[23248] in Kerberos
Kerberos authentication on multi-homed servers
daemon@ATHENA.MIT.EDU (Matthew Willis)
Mon Jan 24 15:57:39 2005
Mime-Version: 1.0 (Apple Message framework v619)
In-Reply-To: <20050119181018.3F0A13701F@arioch.imrryr.org>
Content-Type: text/plain; charset=US-ASCII; format=flowed
Message-Id: <7D17A853-6E3C-11D9-983A-000A95AE4346@ecornell.com>
Content-Transfer-Encoding: 7bit
From: Matthew Willis <mwillis@ecornell.com>
Date: Mon, 24 Jan 2005 14:16:45 -0500
To: kerberos@mit.edu
Errors-To: kerberos-bounces@mit.edu
I have a question on how folks are dealing with using Kerberos on
multi-homed servers, where each NIC has a different hostname.
For example, imagine a server with a "front-end" NIC connected to the
Internet (server.domain.foo), and a "back-end" NIC on the backup
network (server-backup.internal.domain.foo)/
If I want to ssh into the server via the back-end NIC, how can I copy
the existing "host/server.domain.foo@REALM.FOO" principal to also
handle "host/server-backup.internal.domain.foo@REALM.FOO" in
krb5.keytab?
-lilmatt
--
Matthew Willis
Information Technology
eCornell
________________________________________________
Kerberos mailing list Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos