Heimdal and Windows 2000 Kerberos - how to get them to play together

Westerlund, Assar and Danielsson, Johan (2001) Heimdal and Windows 2000 Kerberos - how to get them to play together. In: Proceedings of the Usenix 2001 Annual Technical Conference: FREENIX Track, 25-30 June 2001, Boston, MA, USA.

Full text not available from this repository.

Official URL:


As a practical means of achieving better security and single sign-on, the Kerberos network authentication system has been in wide use in the Unix world for many years. Microsoft has included its own implementation in Windows 2000, replacing the NTLM authentication system from older Windows NT versions. This facilitates sharing account information between Unix and Windows machines, as there is no need to keep different passwords. Although Microsoft's Kerberos implementation mostly follows the specification, there are a number of deviations and extensions, not all of which are well documented. Consequently, it is not always obvious how to fit Windows 2000 clients and servers into an existing Kerberos environment. In this paper we discuss the differences between the two systems and describe how we got our Kerberos implementation, Heimdal, to work with Windows 2000.

Item Type:Conference or Workshop Item (Paper)
ID Code:3099
Deposited On:16 Jul 2008
Last Modified:18 Nov 2009 16:17

Repository Staff Only: item control page