AES Encryption with HMAC-SHA2 for Kerberos 5
National Security Agency
The MITRE Corporation
This document specifies two encryption types and two corresponding checksum types for Kerberos 5. The new types use AES in CBC mode with plaintext padding for confidentiality and HMAC with a SHA-2 hash for integrity.