[23243] in Kerberos

home help back first fref pref prev next nref lref last post

AW: AW: AW: Example for kinit -S ... ?

daemon@ATHENA.MIT.EDU (Barbat, Calin)
Mon Jan 24 09:52:54 2005

content-class: urn:content-classes:message
MIME-Version: 1.0
Content-Type: text/plain;
	charset="iso-8859-1"
Date: Mon, 24 Jan 2005 15:52:03 +0100
Message-ID: <7A05A249A3DE11459B154221006BDE6F03384D52@exc-mch01.mch.osram.de>
From: "Barbat, Calin" <c.barbat@osram.de>
To: "Roland Dowdeswell" <elric@imrryr.org>
Content-Transfer-Encoding: 8bit
cc: kerberos@mit.edu
Errors-To: kerberos-bounces@mit.edu

Hello Roland,

what is the effect/implication of your command? Will it get the caller of kinit a ticket for the specified service SAPServiceWD2..., or will it use the specified SAPServiceWD2... as alias for the caller?
Can you explain to me how to configure kerberized services which use the GSS API (i.e. ftp, SAP R/3) and need to communicate with each other?

Best regards,

Calin.



-----Ursprüngliche Nachricht-----
Von: Roland Dowdeswell [mailto:elric@imrryr.org]
Gesendet: Montag, 24. Januar 2005 15:33
An: Barbat, Calin
Cc: Juan Manuel Sestelo; kerberos@mit.edu
Betreff: Re: AW: AW: Example for kinit -S ... ? 


On 1106555889 seconds since the Beginning of the UNIX epoch
"Barbat, Calin" wrote:
>

>As wd1adm: kinit -S SAPServiceWD2/<domain>@<REALM>
>As wd2adm: kinit -S SAPServiceWD1/<domain>@<REALM>
>
>But then I'd need to provide passwords, if I understand it well. Which I want 
>to avoid, in order to make it cron-able without writing passwords in the cront
>ab. Is it possible?

If you have the keys in a keytab, then:

	$ kinit -S SAPServiceWD2/<domain>@<REALM> -kt <keytab>

will get the key from the file <keytab>.

--
    Roland Dowdeswell                      http://www.Imrryr.ORG/~elric/


________________________________________________
Kerberos mailing list           Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos

home help back first fref pref prev next nref lref last post