Amazon.com, Inc.
Authentication in a multi-tenant environment

Last updated:

Abstract:

Techniques are described for enabling a Kerberos-based authentication system to provide a client with access to a plurality of unmodifiable components that require plain text passwords. Such an approach enables a user to sign into a distributed computer system using a single password, and access multiple components that require different passwords without the need to enter a second password. By using Kerberos based authentication, passwords are not unnecessarily sent throughout distributed computing system where they may be vulnerable. A proxy key distribution center can be used to manage passwords or other credentials on behalf of various clients, which can be used with various processes discussed herein.

Status:
Grant
Type:

Utility

Filling date:

11 May 2018

Issue date:

8 Feb 2022