The GSSAPI user authentication method for Secure Shell is defined in RFC 4462.
For Unix, GSSAPI offers an interoperable Kerberos authentication method. GSSAPI interoperates with standard Kerberos implementations that provide a GSSAPI mechanism. Additionally it allows Unix machines to login to Windows 2000 Active Directory domains.
GSSAPI offers integrated authentication for Windows 2000/2003 networks with Kerberos. This method utilizes domain accounts, since local accounts are not transferable across machine boundaries.