Kerberos Cryptosystem Negotiation Extension
RFC 4537

(Brian Carpenter) No Objection

Comment (2006-01-30)
KDC should be defined where first used (line 1 of the Introduction).

At the end of section 3:
   The server MAY ignore the preference order indicated by the client.
   The policy by which the client or the server chooses an enctype
   (i.e., how the preference order for the supported enctypes is
   selected) is a local matter.

Would it be useful to observe that this would actually allow
a local decision to prefer weaker security than chosen by the KDC?

(Russ Housley) No Objection

Comment (2006-01-30)
  In the Abstract:
  s/Kerberos protocol/Kerberos protocol as defined in RFC 4120/

