RFC 4121: The Kerberos Version 5 Generic Security Service Application Program Interface (GSS-API) Mechanism: Version 2
In plain English — editorial summary, not part of the RFC
This document defines protocols, procedures, and conventions to be employed by peers implementing the Generic Security Service Application Program Interface (GSS-API) when using the Kerberos Version 5 mechanism. RFC 1964 is updated and incremental changes are proposed in response to recent developments such as the introduction of Kerberos cryptosystem framework. These changes support the inclusion of new cryptosystems, by defining new per-message tokens along with their encryption and checksum algorithms based on the cryptosystem profiles. [STANDARDS-TRACK]
Document record
- Document ID
- RFC4121
- Published
- July 2005
- Authors
- L. Zhu; K. Jaganathan; S. Hartman
- Status
- PROPOSED STANDARD
- Stream
- IETF
- Area
- sec
- Pages
- 20
- Also known as
- —
- Updates:
- RFC 1964
Topics
Referenced by
5 later RFCs formally update or obsolete part of this document.
- RFC 5896Generic Security Service Application Program Interface (GSS-API): Delegate if Approved by PolicyCurrent
June 2010
- RFC 6112Anonymity Support for KerberosObsoleted
April 2011
- RFC 6542Kerberos Version 5 Generic Security Service Application Program Interface (GSS-API) Channel Binding Hash AgilityCurrent
March 2012
- RFC 6649Deprecate DES, RC4-HMAC-EXP, and Other Weak Cryptographic Algorithms in KerberosCurrent
July 2012
- RFC 8062Anonymity Support for KerberosCurrent
February 2017
Related documents
Ranked automatically by shared keywords, IETF area and stream — not by editorial selection.
- RFC 3447Public-Key Cryptography Standards (PKCS) #1: RSA Cryptography Specifications Version 2.1Obsoleted
February 2003
- RFC 4120The Kerberos Network Authentication Service (V5)Updated
July 2005
- RFC 4132Addition of Camellia Cipher Suites to Transport Layer Security (TLS)Obsoleted
July 2005
- RFC 4134Examples of S/MIME MessagesCurrent
July 2005
- RFC 4106The Use of Galois/Counter Mode (GCM) in IPsec Encapsulating Security Payload (ESP)Current
June 2005
- RFC 4158Internet X.509 Public Key Infrastructure: Certification Path BuildingCurrent
September 2005
- RFC 4082Timed Efficient Stream Loss-Tolerant Authentication (TESLA): Multicast Source Authentication Transform IntroductionCurrent
June 2005
- RFC 4178The Simple and Protected Generic Security Service Application Program Interface (GSS-API) Negotiation MechanismCurrent
October 2005
Also filed under
About this page
The document record above — title, authors, date, status, stream, area, relationships, DOI and errata — is imported verbatim from the public RFC Editor index. The “in plain English” section is editorial: written by The metasystema editorial team, not part of the RFC. Where the two differ, the RFC text governs.
Last checked against the RFC Editor index on . RFCs are never revised after publication; changes are issued as new documents.
Data sources · Editorial policy · Report a correction · What is an RFC?