Kerberos delegation enables a Kerberos service to impersonate a Kerberos client user and get a service ticket for another service on behalf of the client user.
The services in the
CDI-PC domain
need to connect to other services to complete an operation. You can connect to other services through delegated authentication. In delegated authentication, when a user is authenticated by a service, the service uses those credentials to connect to another service. For example, when a pmcmd user accesses
CDI-PC Integration Service
, the service acts as the pmcmd user to authenticate with