hi in section 6.3. of <draft-ietf-rap-rsvp-better-identity-00.txt> the verification procedure of the user credentials are explained: "Kerberos: Send the Kerberos ticket to the KDC to obtain the session key. Using the session key authenticate the user.". why should the router/pdp send the ticket to the kdc? ciao hannes