home *** CD-ROM | disk | FTP | other *** search
- Path: sparky!uunet!spool.mu.edu!sdd.hp.com!zaphod.mps.ohio-state.edu!usc!news.aero.org!jbrady.aero.org!user
- From: brady@osiapps.aero.org (John Brady)
- Newsgroups: comp.protocols.appletalk
- Subject: Re: ARA and in-line authentication
- Followup-To: comp.protocols.appletalk
- Date: 17 Dec 1992 17:23:30 GMT
- Organization: The Aerospace Corporation
- Lines: 45
- Distribution: usa
- Message-ID: <brady-171292090901@jbrady.aero.org>
- References: <brady-161292075059@jbrady.aero.org> <haase-161292215606@mac_dialin1.meediv.lanl.gov>
- NNTP-Posting-Host: jbrady.aero.org
-
- In article <haase-161292215606@mac_dialin1.meediv.lanl.gov>,
- haase@meediv.lanl.gov (Peter Haase) wrote:
- >
- > In article <brady-161292075059@jbrady.aero.org>, brady@osiapps.aero.org
- > (John Brady) wrote:
- > >
- > > Has anyone tried using an in-line authentication box (like the
- > > Digital Pathways Defender 5000) with ARA?
- > >
- > > An in-line authentication box would sit between the answering
- > > modem and the ARA server. The user would have to prove his or her
- > > identity before the authentication box would complete the connection
- > > to the ARA server. I guess the real question is can the ARA client
- > > software support this dialog prior to completion of the ARAP connection.
- > >
- > Why would you want to do that since on an ARA dial-in the user has to
- > provide a valid username and password. Seems kind of redundant.
- >
- > *******************************************************************
- > Peter Haase haase@meediv.lanl.gov
- > Los Alamos National Laboratory Applelink: HAASE
- > Mechanical Electronic Engineering Division 505-667-2684
-
- Reasons for needing external authentication:
-
- 1 -- We provide five different dial-in services for our employees and
- would prefer not to enter and maintain account information in more that
- one place. That one place is the Defender 5000.
-
- 2 -- Simple passwords have been deemed unacceptable (by our security
- folks),
- so we use a little calculator-like device to generate a psuedo-random
- sequence of passwords which is matched against an identically seeded
- psuedo-random sequence.
-
- 3 -- Bureaucratic policy.
-
- Enough reasons... Can any ARA experts out there pass judgement on whether
- or not ARA will support in-line authentication?
-
- John Brady ** brady@osiapps.aero.org
- Network Engineer **
- The Aerospace Corporation ** (310) 336-2220 (work)
- P.O. Box 92957 ** (310) 336-7505 (fax @ work)
- Los Angeles, CA 90009-2957 ** (310) 372-6793 (home)
-