Cisco ASA Series Cli Configuration Manual page 1855

Software version 9.0 for the services module
Hide thumbs Also See for ASA Series:
Table of Contents

Advertisement

Chapter 1
Configuring Clientless SSL VPN
4.
5.
6.
7.
Before Configuring KCD
To configure the ASA for cross-realm authentication, you must use the following commands:
Note
Steps 1 to 3 comprise protocol transition. After these steps, any user who authenticates to
ASA using a non-Kerberos authentication protocol is transparently authenticated to the key
distribution center using Kerberos.
ASA requests a service ticket from the key distribution center for the specific service that the user
wants to access.
The key distribution center returns a service ticket for the specific service to the ASA.
ASA uses the service ticket to request access to the web service.
The Web server authenticates the Kerberos service ticket and grants access to the service. The
appropriate error message is displayed and requires acknowledgement if there is an authentication
failure. If the Kerberos authentication fails, the expected behavior is to fall back to basic
authentication.
Understanding How KCD Works
Cisco ASA Series CLI Configuration Guide
1-47

Advertisement

Table of Contents
loading

Table of Contents