Kerberos
Configuration is the same for heimdal or mit-krb5.
File: /etc/krb5.conf
[libdefauls]
default_realm = YOUR-DOMAIN.LOCAL
dns_lookup_realm = true
dns_lookup_kdc = true
ticket_lifetime = 24h
renew_lifetime = 7d
rdns = false
forwardable = yes
Testing
# kinit domainuser@YOURDOMAIN.LOCAL