An Introduction to Kerberos

What this talk is about

What this talk is not about

What is Kerberos?

Kerberos: etymology

Fluffy, the 3 headed dog, from ÒHarry Potter and the Sorcerers StoneÓ

Some Kerberos benefits

So, what is Authentication?

Password based Authentication

Cryptographic Authentication

Encryption and Decryption

Symmetric Key Cryptography

Asymmetric Key Cryptography

Communicating Parties

Simple shared-secret based cryptographic authentication

Add mutual authentication

Problems with this scheme

Mediated Authentication

Kerberos uses timestamps

Kerberos (roughly)

Needham-Schroeder Protocol

Kerberos (detailed)

Kerberos ÒprincipalÓ

Kerberos without TGS

Combining 2 previous diags

Review: Kerberos Credentials

Ticket Granting Service (TGS)

Kerberos with TGS

TGS Benefits

Kerberos & Two-factor auth

Kerberos: summary

Advantages of Kerberos (1)

Advantages of Kerberos (2)

Kerberos caveats


References (cont)

Questions or comments?

Author: Shumon Huque

Further information:
