top | item 10990113

(no title)

jaltman | 10 years ago

Even with afs3-rxkad-k5 the wire encryption is a watered down variant of DES called fcrypt and the use of encryption is the choice of the client. There is nothing that an administrator can do to prevent AFS3 clients communicating with AFS3 servers from leaking sensitive information onto the wire. The AuriStor File System solves these problems with the yfs-rxgk security class, volume and file server security policies, combined identities, perfect forward secrecy, and much more ....

https://www.auristor.com/openafs/migrate-to-auristor/

discuss

order

No comments yet.