[32759] in Kerberos

home help back first fref pref prev next nref lref last post

Question on mutual authentication

daemon@ATHENA.MIT.EDU (SANDERS Miguel)
Sat Oct 2 05:01:36 2010

Content-class: urn:content-classes:message
MIME-Version: 1.0
Date: Sat, 2 Oct 2010 11:01:27 +0200
Message-ID: <7DF29B50FFF41848BB2281EC2E71A206016D9809@GEN-MXB-V04.msad.arcelor.net>
From: "SANDERS Miguel" <miguel.sanders@arcelormittal.com>
To: <kerberos@mit.edu>
Content-Type: text/plain; charset="windows-1252"
Errors-To: kerberos-bounces@mit.edu
Content-Transfer-Encoding: 8bit

Hi guys
 
I have a question concerning the mutual authentication in the kerberos flow. I know that the client proves his identity to the AS by using the PA-ENC-TIMESTAMP (preauthentication). Similarly, the authenticator in the TGS-REQ is used to prove the client's identity to the TGS. But how does the AS prove his identity to the client in the AS-REP message? Same question for the TGS in the TGS-REP message.
 
Thanks for explaining
 
Met vriendelijke groet 
Best regards 
Bien à vous 

Miguel SANDERS
ArcelorMittal Gent

UNIX Systems & Storage
IT Supply Western Europe | John Kennedylaan 51 
B-9042 Gent

T +32 9 347 3538 | F +32 9 347 4901 | M +32478 805 023
E miguel.sanders@arcelormittal.com
www.arcelormittal.com/gent 
P Please consider the environment before printing this e-mail 

 
________________________________________________
Kerberos mailing list           Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos


home help back first fref pref prev next nref lref last post