White Papers
9 Dell Power Edge M1000e Chassis Management Controller Version 4.5 - Single Sign- On and Kerberos Model
To access a file from file server, the Client needs a ticket for a file server. The Client sends the TGT, which is present in
the Kerberos tray to KDC requesting a ticket for a file server.
4.
Decrypting Ticket Granting Ticket on KDC
• After KDC receives the TGT from the client, it does not validate the user this time. KDC uses its key to decrypt the
TGT. The key expires after 8 hours.
• KDC generates a ticket for file server. The file server is also in the same domain, hence KDC has its login password
and it creates a ticket using login password as encryption key. This encrypted key is sent to the client which stores
it in a Kerberos tray.










