Technical Summary
This document specifies two encryption types and two corresponding
checksum types for the Kerberos cryptosystem framework defined in RFC
3961. The new types use the Camellia block cipher in CBC-mode with
ciphertext stealing and the CMAC algorithm for integrity protection.
Working Group Summary
This document represents the consensus of the Kerberos Working Group.
Document Quality
At least one major Kerberos implementor plans to include support for
the encryption and checksum types described in this document.
Personnel
The Document Shepherd for this document is Jeffrey Hutzelman.
The responsible Area Director is Stephen Farrell.
RFC Editor Note
Please move the [RFC3962] reference from the abstract to section 1.
That involves two changes,
1) in the abstract
OLD:
ciphertext stealing [RFC3962] and
NEW:
ciphertext stealing and
2) section 1, 4th para,
OLD:
CBC mode with ciphertext stealing to avoid the need for padding.
NEW:
CBC mode with ciphertext stealing [RFC3962] to avoid the need for padding.