[38264] in Kerberos

home help back first fref pref prev next nref lref last post

How does the user principal know the service

daemon@ATHENA.MIT.EDU (ZongtianHou)
Sat Jun 23 15:00:06 2018

From: ZongtianHou <zongtianhou@icloud.com>
MIME-version: 1.0 (Mac OS X Mail 10.3 \(3273\))
Message-id: <447E8887-A6CD-4676-B7C2-B5395405099F@icloud.com>
Date: Sun, 24 Jun 2018 02:57:21 +0800
To: kerberos@mit.edu
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
Errors-To: kerberos-bounces@mit.edu

Hi, everyone:
I am a bit confused of the auth process of kerberos. The user principal request the AS for a tgt, then use send the tgt to the TGS to get a ticket. The ticket was encrypted by the service principal key, But how does the TGS know which service principal the user want to access, how the TGS decide use which service principal key to encrypt the ticket so that the ticket can be decrypted by the server? Can someone give me some clue?
________________________________________________
Kerberos mailing list           Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos

home help back first fref pref prev next nref lref last post