Kerberos relies on which component to conduct authentication and authorization functions, using symmetric encryption?

Study for the CompTIA SecurityX Test. Equip yourself with comprehensive flashcards and multiple choice questions that include hints and explanations. Gear up for your certification exam!

Multiple Choice

Kerberos relies on which component to conduct authentication and authorization functions, using symmetric encryption?

Explanation:
Kerberos authentication hinges on a centralized Key Distribution Center that manages identities and issues proof of authentication in the form of tickets. The KDC uses symmetric encryption with shared keys for all principals, issuing a ticket-granting ticket after the user proves knowledge of their secret and then providing service tickets when the user requests access to a resource. This arrangement keeps passwords out of the network; a session key is established between the client and the service via the KDC to protect subsequent communications. The other options don’t fit because a Certificate Authority is part of PKI and uses public-key cryptography to issue certificates, RADIUS is an AAA protocol for remote access, and LDAP is a directory service used to store and look up user information rather than issuing Kerberos tickets.

Kerberos authentication hinges on a centralized Key Distribution Center that manages identities and issues proof of authentication in the form of tickets. The KDC uses symmetric encryption with shared keys for all principals, issuing a ticket-granting ticket after the user proves knowledge of their secret and then providing service tickets when the user requests access to a resource. This arrangement keeps passwords out of the network; a session key is established between the client and the service via the KDC to protect subsequent communications. The other options don’t fit because a Certificate Authority is part of PKI and uses public-key cryptography to issue certificates, RADIUS is an AAA protocol for remote access, and LDAP is a directory service used to store and look up user information rather than issuing Kerberos tickets.

Subscribe

Get the latest from Examzify

You can unsubscribe at any time. Read our privacy policy