rfc-8129
Authentication Indicator in Kerberos Tickets
This document updates RFC 4120, as it specifies an extension in the Kerberos protocol. It defines a new authorization data type, AD-AUTHENTICATION-INDICATOR. The purpose of introducing this data type is to include an indicator of the strength of a client's authentication in service tickets so that application services can use it as an input into policy decisions.
updates
- rfc-4120 — The Kerberos Network Authentication Service (V5)