Simon Wilkinson <[EMAIL PROTECTED]> writes:

> It's not clear from your description how you check that the script is
> creating the 'correct' account name for a particular user - nor how you
> protect against denial of service attacks, or attacks which create
> 'magic' account names (root, <blah>/ admin, anything else your site has
> in a wildcard)

http://www.eyrie.org/~eagle/software/kadmin-remctl/ may be helpful in that
respect.

-- 
Russ Allbery ([EMAIL PROTECTED])             <http://www.eyrie.org/~eagle/>
________________________________________________
Kerberos mailing list           [email protected]
https://mailman.mit.edu/mailman/listinfo/kerberos

Reply via email to