@techreport{brezak-spnego-http-04, number = {draft-brezak-spnego-http-04}, type = {Internet-Draft}, institution = {Internet Engineering Task Force}, publisher = {Internet Engineering Task Force}, note = {Work in Progress}, url = {https://datatracker.ietf.org/doc/draft-brezak-spnego-http/04/}, author = {John Brezak}, title = {{HTTP Authentication: SPNEGO Access Authentication As implemented in Microsoft Windows 2000}}, pagetotal = 6, year = 2002, month = oct, day = 16, abstract = {This document describes how the Microsoft Internet Explorer (MSIE) and Internet Information Services (IIS) incorporated in Microsoft Windows 2000 use Kerberos for security enhancements of web transactions. The HTTP auth-scheme of 'negotiate' is defined here; when the negotiation results in the selection of Kerberos, the security services of authentication and optionally impersonation are performed. This document explains how HTTP authentication utilizes the SPNEGO {[}7{]} GSSAPI mechanism. Details of SPNEGO implementation are not provided in this document.}, }