Waffle SSPI Kerberos Single Sign On: Configuring the Encryption Ciphers, and Debugging
问题 How can we configure which Encryption Ciphers a Java Waffle SSPI Kerberos Single Sign On (SSO) client should use? How can we best debug which ciphers are actually being used by the client and server? Background We need to restrict the Encryption Ciphers used for Kerberos SSO, removing ciphers now considered weak. Our Setup The Java Application Server implements SSO via pure Java GSSAPI. The Java Client implements SSO by two configurable SSO APIs: On Linux or Windows 10 without Credential