Client-Friendly Cross-Realm Model for Kerberos 5

Document Type Expired Internet-Draft (individual)
Authors Ken'ichi Kamada  , Shoichi Sakane 
Last updated 2007-11-16
Stream (None)
Intended RFC status (None)
Expired & archived
pdf htmlized bibtex
Stream Stream state (No stream defined)
Consensus Boilerplate Unknown
RFC Editor Note (None)
IESG IESG state Expired
Telechat date
Responsible AD (None)
Send notices to (None)

This Internet-Draft is no longer active. A copy of the expired Internet-Draft can be found at


This document proposes a cross-realm traversal model, which is suitable for resource-limited clients, for Kerberos Version 5. This model relieves the clients of the traversal cost by two means. One moves the cost of consecutive Ticket-Granting Service (TGS) exchanges from clients to Key Distribution Centers (KDCs). The other reduces the traversal cost itself by generating a direct inter-realm relationship between two realms. The document describes behavior of clients and KDCs, but does not specify any wire format, which need to be specified separately.


Ken'ichi Kamada (
Shoichi Sakane (

(Note: The e-mail addresses provided for the authors of this Internet-Draft may no longer be valid.)