Question:
what is kerberos?
salim_4u99
2006-07-07 03:07:32 UTC
what is kerberos?
Seven answers:
☆The-Siren
2006-07-07 03:10:14 UTC
Hope this helps:

http://en.wikipedia.org/wiki/Kerberos_(protocol)
george
2006-07-07 04:35:58 UTC
Kerberos is a network authentication protocol. It is designed to provide strong authentication for client/server applications by using secret-key cryptography



An authentication system developed at the Massachusetts Institute of Technology (MIT). Kerberos is designed to enable two parties to exchange private information across an otherwise open network. It works by assigning a unique key, called a ticket, to each user that logs on to the network. The ticket is then embedded in messages to identify the sender of the message.







Kerberos is a secure method for authenticating a request for a service in a computer network. Kerberos was developed in the Athena Project at the Massachusetts Institute of Technology (MIT). The name is taken from Greek mythology; Kerberos was a three-headed dog who guarded the gates of Hades. Kerberos lets a user request an encrypted "ticket" from an authentication process that can then be used to request a particular service from a server. The user's password does not have to pass through the network. A version of Kerberos (client and server) can be downloaded from MIT or you can buy a commercial version.

Briefly and approximately, here's how Kerberos works:



Suppose you want to access a server on another computer (which you may get to by sending a Telnet or similar login request). You know that this server requires a Kerberos "ticket" before it will honor your request.

To get your ticket, you first request authentication from the Authentication Server (AS). The Authentication Server creates a "session key" (which is also an encryption key) basing it on your password (which it can get from your user name) and a random value that represents the requested service. The session key is effectively a "ticket-granting ticket."

You next send your ticket-granting ticket to a ticket-granting server (TGS). The TGS may be physically the same server as the Authentication Server, but it's now performing a different service. The TGS returns the ticket that can be sent to the server for the requested service.

The service either rejects the ticket or accepts it and performs the service.

Because the ticket you received from the TGS is time-stamped, it allows you to make additional requests using the same ticket within a certain time period (typically, eight hours) without having to be reauthenticated. Making the ticket valid for a limited time period make it less likely that someone else will be able to use it later.

The actual process is much more complicated than just described. The user procedure may vary somewhat according to implementation.
Devil M
2006-07-07 03:14:30 UTC
Kerberos is a network authentication protocol. It is designed to provide strong authentication for client/server applications by using secret-key cryptography.

Kerberos prevents eavesdropping or replay attacks, and ensures the integrity of the data. Its designers aimed primarily at a client-server model, and it provides mutual authentication — both the user and the service verify each other's identity.
Jefe
2006-07-07 03:15:57 UTC
It is also the alternate spelling of Cerberus, the three headed guardian dog of Hell according to Greek mythology.
maccnl
2006-07-07 03:10:56 UTC
Or maybe one step above
love_red28
2006-07-07 03:11:31 UTC
haha kerberos is a character in Card Captor sakura, though i dunno the true meaning of it
2006-07-07 03:10:20 UTC
Your face.


This content was originally posted on Y! Answers, a Q&A website that shut down in 2021.
Loading...