March 5, 2002
Practical Aspects of Modern Cryptography
25
Thoughts on Kerberos...(3)
n
Cross-realm trust is possible
n
Just need to share a secret key between the
KDCs for the two realms...
n
Once accomplished, a user in realm A can get a
ticket for a service in realm B