Administering the Kerberos Server

Remote Administrator – kadmin_uiRemote Administrator – kadmin_ui

The kadmin_ui utility is the GUI-based Kerberos remote administrative utility that runs on the secondary security servers and clients.

Principals with administrative privileges use the remote administrator to maintain the database on the primary security server from their local workstation.

You can use kadmin_ui to accomplish the following tasks:

Add, modify, specify, or delete principals.

Search for a principal.

List administration permissions.

Extract service principal information to the service key table.

Add, modify, specify, or delete realms.

Edit the Default Group.

Manage admin_acl_file.

You must have a principal with administrative privileges to use the kadmin_ui utility. The functionality of the kadmin_ui is identical to that of kadminl_ui. See “Local Administrator – kadminl_ui” on page 134 for more information on how to administer the Kerberos database locally.

The following steps describe how to remotely administer the Kerberos database using the kadmin_ui window:

198

Chapter 8