Web Services HOME

Kerberos Authentication for Web Resources

Private WebSpace works by authenticating users with their uniqnames and passwords to a web server. The passwords are sent over an SSL-encrypted link for security, and used to validate a randomly generated cookie. The cookie is then used to control access to web-based resources.

It has three major parts:

These parts use the University Kerberos servers to identify an individual, then use the University PT servers to permit individuals to particular resources. To help visualize how this works, this is the path of a typical request.

Several services at the University of Michigan are using this mechanism to protect their pages.

 

Page retrieved from public.websites.umich.edu on Tuesday, 07-May-2024 06:50:06 EDT
Page last modified Monday, 27-Mar-2000 15:23:18 EST