Hi all,

I am trying to setup a cross realm authentication between microsoft and mit 
kerberos
running on rhel.

Mit kerberos realm is going to trust to ms realm.
Both kdc'a are running fine in their own realms.

We have set up principals on both kdc's.
krbtgt/[email protected]

A windows client tries to open an ssh connection to a linux system.

Windows client asks krbtgt/[email protected] ticket to its own kdc and
gets the ticket.

This is the point that i get confused and need your help.
Ms client than requests host/sshserver.mit.realm.

As far as I know first both kdc's has to share krbtgt ticket to establish a 
trust
relation first.

Does anyone knows how this should work.

Regards,

Aydin


________________________________________________
Kerberos mailing list           [email protected]
https://mailman.mit.edu/mailman/listinfo/kerberos

Reply via email to