Tuesday, 28 January 2014

How Kerberos Work - Kerberos Uncovered

How Kerberos Work - Kerberos Uncovered


Lets understand it by using this Amusement Park Example;

1. You go to the Amusement Park and Buy a Ticket from the Main Entrance Counter to Enter into the Amusement Part to Enjoy The Rides, whichever you have paid for. (Which we call TGT - Ticket Granting Ticket)




2. He goes to the first rider and says I want to ride MarygoRound and present the Ticket (TGT) to the Rider. But the rider says, show me the ticket that you have to ride this ride.

3. Rider suggest him to go to the different counter to get the ticket for this Ride (Call it Service Ticket). He goes to that counter and shows his Ticket (TGT) and gets Service Ticket for the MarrygoRound Ride.


4. After getting the Service Ticket, he shows it to the Rider and he allows him for this Ride. He Enjoys the Ride.

5. Overview

6. In Reality How it Happens
    - User Sends a Authentication Service Request to Domain Controller
    - Domain Controller Sends Back Authentication Service Response along with TGT Key
    - User Send an Application Request along with the TGT Key to the Domain Controller
    - Domain Controller Sends Back TGT Response along with the Service Ticket to Access the Requested
       Application
    - User sends a Request to the Application Server along with the Service Key
    - Application Server Validates it and Grant Permission to Access it

No comments:

Post a Comment