IETF-SSH archive

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index][Old Index]

Re: [Cfrg] Call for Review on draft-kanno-secsh-camellia-00



On Mon, Apr 26, 2010 at 02:19:19PM -0700, Henry B. Hotz wrote:
> I also note that if ssh implements gssapi-keyex then ssh can use
> Camellia if Kerberos implements Camellia.  In other words, this draft
> is not strictly necessary (though it may be desirable).

Not really.  SSHv2 uses the GSS-API only for authentication (and,
effectively, channel binding of authentication to key exchange), not for
transport portection.

Nico
-- 



Home | Main Index | Thread Index | Old Index