home *** CD-ROM | disk | FTP | other *** search
- Path: sparky!uunet!sun-barr!cs.utexas.edu!sdd.hp.com!swrinde!elroy.jpl.nasa.gov!ames!network.ucsd.edu!mvb.saic.com!tgv.com!info-multinet
- From: stan_peters@byu.edu (Stan Peters)
- Newsgroups: vmsnet.networks.tcp-ip.multinet
- Subject: MultiNet Authentication Services (aka Kerberos support for VMS)
- Message-ID: <2B201D2718AUG92221122@TGV.COM>
- Date: 18 Aug 92 22:11:22 GMT
- Organization: The INFO-MULTINET Community
- Lines: 90
- X-Gateway-Source-Info: INTERNET
- X-Return-path: <info-multinet-relay@TGV.COM>
- X-RFC822-From: Stan Peters <stan_peters@byu.edu>
- Nntp-Posting-Host: Mvb.Saic.Com
-
- Kelly- Kerberos Authentication Services are now a part of Multinet. License
- is included as part of multinet. Maintenance is included as part of
- multinet maintenance. We'll have to pay a one time $150 charge to get the
- initial media and docs. I'll do that. Rest is the press release FYI. -Stan
- ============================
-
- FOR IMMEDIATE RELEASE
- August 3, 1992
-
- TGV Ships MultiNet Authentication Services
-
- MultiNet Joins Select Group of Products To Extend
- Network Security With Kerberos User Authentication
-
- SANTA CRUZ -- TGV, Inc., today began shipping new security support
- software for VMS users who access data over TCP/IP networks.
- MultiNet Authentication Services implements Kerberos support for
- MultiNet, TGV's TCP/IP environment for VMS. By adding Kerberos
- authentication, network administrators can better secure their
- networks against unwanted intruders by protecting user passwords
- transmitted over the network.
-
- "Very few people appreciate just how easy it is to access password
- information on a broadcast network medium such as Ethernet," said
- David Kashtan, President of TGV. "By adding Kerberos
- authentication, it becomes impossible for a network snooper to use
- a network analyzer or listening device to capture passwords that
- would normally be broadcast in clear text. The Kerberos
- authentication scheme has already been embraced by DEC, as well as
- a number of key players in the UNIX world. It's the only logical
- way to protect networks that share data between multiple computing
- platforms."
-
- Taking its name from the three-headed dog that guards the gates of
- Hades in Greek mythology, Kerberos authentication was developed by
- MIT's Project Athena as a means of authenticating network users.
- MultiNet Authentication Services uses Kerberos version 4 to enable
- MultiNet users to prove their identities to Kerberos-supported
- machines across a TCP/IP network without sending passwords in clear
- text. Using Data Encryption Standard (DES) technology, user
- passwords are processed by a central authentication server which
- issues tickets for network access. These tickets, in turn, are used
- to generate a series of encrypted keys that provide access to
- network services. These keys are never transmitted across the
- network in a form that can be recognized or replicated, so
- passwords are never broadcast and access to the network remains
- secure.
-
- MultiNet Authentication Services will interoperate with any other
- Kerberos 4-compatible implementation, giving MultiNet users secure
- access to VMS systems, UNIX systems, and other Kerberos-supported
- services on various computing platforms. MultiNet Authentication
- Services provides "Kerberized" client/server support for the UNIX
- "r" services, including RLOGIN, RSHELL, and RCP, as well as TELNET.
- Only Kerberos authenticated users are granted remote login (RLOGIN
- and TELNET), command execution (RSHELL), and file copy (RCP)
- privileges. MultiNet Authentication Services includes the Key
- Distribution Center (KDC), also referred to as the Kerberos server,
- which supports the Kerberos database of authorized users and their
- passwords. MultiNet KDCs, including KDCs from other vendors, can be
- used in the same network to provide greater reliability through
- redundancy. Database information is shared between KDCs using an
- implementation-independent data exchange.
-
- MultiNet Authentication Services is compatible with MultiNet V3.1
- and VMS V5.0 or later. MultiNet Authentication Services is included
- in the base license for MultiNet, but it is provided as a separate
- option on 9-track magnetic tape or TK50 streaming cassette for a
- media charge of $150 for magnetic media and documentation. Only one
- tape is required per site license. Product support for MultiNet
- Authentication Services is included with the MultiNet maintenance
- agreement. Contact TGV regarding product availability outside the
- United States.
-
- TGV, Inc., designs, manufactures, markets and supports
- standards-based networking and application software for Digital
- Equipment Corporation VMS computers. TGV, Inc., is located at 603
- Mission Street, Santa Cruz, California 95060; telephone: (408)
- 427-4366; FAX: (408) 427-4365.
-
- -30-
-
- MultiNet is a registered trademark of TGV, Inc. VMS and VAX are
- trademarks of Digital Equipment Corporation. Kerberos and Project
- Athena are both trademarks of the Massachusetts Institute of
- Technology. UNIX is a registered trademark of UNIX Systems
- Laboratories, Inc. All other trademarks are the property of their
- respective owners.
-
-
-