March 5, 2002
Practical Aspects of Modern Cryptography
25
Thoughts on Kerberos...(3)
nCross-realm trust is possible
nJust need to share a secret key between the KDCs for the two realms...
nOnce accomplished, a user in realm A can get a ticket for a service in realm B