Kerberos- Technical Description
•KDC
–Kerberos Domain Controller
–Issues Tickets
•Realms
–Kerberos Domain
•Principal
–Either a user, or a remote machine
–Anything trying to access a resource
•TGT
–Ticket Granting Ticket
•Pre-authentication
•Authorization Procedure:
–Request Tickets from KDC
–Use Tickets to access servers
•TGT’s are encrypted with a users password, then sent
–Can’t be decrypted