Channels ▼


SSH Kerberos Authentication Using GSSAPI and SSPI

February, 2006: SSH Kerberos Authentication Using GSSAPI and SSPI

Table 1: SSPI and GSSAPI functions.

SSPI Function Call Description GSSAPI Function Call Description
EnumerateSecurityPackages Allows you to discover the supported security packages. gss_indicate_mechs Returns a list of supported mechanism OIDs.
gss_import_name Converts string format of a name to a normalized binary format.
InitSecurityInterface Retrieves a pointer to a dispatch table after security.dll has been loaded.
AcquireCredentialsHandle Gets a handle to existing credentials of a security principal.
AcceptSecurityContext Server-side call used to create a security context based on a client message. gss_accept_sec_context Accept an inbound (server) security context.
InitializeSecurityContext Client-side call used to authenticate (initialize the security context). gss_init_sec_context Initiates an outbound (client) security context.
DecryptMessage Used for message decryption—not necessary with SSH. gss_unwrap "Decapsulates, decrypts, and verifies the integrity check of a message."
EncryptMessage Used for message encryption—not necessarywith SSH. gss_wrap "Signs, encrypts, and encapsulates a message."
MakeSignature Creates a digital signature based on a security context and a message. gss_get_mic Generates a digital signature (integrity check) over a message.

Related Reading

More Insights

Currently we allow the following HTML tags in comments:

Single tags

These tags can be used alone and don't need an ending tag.

<br> Defines a single line break

<hr> Defines a horizontal line

Matching tags

These require an ending tag - e.g. <i>italic text</i>

<a> Defines an anchor

<b> Defines bold text

<big> Defines big text

<blockquote> Defines a long quotation

<caption> Defines a table caption

<cite> Defines a citation

<code> Defines computer code text

<em> Defines emphasized text

<fieldset> Defines a border around elements in a form

<h1> This is heading 1

<h2> This is heading 2

<h3> This is heading 3

<h4> This is heading 4

<h5> This is heading 5

<h6> This is heading 6

<i> Defines italic text

<p> Defines a paragraph

<pre> Defines preformatted text

<q> Defines a short quotation

<samp> Defines sample computer code text

<small> Defines small text

<span> Defines a section in a document

<s> Defines strikethrough text

<strike> Defines strikethrough text

<strong> Defines strong text

<sub> Defines subscripted text

<sup> Defines superscripted text

<u> Defines underlined text

Dr. Dobb's encourages readers to engage in spirited, healthy debate, including taking us to task. However, Dr. Dobb's moderates all comments posted to our site, and reserves the right to modify or remove any content that it determines to be derogatory, offensive, inflammatory, vulgar, irrelevant/off-topic, racist or obvious marketing or spam. Dr. Dobb's further reserves the right to disable the profile of any commenter participating in said activities.

Disqus Tips To upload an avatar photo, first complete your Disqus profile. | View the list of supported HTML tags you can use to style comments. | Please read our commenting policy.