8 Index

A

Abstract data model

   KDC

   service

Applicability

C

Capability negotiation

Change tracking

CNAME-IN-ADDL-TKT

CNAME-IN-ADDL-TKT message

D

Data model - abstract

   KDC

   service

E

Examples

   S4U2proxy

   S4U2self multiple realm

   S4U2self single realm

F

Fields - vendor-extensible

G

Glossary

H

Higher-layer triggered events

   KDC

   service

      overview

      S4U2proxy

      S4U2self

I

Implementer - security considerations

Index of security parameters

Informative references

Initialization

   KDC

   service

Introduction

K

KDC

   abstract data model

   higher-layer triggered events

   initialization

   local events

   message processing

      S4U2proxy KRB_TGS_REQ - receiving

      S4U2self KRB_TGS_REQ - receiving

   sequencing rules

      S4U2proxy KRB_TGS_REQ - receiving

      S4U2self KRB_TGS_REQ - receiving

   timer events

   timers

L

Local events

   KDC

   service

M

Message processing

   KDC

      S4U2proxy KRB_TGS_REQ - receiving

      S4U2self KRB_TGS_REQ - receiving

   service

      KRB-ERR-BADOPTION - receiving

      referral - receiving

      S4U2proxy KRB_TGS_REP - receiving

      S4U2proxy KRB_TGS_REQ - sending

      S4U2self KRB_TGS_REP - receiving

      S4U2self KRB_TGS_REQ - sending

Message processing events

   service

      overview

Messages

   CNAME-IN-ADDL-TKT

   PA_S4U_X509_USER

   PA-FOR-USER

   PA-PAC-OPTIONS

   S4U_DELEGATION_INFO

   syntax

   transport

Multiple realm example - S4U2self

N

Normative references

O

Overview

Overview (synopsis)

P

PA_S4U_X509_USER

PA_S4U_X509_USER message

PA-FOR-USER

PA-FOR-USER message

PA-PAC-OPTIONS message

Parameter index - security

Parameters - security index

Preconditions

Prerequisites

Product behavior

R

References

   informative

   normative

Relationship to other protocols

S

S4U_DELEGATION_INFO

S4U_DELEGATION_INFO message

S4U2proxy

   example

   overview

S4U2self

   multiple realm example

   overview

   single realm example

Security

   implementer considerations

   parameter index

Sequencing rules

   KDC

      S4U2proxy KRB_TGS_REQ - receiving

      S4U2self KRB_TGS_REQ - receiving

   service

      KRB-ERR-BADOPTION - receiving

      overview

      referral - receiving

      S4U2proxy KRB_TGS_REP - receiving

      S4U2proxy KRB_TGS_REQ - sending

      S4U2self KRB_TGS_REP - receiving

      S4U2self KRB_TGS_REQ - sending

Service

   abstract data model

   higher-layer triggered events

      overview

      S4U2proxy

      S4U2self

   initialization

   local events

   message processing

      KRB-ERR-BADOPTION - receiving

      referral - receiving

      S4U2proxy KRB_TGS_REP - receiving

      S4U2proxy KRB_TGS_REQ - sending

      S4U2self KRB_TGS_REP - receiving

      S4U2self KRB_TGS_REQ - sending

   message processing events

      overview

   overview

   sequencing rules

      KRB-ERR-BADOPTION - receiving

      overview

      referral - receiving

      S4U2proxy KRB_TGS_REP - receiving

      S4U2proxy KRB_TGS_REQ - sending

      S4U2self KRB_TGS_REP - receiving

      S4U2self KRB_TGS_REQ - sending

   timer events

   timers

Service for User to Proxy (S4U2proxy) extension

Service for User to Self (S4U2self) extension

Single realm example - S4U2self

Standards assignments

Synopsis

Syntax

T

Timer events

   KDC

   service

Timers

   KDC

   service

Tracking changes

Transport

Triggered events - higher-layer

   KDC

   service

      overview

      S4U2proxy

      S4U2self

U

User identification

   realm and name

   user's certificate

V

Vendor-extensible fields

Versioning

Show: