Kerberos

Kerberos

 英

  • 网络身份验证;可鲁贝洛斯;协议

例句

This section covers the necessary steps that an administrator needs to carry out to set up the above Kerberos configuration.

讨论设置以上Kerberos配置步骤

An authentication error will occur if the user trying to connect is not same as the user whose credential is in the Kerberos cache.

如果试图连接用户与其凭证保存Kerberos缓存用户不一致发生身份验证错误

If SSO is not working for you at this point please continue and verify all Kerberos Prerequisites mentioned in the next section.

如果此时SSO不能正常工作继续验证提到所有Kerberos先决条件

Kerberos, which provides a secure means of authentication for network users, is one of the most popular authentication mechanisms.

Kerberos网络用户提供一种安全身份验证手段流行身份验证机制之一

It's the only one that supports Kerberos authentication and supports LDAP with an Active Directory server -- that type of thing.

唯一一个支持Kerberos认证带有活动目录服务器LDAP东西

NTLM authentication is required in networks where the server receives requests from clients that do not support Kerberos authentication.

服务器接收客户端请求客户端支持Kerberos身份验证网络必须使用NTLM身份验证

Kerberos is an authentication protocol that uses 'tickets' to verify the identity of a user in an unprotected network.

Kerberos一种身份验证协议使用票据验证保护网络用户身份

In a Kerberos installation, each entity (individual users, computers, and services running on servers) has a principal associated with it.

Kerberos安装每个实体服务器运行单个用户计算机服务都拥有一个相关主体

But authentication service in Kerberos is just a component of key-distribution service.

身份验证服务Kerberos只是密钥分发服务一个组成部分

Fix: The Kerberos authentication protocol requires that the clock skew between a server and a client is no greater than 5 minutes.

解决方案Kerberos身份验证协议要求服务器客户机之间时钟不大5分钟

This will drop the existing sessions, and force a new session to be established and a Kerberos ticket received.

删除现有会话然后强制建立新会接收Kerberos票证

On the next page, name the realm as kerberos-realm and select realm type as Other and click Next as shown in Figure 10.

下一个页面域名设置kerberos-realm,选择Other作为类型然后单击Next10

It helps administrators restrict the Kerberos ticket lifetime issued to any user from that particular client AIX machine.

有助于管理员限制AIX客户机机器用户颁发Kerberos票据生命期

Except for clients C and E, every other client is able to communicate and work with the Kerberos server without any further changes.

除了客户端CE之外其他所有客户端可以Kerberos服务器通信需要任何修改

Windows SharePoint Services will disable Kerberos authentication in Internet Information Services on your server during installation.

安装期间WindowsSharePointServices服务器禁用Internet信息服务Kerberos身份验证

The Kerberos authentication protocol is a security protocol that verifies data to help ensure that both user and network services are safe.

Kerberos身份验证协议一种安全协议用于验证数据帮助确保用户网络服务安全

The Kerberos user information is stored in a database (usually a flat file on local filesystem in case of legacy configuration).

Kerberos用户信息存储一个数据库遗留配置常常文件系统文件)。

It then covered the general techniques being used in field of distributed security followed by details on Kerberos.

然后详细介绍分布式安全领域使用一般技术以及Kerberos

As a part of Kerberos interoperability, most of the Kerberos implementation supports a theory called inter-realm configuration.

作为Kerberos互操作性一部分大多数Kerberos实现支持一种称为领域配置思想

Moreover, AIX supports the storage of common user information, along with its relative Kerberos and LDAP attributes in the LDAP directory.

另外AIX支持LDAP目录存储常用用户信息以及相关KerberosLDAP属性

Kerberos essentially consists of a complex process called Kerberos authentication protocol (KAP).

Kerberos本质上包含一个称为Kerberos身份验证协议KAP复杂过程

Kerberos V5 and NTLM are used for server authentication, which verifies a Message Queuing server to a client.

KerberosV5NTLM用于服务器身份验证也就是客户端验证消息队列服务器

For a KDC in one realm to authenticate Kerberos users in a different realm, it must share a key with the KDC in the other realm.

如果一个领域KDC另一个领域Kerberos用户进行身份验证必须另一个领域KDC共享密钥

Thus, provisions for granular control and enhanced manageability of Kerberos credentials over AIX is another reason for riding up the grade.

因此提供控制可以增强Kerberos凭证管理另一个升级理由

Ideally, the client machine is configured so that the login process acquires Kerberos credentials for the user as he or she logs in.

理想情况配置客户机机器这样登录过程要求用户登录提供Kerberos凭证

Once identity is verified, kerberos provides the two computer with encryption keys for a secure communication session.

一旦身份得到验证KERBEROS协议计算机提供密匙进行安全通讯对话

Kerberos assumes that the clocks of all the machines in the realm are closely synchronized within the limit of the allowed time skew.

Kerberos假设所有机器允许时间相位限制紧密同步

However, this indicates that there may be a configuration issue preventing the use of Kerberos authentication.

但是预示存在配置问题禁止使用Kerberos身份验证

Principals and policies are the main administrative entities in a Kerberos setup.

主体Principals策略policiesKerberos设置主要管理实体

This developerWorks article is a very basic primer of Kerberos and a good place to start.

developerWorks文章提供非常基础Kerberos知识一个出发点

Kerberos authentication is an Internet standard authentication mechanism.

Kerberos身份验证一种标准Internet身份验证机制

is the Kerberos realm and must be shown in all uppercase letters.

Kerberos领域必须全部大写字母显示

Finally, we discuss the common problems that readers may encounter when setting up the Kerberos environment.

最后我们讨论设置Kerberos环境可能遇到一些常见问题

Kerberos also provides a system for authorization in the form of administering tokens or credentials.

Kerberos管理令牌凭据形式提供了一种授权系统

The login module can be interactive and prompt for a principal's Kerberos name or password.

登录模块可以交互式可以提示主体Kerberos用户密码

In the third section, I'll show how you can generate a cryptographic key used for encryption and decryption in Kerberos messaging.

第三展示如何生成一个用于Kerveros通信进行加密解密密钥

They also do not support the GSS-API plug-in authentication method, except Kerberos.

除了Kerberos之外它们支持GSS-API插件身份验证方法

In practical situations, the NFS domains may be configured with different Kerberos realms (administrative domains).

实际环境可能不同Kerberos领域管理配置NFS

IP gateways do not support either NTLM or Kerberos authentication.

IP网关支持NTLMKerberos身份验证

The result of Step 11 is a secret key that the Kerberos client can use to communicate with the Kerberos server.

第11结果一个Kerveros客户机可以用来Kerberos服务器进行通信