Windows 2000 Authentication Process

So, how is SSO accomplished in a Windows 2000 environment? The main component of Kerberos security is the Key Distribution Center (KDC). The KDC runs on each Windows 2000 domain controller and is part of the Activity Directory (AD). The AD stores all user information passwords, group membership, and so on. To visualize how this happens, you will walk through the process using Jim, a typical network user (see Figure 11.2).

Figure 11.2. Logging on a access network resource in a Windows 2000 environment.

Jim presses Ctrl+Alt+Del to start the logon process. Jim then types in his user account and password. Jim's ...

Get Microsoft® Windows® 2000 Security Handbook now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.