Configuring the Kerberos Server with LDAP

Autoconfiguring the Kerberos Server With LDAP IntegrationAutoconfiguring the Kerberos Server WithLDAP Integration

An automated tool named krbsetup is provided to autoconfigure your Kerberos server. For more information on the krbsetup tool, see “Autoconfiguring the Kerberos Server” on page 69.

Configuring the Kerberos Server with LDAP

Complete the following procedure to autoconfigure your Kerberos server with LDAP:

Step

1.

Run the /opt/krb5/sbin/krbsetup utility.

Step

2.

Select one of the following options:

 

 

1)

Configure the server

 

 

2)

Start the Kerberos daemons

 

 

3)

Stop the Kerberos daemons

 

 

4)

Un-configure the Server

 

 

5)

Exit

 

 

6)

Help

Step

3.

To configure the Kerberos Server, select option 1.

Step

4.

To configure the Kerberos Server with LDAP backend, select option 1.

Step

5.

To remove the existing Kerberos server configuration, press y and press

 

 

n to retain the existing database.

 

 

 

NOTE

 

Ensure that you have a dump of the existing Kerberos database, before

 

 

you configure the Kerberos server with LDAP. “Migrating to a Newer

 

 

Version of the Kerberos Server” on page 41, for more information.

 

 

 

Step

6.

Select one of the following options to configure the security mechanism of

your LDAP-based Kerberos server: 1. SSL

2. Password

88

Chapter 6