…ribed in [ RFC2085 ], [ RFC2246 ], [ RFC2743 ], [ RFC1964 ], [ RFC2025 ], and [ RFC4120 ]. The underlying construct is discussed in [ RFC2104 ]. Essentially, a different sequence number in each packet ensures that at least this one input to the MAC function will be unique and wil…
…ribed in [ RFC2085 ], [ RFC2246 ], [ RFC2743 ], [ RFC1964 ], [ RFC2025 ], and [ RFC4120 ]. The underlying construct is discussed in [ RFC2104 ]. Essentially, a different sequence number in each packet ensures that at least this one input to the MAC function will be unique and wil…
…he name itself is conveyed as value field in otherName. For example, Kerberos [ RFC4120 ] format names can be encoded into the otherName, using a Kerberos 5 principal name OID and a SEQUENCE of the Realm and the PrincipalName. Subject alternative names MAY be constrained in the s…
…considerations involved. [ RFC2712 ] describes a mechanism for using Kerberos [ RFC4120 ] in TLS ciphersuites, which helped inspire the use of tickets to avoid server state. [ RFC4851 ] makes use of a similar mechanism to avoid maintaining server state for the cryptographic tunne…
…up Language (SAML) assertions [ OASIS.saml-core-2.0-os ] and Kerberos tickets [ RFC4120 ]. Assertions can typically be directly validated and used by a resource server without interactions with the authorization server. This results in better performance and scalability in deploy…
…he name itself is conveyed as value field in otherName. For example, Kerberos [ RFC4120 ] format names can be encoded into the otherName, using a Kerberos 5 principal name OID and a SEQUENCE of the Realm and the PrincipalName. Subject alternative names MAY be constrained in the s…
…considerations involved. [ RFC2712 ] describes a mechanism for using Kerberos [ RFC4120 ] in TLS ciphersuites, which helped inspire the use of tickets to avoid server state. [ RFC4851 ] makes use of a similar mechanism to avoid maintaining server state for the cryptographic tunne…
…he name itself is conveyed as value field in otherName. For example, Kerberos [ RFC4120 ] format names can be encoded into the otherName, using a Kerberos 5 principal name OID and a SEQUENCE of the Realm and the PrincipalName. Subject alternative names MAY be constrained in the s…
…nt Update by: Sean Turner Section 3 says: The corresponding padata-value field [RFC4120] contains the DER [X60] encoding of the following ASN.1 type: It should say: The corresponding padata-value field [RFC4120] contains the DER [X690] encoding of the following ASN.1 type: RFC 45…
…nt Update by: Sean Turner Section 3 says: The corresponding padata-value field [RFC4120] contains the DER [X60] encoding of the following ASN.1 type: It should say: The corresponding padata-value field [RFC4120] contains the DER [X690] encoding of the following ASN.1 type: RFC 45…