ACTIVE DIRECTORY 2
1.HOW AUTHENTICATION WORKS.
ACTIVE DIRECTORY 2
1.HOW AUTHENTICATION WORKS.
- In windows domain all the credentials are stored in the domain controller(DC)
- When every an user tries to authenticate to a service using the domain credentials, the service asks the domain controller if the the provided credentials are correct.
- 1 AUTHENTICATION TYPES
— Two protocols are used for network authentication
- Kerberos: Used by any recent version of Windows
- NetNTML: An old Windows login method kept so older systems still work
— — KEBEROS AUTENTICATION
- User who logs using the kerberos will be assigned tickets.
- Tickets are a proof of previous authentication, using which a user can use the service after providing the ticket he has!!
- eg: You buy a ticket before boarding a train and when the Ticket checker comes, you provide him the ticket you have and if you don’t have a ticket you wont be allowed in the train!! (a similar example of how kerberos works)
— NETNTLM AUTHENTICATION
- If you request authentication to a server, the server with send you a random number as a challenge to proof your identity
- You prove you have a valid ticket without exposing the actual details directly.
- eg: When you give the ticket checker your ticket he’s checks you seat number and name and confirm if it matches with the data he has in his device, if it didn’t match you won’t be allowed!
— — — — — — — — — — — — — — — — THANKYOU — — — — — — — — — — — — — — —
AUTHOR- Ferido Fernando
메타데이터
- post_id
- e834db4bc309
- slug
- active-directory-2-e834db4bc309
- url
- https://medium.com/@feridofdo26/active-directory-2-e834db4bc309
- canonical_url
- https://medium.com/@feridofdo26/active-directory-2-e834db4bc309
- author_url
- https://medium.com/@feridofdo26
- status
- ok
- fetched_at
- 2026-06-26 03:39:16