Skip to main content

Client-Friendly Cross-Realm Model for Kerberos 5

Document Type Expired Internet-Draft (individual)
Authors Ken'ichi Kamada , Shoichi Sakane
Last updated 2007-11-16
Stream (None)
Intended RFC status (None)
Expired & archived
Stream Stream state (No stream defined)
Consensus boilerplate Unknown
RFC Editor Note (None)
IESG IESG state Expired
Telechat date (None)
Responsible AD (None)
Send notices to (None)

This Internet-Draft is no longer active. A copy of the expired Internet-Draft is available in these formats:


This document proposes a cross-realm traversal model, which is suitable for resource-limited clients, for Kerberos Version 5. This model relieves the clients of the traversal cost by two means. One moves the cost of consecutive Ticket-Granting Service (TGS) exchanges from clients to Key Distribution Centers (KDCs). The other reduces the traversal cost itself by generating a direct inter-realm relationship between two realms. The document describes behavior of clients and KDCs, but does not specify any wire format, which need to be specified separately.


Ken'ichi Kamada
Shoichi Sakane

(Note: The e-mail addresses provided for the authors of this Internet-Draft may no longer be valid.)