OS: Slackware 8.1 (tevens getest op Slack 9.1)
compile opties:
Ik volg feitelijk gewoon de howto
krb5.conf
relevante info dns: imdos.ath.cx.db
kdc.conf
kadm5.acl
Bij kadmin.local, kdb5_util en de andere programma's krijg ik constant dit :
-------------------------------------------------------------------------------
kdb5_util: Configuration file does not specify default realm while initializing the Kerberos admin interface
-------------------------------------------------------------------------------
Wat ik verder nog had gevonden:
Note: Please use real domain names when setting up Kerberos even if you intend to run it internally. This avoids DNS problems and assures inter-operation with other Kerberos realms.
en dat het aan mijn /etc/hosts file zou kunnen liggen; dus die slinger ik er ook bij
resolv.conf ook nog; gulle bui vandaag
compile opties:
code:
1
| ./configure --prefix=/usr --enable-shared --localstatedir=/etc --mandir=/usr/share/man --sysconfdir=/etc |
Ik volg feitelijk gewoon de howto
krb5.conf
code:
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
| <libdefaults>
default_realm = IMDOS.ATH.CX
clockskew = 300
default_tgs_enctypes = des-cbc-md5 des3-hmac-sha1 des-cbc-crc
default_tkt_enctypes = des-cbc-md5 des3-hmac-sha1 des-cbc-crc
permitted_enctypes = des-cbc-md5 des3-hmac-sha1 des-cbc-crc
krb4_config = /etc/krb.conf
krb4_realms = /etc/krb.realms
kdc_timesync = 1
ccache_type = 4
forwardable = true
proxiable = true
<realms>
IMDOS.ATH.CX = {
kdc = server.imdos.ath.cx:88
admin_server = server.imdos.ath.cx:749
}
<domain_realm>
.imdos.ath.cx = IMDOS.ATH.CX
<logging>
kdc = FILE:/var/log/kerberos/krb5kdc.log
admin_server = FILE:/var/log/kerberos/kadmin.log
default = FILE:/var/log/kerberos/krb5lib.log
<login>
krb4_convert = false
krb4_get_tickets = false |
relevante info dns: imdos.ath.cx.db
code:
1
2
3
4
5
6
7
| ldap CNAME server.imdos.ath.cx. kerberos CNAME server.imdos.ath.cx. _kerberos IN TXT "IMDOS.ATH.CX" _kerberos-master._udp IN SRV 0 0 88 server.imdos.ath.cx. _kerberos-adm._tcp IN SRV 0 0 749 server.imdos.ath.cx. _kpasswd._udp IN SRV 0 0 464 server.imdos.ath.cx. _ldap._tcp.imdos.ath.cx IN SRV 0 0 389 server.imdos.ath.cx. |
kdc.conf
code:
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
| [kdcdefaults]
kdc_ports = 750,88
[realms]
IMDOS.ATH.CX = {
kdc_ports = 750,88
max_life = 10h 0m 0s
max_renewable_life = 7d 0h 0m 0s
database_name = /etc/krb5kdc/principal
admin_keytab = FILE:/etc/krb5kdc/kadm5.keytab
acl_file = /etc/krb5kdc/kadm5.acl
key_stash_file = /etc/krb5kdc/.k5.
}
[logging]
kdc = FILE:/var/log/kdc.log
admin_server = FILE:/var/log/kadmin.log |
kadm5.acl
code:
1
2
3
4
5
| kadmin/admin@IMDOS.ATH.CX * root/admin@IMDOS.ATH.CX * imdos@IMDOS.ATH.CX * krbadm@IMDOS.ATH.CX * */*@IMDOS.ATH.CX i |
Bij kadmin.local, kdb5_util en de andere programma's krijg ik constant dit :
-------------------------------------------------------------------------------
kdb5_util: Configuration file does not specify default realm while initializing the Kerberos admin interface
-------------------------------------------------------------------------------
Wat ik verder nog had gevonden:
Note: Please use real domain names when setting up Kerberos even if you intend to run it internally. This avoids DNS problems and assures inter-operation with other Kerberos realms.
en dat het aan mijn /etc/hosts file zou kunnen liggen; dus die slinger ik er ook bij
code:
1
2
3
| # For loopbacking. 127.0.0.1 localhost localhost 192.168.1.1 server.imdos.ath.cx server |
resolv.conf ook nog; gulle bui vandaag
code:
1
2
3
4
| nameserver 127.0.0.1 nameserver 62.45.46.46 nameserver 62.45.45.45 domain imdos.ath.cx |
[ Voor 12% gewijzigd door imdos op 12-05-2004 19:05 . Reden: toevoeging ]
pvoutput. Waarom makkelijk doen, als het ook moeilijk kan! Every solution has a new problem