{"draft":"draft-ietf-sasl-gs2-20","doc_id":"RFC5801","title":"Using Generic Security Service Application Program Interface (GSS-API) Mechanisms in Simple Authentication and Security Layer (SASL): The GS2 Mechanism Family","authors":["S. Josefsson","N. Williams"],"format":["ASCII","HTML"],"page_count":"26","pub_status":"PROPOSED STANDARD","status":"PROPOSED STANDARD","source":"Simple Authentication and Security Layer","abstract":"This document describes how to use a Generic Security Service\r\nApplication Program Interface (GSS-API) mechanism in the Simple\r\nAuthentication and Security Layer (SASL) framework. This is done by\r\ndefining a new SASL mechanism family, called GS2. This mechanism\r\nfamily offers a number of improvements over the previous \"SASL\/\r\nGSSAPI\" mechanism: it is more general, uses fewer messages for the\r\nauthentication phase in some cases, and supports negotiable use of\r\nchannel binding. Only GSS-API mechanisms that support channel\r\nbinding and mutual authentication are supported. [STANDARDS-TRACK]","pub_date":"July 2010","keywords":[],"obsoletes":[],"obsoleted_by":[],"updates":[],"updated_by":["RFC9266"],"see_also":[],"doi":"10.17487\/RFC5801","errata_url":"https:\/\/www.rfc-editor.org\/errata\/rfc5801"}