Administration

kadmind

kadmind

The kadmind command starts the administrative server. This administrative server runs on Kerberos server that stores the Kerberos principal database. The kadmind accepts password change requests and remote requests to administer the information in this database.

kadmind requires the following configuration files to be set for it to work appropriately:

krb.conf The Kerberos configuration file contains configuration information for the Kerberos Server. Refer to “krb.conf” on page 69, for more information.

krb.realms The Kerberos realms file maps hostnames to their realms names. Refer to “krb.realms” on page 73, for more information.

ACL file kadmind’s access control list (ACL) that lists the various principals along with their respective permissions. This file is located in the /krb5 directory. Refer to “admin_acl_file” on page 95, for more information.

Password This files controls the password policy for all the Policy File Principals. For more information, refer to “Password

Policy File” on page 101.

94

Chapter 6

Page 94
Image 94
HP UX Kerberos Data Security Software manual Kadmind