5.8. KRB_CRED Message Specification
5.8.1. KRB_CRED Definition
Message structure for credential forwarding:
pvno- Protocol version numbermsg-type- Message type (KRB-CRED)tickets- Sequence of tickets being forwardedenc-part- Encrypted part
Encrypted Part (EncKrbCredPart)
Contains:
ticket-info- Sequence of credential informationnonce- Optional noncetimestamp- Optional timestampusec- Optional microsecondss-address- Optional sender addressr-address- Optional recipient address
Ticket Info Structure
For each ticket:
key- Session keyprealm,pname- Optional principalflags- Optional ticket flagsauthtime,starttime,endtime- Optional timesrenew-till- Optional renew timesrealm,sname- Optional service infocaddr- Optional addresses
Usage
Used for forwarding credentials between systems or storing credentials securely.
Reference
For complete specification, refer to RFC 4120 Section 5.8.