White Papers

9 Dell Power Edge M1000e Chassis Management Controller Version 4.5 - Single Sign- On and Kerberos Model
To access a file from file server, the Client needs a ticket for a file server. The Client sends the TGT, which is present in
the Kerberos tray to KDC requesting a ticket for a file server.
4.
Decrypting Ticket Granting Ticket on KDC
After KDC receives the TGT from the client, it does not validate the user this time. KDC uses its key to decrypt the
TGT. The key expires after 8 hours.
KDC generates a ticket for file server. The file server is also in the same domain, hence KDC has its login password
and it creates a ticket using login password as encryption key. This encrypted key is sent to the client which stores
it in a Kerberos tray.