>>>>> "VS" == Victor Sudakov <[EMAIL PROTECTED]> writes:

    VS> Colleagues, If cross-realm authentication is configured between
    VS> two realms, do the KDCs ever talk directly to each other, or do
    VS> they talk only to the client?

    VS> In other words, is IP connectivity necessary between the KDCs, or
    VS> only between the client and each of the KDCs?

The latter, so far as I know.  A client obtains a TGT for the trusting
realm from a KDC in the trusted one, and presents it to a trusting KDC.

    VS> -- Victor Sudakov, VAS4-RIPE, VAS47-RIPN 2:5005/[EMAIL PROTECTED]
    VS> http://vas.tomsk.ru/

-- 
  Richard Silverman
  [EMAIL PROTECTED]

________________________________________________
Kerberos mailing list           Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos

Reply via email to