Encryption hides data that flows across a network by making it
unidentifiable. A client encrypts data and the server decrypts it. To ensure
that encryption works correctly, you must use the same encryption type that
is specified on the Kerberos server or the other communicating application.
If these encryption types do not match, then encryption will fail. You can
add encryption values for both TGT and TGS.
Note: The default encryption values
for the TGT and TGS are des-cbc-crc and des-cbc-md5. During configuration
default encryption values are set. You can add other encryption values for
tickets to the configuration by completing these steps: