Documentation Home
> GSS-API ã®ããã°ã©ãã³ã°
GSS-API ã®ããã°ã©ãã³ã°
Book Information
ç´¢å¼
A
E
G
K
M
O
Q
R
S
ã
ã
ã
ã
ã
ã
ã
ã
ã
ã
ã
ã
ã
ã¡
ã¦
ã¨
ãª
ã«
ã²
ãµ
ã¸
ã»
ã¾
ã
ã
ã
ã
ã
ã
ã¯ããã«
第 1Â ç« GSS-API ã®æ¦è¦
GSS-API ã®ç´¹ä»
ã¢ããªã±ã¼ã·ã§ã³ã®ç§»æ¤æ§
ã»ãã¥ãªãã£ãµã¼ãã¹
GSS-API ã§ä½¿ç¨ã§ããæ©æ§
RPCSEC_GSS 層
GSS-API ãè¡ããªããã¨
è¨èªã®ãã¤ã³ãã£ã³ã°
åç §ç®æ
åºæ¬æ¦å¿µ
ããªã³ã·ãã«
GSS-API ãã¼ã¿å
æ´æ°
æååããã³é¡ä¼¼ã®ãã¼ã¿
åå
ååã®æ¯è¼
OID
æ©æ§ã¨ä¿è·å質 (QOP)
ååå
ç¶æ ã³ã¼ã
GSS-API ãã¼ã¯ã³
ããã»ã¹éãã¼ã¯ã³
GSS-API ã使ç¨ããããã°ã©ãã³ã°
æ¦è¦
è³æ ¼
è³æ ¼ã®ç²å¾
ã³ã³ããã¹ãã®ç¢ºç«
ã³ã³ããã¹ãã®èµ·å (ã¯ã©ã¤ã¢ã³ã)
ã³ã³ããã¹ãã®åãå ¥ã (ãµã¼ãã¼)
追å ã®ã³ã³ããã¹ããµã¼ãã¹
å§è¨
ç¸äºèªè¨¼
誤é åºã®æ¤åºã¨ãªãã¬ã¤ã®æ¤åº
å¿åèªè¨¼
ãã£ãã«ãã¤ã³ãã£ã³ã°
ã³ã³ããã¹ãã®ã¨ã¯ã¹ãã¼ãã¨ã¤ã³ãã¼ã
ã³ã³ããã¹ãæ å ±
ãã¼ã¿ä¿è·
gss_get_mic() ã«ããã¡ãã»ã¼ã¸ã®ã¿ã°ä»ã
gss_wrap() ã«ããã¡ãã»ã¼ã¸ã®ã©ãã
ã©ããã®ãµã¤ãº
ã©ãã解é¤ã¨æ¤è¨¼
gss_unwrap()
gss_verify_mic()
転éã®ç¢ºèª (ä»»æ)
ã³ã³ããã¹ãã®åé¤ã¨ãã¼ã¿ã®è§£æ¾
第 2Â ç« GSS-API ãµã³ãã«ããã°ã©ã ã«ã¤ãã¦ã®æ¦ç¥èª¬æ
ãµã³ãã«ããã°ã©ã ã®æ¦è¦
ã¯ã©ã¤ã¢ã³ãå´ã® GSS-API: gss-client
æ¦è¦: main() (ã¯ã©ã¤ã¢ã³ã)
ããã©ã«ã以å¤ã®æ©æ§ã®æå®
ãµã¼ãã¼ã®å¼ã³åºã
ãµã¼ãã¼ã¸ã®æ¥ç¶
ã³ã³ããã¹ãã®ç¢ºç«
ãã¼ã¿ã®éä¿¡
ã¡ãã»ã¼ã¸ã®æ¤è¨¼
ãµã¼ãã¼å´ã® GSS-API: gss-server
æ¦è¦: main() (ãµã¼ãã¼)
æ©æ§ã® OID ã®ä½æ
è³æ ¼ã®ç²å¾
ã³ã³ããã¹ãã®åãå ¥ãã¨ããã¼ã¿ã®åå¾ã¨ç½²å
ã³ã³ããã¹ãã®åãå ¥ã
ã¡ãã»ã¼ã¸ã®ã©ãã解é¤
ã¡ãã»ã¼ã¸ã¸ã®ç½²åã¨ã¡ãã»ã¼ã¸ã®è¿é
ã³ã³ããã¹ãã®ã¤ã³ãã¼ãã¨ã¨ã¯ã¹ãã¼ã
ã¯ãªã¼ã³ã¢ãã
ä»å±ã®é¢æ°
ä»é²Â A C ãã¼ã¹ ã® GSS-API ãµã³ãã«ããã°ã©ã
ã¯ã©ã¤ã¢ã³ãå´ã¢ããªã±ã¼ã·ã§ã³
ããã°ã©ã ãããã¼
main()
parse_oid()
call_server()
read_file()
client_establish_context()
connect_to_server()
ãµã¼ãã¼å´ã¢ããªã±ã¼ã·ã§ã³
ããã°ã©ã ãããã¼
main()
createMechOid()
server_acquire_creds()
sign_server()
server_establish_context()
create_a_socket()
test_import_export_context()
timeval_subtract()
è£å©çãªé¢æ°
ãã¾ãã¾ãªãµãã¼ãé¢æ°
send_token() 㨠recv_token()
send_token()
recv_token()
ä»é²Â B GSS-API ãªãã¡ã¬ã³ã¹
GSS-API é¢æ°
æ§ãã¼ã¸ã§ã³ã® GSS-API é¢æ°
OID ãå¦çããé¢æ°
ååãå¤æ´ãããé¢æ°
GSS-API ç¶æ ã³ã¼ã
GSS-API ã¡ã¸ã£ã¼ç¶æ ã³ã¼ãã®å¤
ç¶æ ã³ã¼ãã®è¡¨ç¤º
ç¶æ ã³ã¼ãã®ãã¯ã
GSS-API ãã¼ã¿åã¨å¤
åºæ¬ GSS-API ãã¼ã¿å
OM_uint32
gss_buffer_desc
gss_OID_desc
gss_OID_set_desc
gss_channel_bindings_struct
ååå
ãã£ãã«ãã¤ã³ãã£ã³ã°ã®ã¢ãã¬ã¹å
ä»é²Â C OID ã®æå®
æ©æ§ã¨ QOP (Quality of Protection)
OID å¤ãå«ã¾ãããã¡ã¤ã«
/etc/gss/mech ãã¡ã¤ã«
/etc/gss/qop ãã¡ã¤ã«
gss_str_to_oid()
æ©æ§ OID ã®æ§ç¯
ä»é²Â D Sun åºæã®æ©è½
å®è£ ã«åºæãªæ©è½
Sun åºæã®é¢æ°
人ãèªããååã«ã¤ãã¦ã®æ§æ
å¿åã®å½¢å¼
é¸æããããã¼ã¿åã®å®è£
ã³ã³ããã¹ãã®åé¤ã¨æ ¼ç´ããããã¼ã¿ã®è§£æ¾
ãã£ãã«ãã¤ã³ãã£ã³ã°æ å ±ã®ä¿è·
ã³ã³ããã¹ãã®ã¨ã¯ã¹ãã¼ãã¨ããã»ã¹éãã¼ã¯ã³
ãµãã¼ããããè³æ ¼ã®å
è³æ ¼ã®æå¹æéã®è¨å®
ã³ã³ããã¹ãã®æå¹æéã®è¨å®
ã©ãããµã¤ãºã®å¶é㨠QOP å¤
minor_status ãã©ã¡ã¼ã¿ã®ä½¿ç¨
ä»é²Â E Kerberos v5 ç¶æ ã³ã¼ã
Kerberos v5 ç¶æ ã³ã¼ãã®è¡¨
ç¨èªé
© 2010, Oracle Corporation and/or its affiliates