Re: Where we stand on Digest Authentication

let's keep with what we have and try to put digest to bed as is.
remember, the important thing is to kill 'basic' asap.

there have been lots of good ideas and suggestions presented
over the past ~4 months regarding digest authentication.
perhaps it would be appropriate to begin discussion of a new
authentication scheme (beyond digest) which incorporates
as many of them as possible.

this would give us a better spectrum:

nothing ---> basic ---> digest ---> xxx ---> ?kerberos? ---> ?private-key?

where assurances go up/risks go down as you go the right.

thoughts ??
jeff

Received on Tuesday, 27 February 1996 08:32:59 UTC