From looking into the code it looks like FreeRadius acts as the

Kerberos Client.  So is this a hook just to authenticate with a KDC ?

So it would not include all the other Client to Application server Kerberos

Interaction.  So the real client is not Kerberos aware… ?

 

I can’t seem to find a good explanation of how FreeRadius

Integrates in with krb5 Kerberos. 

 

 

Client ->  AP ->  FreeRadius -> KDC   ?

 

Where FreeRadius converts the client request into a Kerberos client request ,

Getting a ticket from the KDC and then returning the ticket to the client through

RADIUS? Then the client uses the ticket to try to get to other servers ?  How is

a RADIUS request generated out of a Kerberos authentication.

 

I guess I don’t know how the client interacts with RADIUS when Kerberos is involved.

Are there links to a FAQ on this I could read. There is nothing in doc on FreeRadius or

In the raddb/radiusd.conf  on krb5.

 

 

Thanks,

Ron.

Reply via email to