Kerberos

From Q
Revision as of 13:56, 30 April 2013 by Tgurr (talk | contribs) (Created page with "Configuration is the same for heimdal or mit-krb5. {{File|/etc/krb5.conf| <pre> [libdefaults] ticket_lifetime = 600 default_realm = YOURDOMAIN.LOCAL [realms]...")
(diff) ← Older revision | Latest revision (diff) | Newer revision → (diff)
Jump to navigation Jump to search

Configuration is the same for heimdal or mit-krb5.

File: /etc/krb5.conf
[libdefaults]
        ticket_lifetime = 600
        default_realm = YOURDOMAIN.LOCAL

[realms]
        YOURDOMAIN.LOCAL = {
        kdc = domaincontroller.yourdomain.local:88
        admin_server = domaincontroller.yourdomain.local:464
        }

[domain_realm]
        .yourdomain.local = YOURDOMAIN.LOCAL

[kdc]
        profile = /etc/krb5kdc/kdc.conf

[logging]
        default = SYSLOG:NOTICE:DAEMON
        kdc = FILE:/var/log/krb5kdc.log
        admin_server = FILE:/var/log/kadmin.log
        default = FILE:/var/log/krb5lib.log