You can select the encryption types for ticket-granting tickets (TGT) and ticket-granting service (TGS).
Encryption hides data that flows across a network by making it unidentifiable. A client encrypts data and the server decrypts it. To ensure that encryption works correctly, use the same encryption type that is specified on the Kerberos server or the other communicating application. If these encryption types do not match, encryption fails. You can add encryption values for both TGT and TGS.
The default encryption values for the TGT and TGS are des-cbc-crc and des-cbc-md5. During configuration, default encryption values are set. You can add other encryption values for tickets to the configuration by completing these steps: