GSSAPI (Kerberos) Authentication

Reflection for Secure IT supports client authentication using Kerberos V5, a common GSSAPI An application programming interface that provides programs with access to security services. implementation. No password is required, nor is it necessary to distribute keys or certificates. Windows uses Kerberos for network authentication, and Reflection for Secure IT integrates with the Windows Kerberos implementation.

When this method is enabled, both the client and server can obtain user tickets automatically from the Windows credential cache, and use these tickets for authentication.

NOTE:When GSSAPI is enabled for client authentication, you can also configure the Secure Shell connection to use Kerberos for server authentication.