[31133] in Kerberos

home help back first fref pref prev next nref lref last post

Re: Heimdal: Delegation + Cross-realm authentication

daemon@ATHENA.MIT.EDU (S2)
Mon May 18 12:16:23 2009

From: S2 <some.r@ndom.mail.invalid.net>
MIME-Version: 1.0
Date: 16 May 2009 18:30:19 GMT
Message-ID: <4a0f063b$0$1115$4fafbaef@reader4.news.tin.it>
X-Complaints-To: Please send abuse reports to abuse@retail.telecomitalia.it
To: kerberos@mit.edu
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
Errors-To: kerberos-bounces@mit.edu

On Mon, 11 May 2009 13:49:16 -0700, charan wrote:

>     The question is, can the service that is delegated to fetch
> credentials on behalf of the client, get the credentials for a different
> realm.

yes. mit can do that too. the client just needs to forward the tgt to the 
service.
________________________________________________
Kerberos mailing list           Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos

home help back first fref pref prev next nref lref last post