[1717] in Kerberos

home help back first fref pref prev next nref lref last post

Re: Management and Kerberos

daemon@ATHENA.MIT.EDU (Steve Lunt)
Thu Jan 16 14:26:53 1992

Date: Thu, 16 Jan 92 13:35:49 EST
From: Steve Lunt <lunt@ctt.bellcore.com>
To: tardo@nac.enet.dec.com
Cc: kerberos@Athena.MIT.EDU

	I would add krb.conf and krb.realm info to the list of things
that need to be managed centrally.  Does anyone have any ideas how to
do this?  Any code to implement it?  As it stands, you need to have
the same /etc/krb.conf file everywhere.  Every new realm and every
new server needs to be reflected in each krb.conf file all over.
Having such local config files is way too cumbersome for our
organization.  Version 5 uses the same machanism as Version 4 for
this.  Also, the global-to-local name translation (aname) should also
be managed centrally.

-- Steve

        Steven J. Lunt           |  lunt@bellcore.com  |  RRC 1L-213
Information Technology Security  |---------------------|  444 Hoes Lane
           Bellcore              |   (908) 699-4244    |  Piscataway, NJ 08854

home help back first fref pref prev next nref lref last post