Войти
  • 1050Просмотров
  • 3 месяца назадОпубликованоCompass Security

Kerberos Deep Dive Part 1 - Introduction

Description Kerberos is the main authentication protocol in on-prem Windows environments and therefore plays a crucial role in the security posture of your infrastructure. Get a solid foundation in Kerberos with this technical overview of how the protocol works. We break down the key components like KDC, TGTs, and service tickets to help you understand authentication flows in modern Windows environments. The slides shown in the video can be found here: 0:00 About this series 2:10 Kerberos Basics 9:57 The KDC 11:03 Service Principal Names 16:07 Key Material 18:58 Ticket Types 21:57 Authentication Flow 25:21 Kerberos & Wireshark 30:44 Keytab Files 35:22 Decrypting Kerberos 39:23 AS-REQ 41:03 Pre-Authentication 44:22 AS-REP 49:38 TGS-REQ 53:51 TGS-REP 58:51 AP-REQ 1:03:46 AP-REP 1:06:53 Recap 1:13:00 PAC - Authorization Data 1:22:04 The krbtgt Account