[23099] in Kerberos

home help back first fref pref prev next nref lref last post

Beginner that is lost

daemon@ATHENA.MIT.EDU (Fletch)
Thu Dec 30 20:24:40 2004

Message-ID: <c2ce2b26041230172276c4310@mail.gmail.com>
Date: Thu, 30 Dec 2004 20:22:07 -0500
From: Fletch <fletch72@gmail.com>
To: kerberos@mit.edu
In-Reply-To: <20041230224229.GA12302@garbarek.hsc.fr>
Mime-Version: 1.0
Content-Type: text/plain; charset=US-ASCII
Content-Transfer-Encoding: 7bit
Reply-To: Fletch <fletch72@gmail.com>
Errors-To: kerberos-bounces@mit.edu

I am working to get a kerberso server running using the MIT Kerberos.  
I spent quite a bit today on it and have gotten to this point:

I have a test domain setup on windows 2003 and then I installed "leash".
I created a realm and kdc on that same windows box.
I created a transitive trust on the windows box to the realm

I then was able to get Leash to show me some tickets.

I am now stuck on:
Should the kdc and realm be on that same windows box?
I just want to be able to test this but what is the easiest way to
test that my MIT kerberos system is using the dc to authenticate me? 
So if I have a windows xp client how can I tell if the kerberos server
is authenticating me versus just the ad domain controller?

I guess I could try and get the client installed on a linux system but
and then create the realm on that box but I don't know if that is the
best option?  I also have not been able to find KAdmin anywhere for
windows?  Is that because it is not supposed to be run on windows or
what is going on?
________________________________________________
Kerberos mailing list           Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos

home help back first fref pref prev next nref lref last post