@techreport{perez-abfab-eap-gss-preauth-01, number = {draft-perez-abfab-eap-gss-preauth-01}, type = {Internet-Draft}, institution = {Internet Engineering Task Force}, publisher = {Internet Engineering Task Force}, note = {Work in Progress}, url = {https://datatracker.ietf.org/doc/draft-perez-abfab-eap-gss-preauth/01/}, author = {Alejandro Pérez-Méndez and Rafael Marin-Lopez and Fernando Pereniguez-Garcia and Gabriel Lopez-Millan}, title = {{GSS-EAP pre-authentication for Kerberos}}, pagetotal = 14, year = 2012, month = mar, day = 8, abstract = {This draft defines an alternative to the standard cross-realm operation in Kerberos, to allow users from an organization can obtain a TGT from the KDC of a different one, both belonging to the same AAA-based federation. This proposal makes use of the GSS-API pre- authentication for Kerberos and the GSS-API Mechanism for the Extensible Authentication Protocol to carry out the required functionality.}, }