Presentation is loading. Please wait.

Presentation is loading. Please wait.

Kerberos Authentication for Multi-organization Cross-Realm Kerberos Authentication User sent request to local Authentication Server Local AS shares cross-realm.

Similar presentations


Presentation on theme: "Kerberos Authentication for Multi-organization Cross-Realm Kerberos Authentication User sent request to local Authentication Server Local AS shares cross-realm."— Presentation transcript:

1

2 Kerberos Authentication for Multi-organization

3 Cross-Realm Kerberos Authentication User sent request to local Authentication Server Local AS shares cross-realm key to verifier's authentication server(VAS) Local AS sent TGT to client User request a session key with his/her TGT VAS Lookup the cross-realm key The VAS grant client with the session key

4 Authorization with Kerberos Kerberos does not itself provide authorization, but V5 Kerberos passes authorization information generated by other services. In this manner, Kerberos can be used as a base for building separate distributed authorization services. (implement in the future)

5 Authorization structure


Download ppt "Kerberos Authentication for Multi-organization Cross-Realm Kerberos Authentication User sent request to local Authentication Server Local AS shares cross-realm."

Similar presentations


Ads by Google