Configuring the Kerberos Server With C-Tree Backend

Autoconfiguring the Kerberos ServerAutoconfiguring the Kerberos Server

An automated tool named krbsetup is provided to autoconfigure your

Kerberos server. Use this tool to:

Configure the Kerberos Server with either LDAP or C-Tree as the backend database.

Unconfigure the server.

Start the kdcd and the kadmind daemons.

NOTE

You must start the kpropd daemon manually if you have opted for

 

C-Tree as the backend database.

 

 

Stop the kdcd, kadmind, and kpropd daemons.

The krbsetup tool is installed in the following directory:

/opt/krb5/sbin

This tool automatically creates the following files and places them in the /opt/krb5 directory:

krb.conf

krb.realms

krb5_ldap.conf

krb5_schema.conf

krb5_map.conf

This tool allows you to:

Specify whether you want to configure your Kerberos server with either LDAP or C-Tree as the backend database.

Specify whether you want to configure your Kerberos server as either a primary security server or a secondary security server.

Customize your realm name.

Provide an option to create a stash file.

Chapter 5

69