Distributed authentication in Kerberos using public key cryptography

M.A. Sirbu, J.C.-I. Chuang
Proceedings of SNDSS '97: Internet Society 1997 Symposium on Network and Distributed System Security  
In this work we describe a method for fully distributed authentication using public key cryptography within the Kerberos ticket framework. By distributing most of the authentication workload away from the trusted intermediary and to the communicating parties, significant enhancements to security and scalability can be achieved as compared to Kerberos V5. Privacy of Kerberos clients is also enhanced. A working implementation of this extended protocol has been developed, and a migration plan is
more » ... migration plan is proposed for a transition from traditional to public key based Kerberos.
doi:10.1109/ndss.1997.579231 dblp:conf/ndss/SirbuC97 fatcat:wwjr5qdq4vhzxegqrcvda5b5ey