[36868] in Kerberos
Re: kadmin remote as a regular user
daemon@ATHENA.MIT.EDU (Benjamin Kaduk)
Wed Apr 1 12:04:51 2015
Date: Wed, 1 Apr 2015 12:04:15 -0400 (EDT)
From: Benjamin Kaduk <kaduk@mit.edu>
To: Rainer Krienke <krienke@uni-koblenz.de>
In-Reply-To: <551BDE9D.1050804@uni-koblenz.de>
Message-ID: <alpine.GSO.1.10.1504011203460.22210@multics.mit.edu>
MIME-Version: 1.0
Cc: kerberos@mit.edu
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
Errors-To: kerberos-bounces@mit.edu
On Wed, 1 Apr 2015, Rainer Krienke wrote:
> The ACL file /var/lib/kerberos/krb5kdc/kadm5.acl on the server looks
> like this:
> #
> admin/admin *
> kadmin/admin *
> kadmin/admin@MYREALM.DE *
> john/admin *
> john/admin@MYREALM.DE *
Did you restart kadmind after changing the kadm5.acl?
-Ben Kaduk
________________________________________________
Kerberos mailing list Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos