Groups | Search | Server Info | Login | Register


Groups > comp.protocols.kerberos > #5258

Re: Protocol benchmarking / auditing inquiry

From pyllyukko <pyllyukko@maimed.org>
Newsgroups comp.protocols.kerberos
Subject Re: Protocol benchmarking / auditing inquiry
Date 2024-02-29 14:06 +0200
Organization TNet Consulting
Message-ID <mailman.30.1709208426.2322.kerberos@mit.edu> (permalink)
References <YT1PR01MB4187CA8C93DE6AC8560FB1BCFA4E2@YT1PR01MB4187.CANPRD01.PROD.OUTLOOK.COM> <ZeBzTm8Rj0-s477A@maimed.org>

Show all headers | View raw


Ehlo.

On Wed, Feb 14, 2024 at 05:43:47PM +0000, Brent Kimberley via Kerberos wrote:
> Can anyone point me to some methods to benchmark and/or audit Kerberos v5?

A short while ago I submitted a PR[1] for the Lynis project that does
something like that. I also started documenting some of my own Kerberos
hardening stuff here[2].

Disclaimer: I'm quite new to Kerberos, so I might be off with some of
the hardenings, so all additional pointers/corrections are more than
welcome.

[1] https://github.com/CISOfy/lynis/pull/1456
[2] https://github.com/pyllyukko/harden.yml/wiki/Kerberos_hardening_and_maintenance

-- 
pyllyukko
email:   <pyllyukko@maimed.org>
PGP:     https://keybase.io/pyllyukko
twitter: https://twitter.com/pyllyukko

Back to comp.protocols.kerberos | Previous | Next | Find similar


Thread

Re: Protocol benchmarking / auditing inquiry pyllyukko <pyllyukko@maimed.org> - 2024-02-29 14:06 +0200

csiph-web