go to  ForumEasy.com   
JavaPro
Home » Archive » Message


[Email To Friend][View in Live Context][prev topic « prev post | next post » next topic]
  Kerberos Authentication Protocol (V5) -- RFC 1510
 
Subject: Kerberos Authentication Protocol (V5) -- RFC 1510
Author: Alex_Raj
Posted on: 11/08/2006 06:47:42 PM

The authentication process proceeds as follows: A client sends a request to the authentication server (AS) requesting "credentials" for a given server. The AS responds with these credentials, encrypted in the client's key. The credentials consist of 1) a "ticket" for the server and 2) a temporary encryption key (often called a "session key"). The client transmits the ticket (which contains the client's identity and a copy of the session key, all encrypted in the server's key) to the server. The session key (now shared by the client and server) is used to authenticate the client, and may optionally be used to authenticate the server. It may also be used to encrypt further communication between the two parties or to exchange a separate sub-session key to be used to encrypt further communication.

The Kerberos protocol consists of several sub-protocols (or exchanges):

  • AS -- The Authentication Service Exchange


  • TGS-- The Ticket-Granting Service Exchange


  • CS -- The Client/Server Authentication Exchange




  • Replies:


    References:

     


     
    Powered by ForumEasy © 2002-2022, All Rights Reserved. | Privacy Policy | Terms of Use
     
    Get your own forum today. It's easy and free.