Re: Protocol benchmarking / auditing inquiry
"Christopher D. Clausen" <[email protected]> Wed, 14 Feb 2024 13:09:34 -0600
| Newsgroups | gmane.comp.encryption.kerberos.general |
|---|---|
| Message-ID | <[email protected]> |
I have used this as a guide, but I think MIT Kerberos version 1.10 is the latest available: https://www.cisecurity.org/benchmark/mit_kerberos Not sure if this is what you are looking for or not. <<CDC On 2/14/2024 11:46 AM, Brent Kimberley via Kerberos wrote: > Preferably something smaller and more focused than nmap or OpenSCAP. 😉 > > From: Brent Kimberley > Sent: Wednesday, February 14, 2024 12:44 PM > To: [email protected] > Subject: Protocol benchmarking / auditing inquiry > > Hi. > Can anyone point me to some methods to benchmark and/or audit Kerberos v5? > > For example, SSH: > Manual > Read the RFCs and specs. > Semi-automatic. > jtesta/ssh-audit: SSH server & client security auditing (banner, key exchange, encryption, mac, compression, compatibility, security, etc) (github.com)<https://github.com/jtesta/ssh-audit/> > Automatic > SSH Configuration Auditor (ssh-audit.com)<https://www.ssh-audit.com/> > > > TLS example upon request. ________________________________________________ Kerberos mailing list [email protected] https://mailman.mit.edu/mailman/listinfo/kerberos