KDC relies on the Active Directory as the store for security principals and policy
Kerberos SSPI providermanages credentials andsecurity context;LSA manages ticket cache
Server
Session ticket authorization data supports NT access control model
Client
Windows NTDirectory Server
Key DistributionCenter (KDC)
Windows NT Domain Controller
Previous slide | Next slide | Back to first slide | View graphic version |