Re: InitializeSecurityContext to ADS 2003 functional level

From: Jacques Lebastard (jacques.lebastard_at_evidian.com)
Date: 10/27/04


Date: Wed, 27 Oct 2004 19:04:13 +0200

Jacques Le*** wrote:

> Richard Ward wrote:
>
>> What are you passing in as the target name?
>
>
> The UPN of an existing user: _AM_KRBSRV@VSA.FRCL.BULL.FR
>
> Here is the token provided by InitialiazeSecurityContext :
>
> 00000000 6047060A 2A864886 F7120102 02030400 `G..*.H.÷.......
> 00000010 3037A003 020105A1 03020110 A2173015 07............0.
> 00000020 A0030201 01A10E30 0C1B0A5F 414D5F4B .......0..._AM_K
> 00000030 52425352 56A3121B 10565341 2E465243 RBSRV....VSA.FRC
> 00000040 4C2E4255 4C4C2E46 52 L.BULL.FR

I identified an OID in the above token :

                              OID
                  /------------+----------\
00000000 6047060A 2A864886 F7120102 02030400 `G..*.H.÷.......
00000010 3037A003 020105A1 03020110 A2173015 07............0.
00000020 A0030201 01A10E30 0C1B0A5F 414D5F4B .......0..._AM_K
00000030 52425352 56A3121B 10565341 2E465243 RBSRV....VSA.FRC
00000040 4C2E4255 4C4C2E46 52 L.BULL.FR

This seems to be the OID specified in expired Internet Draft
draft-swift-win2k-krb-user2user-04.txt ?

Does that mean that the user-to-user mechanism described in the above
draft is used within a Windows Native 2003 domain ?


Quantcast