Encryption and Checksum Specifications for Kerberos 5
RFC 3961, “Encryption and Checksum Specifications for Kerberos 5”, is a Proposed Standard document published in February 2005 by K. Raeburn. It has since been updated by RFC 8429. The canonical text is published by the RFC Editor.
Abstract
This document describes a framework for defining encryption and checksum mechanisms for use with the Kerberos protocol, defining an abstraction layer between the Kerberos protocol and related protocols, and the actual mechanisms themselves. The document also defines several mechanisms. Some are taken from RFC 1510, modified in form to fit this new framework and occasionally modified in content when the old specification was incorrect. New mechanisms are presented here as well. This document does NOT indicate which mechanisms may be considered "required to implement". [STANDARDS-TRACK]
What “Proposed Standard” means
An entry-level standards-track specification: stable, peer-reviewed and a solid basis for implementation, though it may still evolve before becoming an Internet Standard.
The canonical text of RFC 3961 is hosted at rfc-editor.org. Available in TXT,HTML.
- RFC 3962 Advanced Encryption Standard Encryption for Kerberos 5
- RFC 3963 Network Mobility Basic Support Protocol
- RFC 3958 Domain-Based Application Service Location Using SRV RRs and the Dynamic Delegation Discovery Service
- RFC 3957 Authentication, Authorization, and Accounting Registration Keys for Mobile IPv4
- RFC 3967 Clarifying when Standards Track Documents may Refer Normatively to Documents at a Lower Level
- RFC 3953 Telephone Number Mapping Service Registration for Presence Services
- RFC 3970 A Traffic Engineering MIB
- RFC 3971 SEcure Neighbor Discovery