GSSAPI aspect was lacking. Although the author mentions that GSSAPI is not specific to any authentication method and is somewhat out of place in a Kerberos book, I feel this is where the author could have went the extra mile and claimed the right to the title "The Definitive Guide." There are many Kerberized applications today not mentioned in Chapter 7. It would be nice to see a second edition that covers them.



What this book has that you will not find in any other single source is comprehensive coverage of the history, protocols, and implementation of Kerberos complete with diagrams. From a security standpoint, this will really help you understand what is going on in your network. For example, when setting up my firewall rules and NIDS, I really had a grasp on what traffic was going where and what needed to be blocked/detected.



Chapter 6, Security, is very comprehensive and outlines various root compromises, dictionary and brute-force, replay, and man-in-the-middle attacks. It also details the importance of pre-authentication in Kerberos V as well as best practices to protect your key distribution center (KDC).



My Kerberos network is a 10 host homogeneous OpenBSD network running the Heimdal Kerberos V version 0.7.2. Although this book covers the older Heimdal 0.6, it was still very relevant. It also covers the MIT 1.3 implementation (MIT is currently at version 1.6.3). Although this book was published in 2003, it is still worth its price brand new in 2008.
EPUB | FB2 | MOBI | TXT | RTF
* Конвертация файла может нарушить форматирование оригинала. По-возможности скачивайте файл в оригинальном формате.
Популярные книги за неделю:

Издание 'Сделай сам'. 1999 № 02 (DjVU)

Автор:
Размер книги: 3.94 Mb

О физической природе шаровой молнии

Автор:
Категория: science, science, exact
Размер книги: 5.03 Mb

Ключ к сверхсознанию

Автор:
Категория: Путь к себе
Размер книги: 309 Kb

Как обставить квартиру

Автор:
Категория: color, graph, house, home
Размер книги: 4.92 Mb

Сплавы палладия.

Автор:
Размер книги: 4.48 Mb
Только что пользователи скачали эти книги:

Ведическое кулинарное искусство

Автор:
Категория: house, house, cook
Размер книги: 50.76 Mb

Ведическое кулинарное искусство

Автор:
Категория: Cooking
Размер книги: 124.29 Mb

jQuery in Action

Автор: , Автор:
Размер книги: 6.43 Mb

Combinatorial Optimization: Networks and Matroids

Автор:
Размер книги: 2.56 Mb

Perioperative Fluid Therapy

Автор: , Автор: , Автор:
Категория: Медицина, Терапия
Размер книги: 20.54 Mb

Murder of Angels

Автор:
Размер книги: 1.46 Mb

My Husband Is Gay: A Woman's Survival Guide

Автор:
Размер книги: 1.82 Mb

Luck of the Damned

Автор:
Категория: fiction
Размер книги: 247 Kb

Demon's Triad

Автор: , Автор:
Категория: fiction
Размер книги: 607 Kb