Kerberos is a secure authentication protocol used in Windows environments. It uses a ticket system and strong encryption to verify identities, even on open networks. In an Active Directory setup, the Domain Controller acts as the Key Distribution Center (KDC) with two main parts: the Authentication Service (AS) and the Ticket Granting Service (TGS), which issue tickets to confirm identities.


Key Components

image.avif

                                                    **Key Distribution Center (KDC)**

image (1).png

                                                         **Authentication Server (AS)**

image.png

                                                 **Ticket Granting Server (TGS)**

kerberos-actors-secrets-1536x760.webp