[24044] in Kerberos

home help back first fref pref prev next nref lref last post

Kerberos keytab question

daemon@ATHENA.MIT.EDU (Manel Euro)
Mon Jun 6 19:45:58 2005

Message-ID: <BAY12-F11499AA1BAAFB32009DD3F9CFB0@phx.gbl>
From: "Manel Euro" <euro_32@hotmail.com>
To: kerberos@mit.edu
Date: Mon, 06 Jun 2005 23:45:10 +0000
Mime-Version: 1.0
Content-Type: text/plain; format=flowed
Errors-To: kerberos-bounces@mit.edu

Hello,

I have the following configuration:

I have two realms, A.ABC.COM and B.ABC.COM and one openldap dit 
(dc=abc,dc=com).
I have the master openldap server in location A with the following entry in  
A.ABC.COM realm database: ldap/master.abc.com@A.ABC.COM and the respective 
keytab on the master ldap server.
I have the slave openldap server in location B with a krb5.keytab with an 
entry for ldap/slave.abc.com@B.ABC.COM.

I am setting replication between the two sites with a Kerberos principal 
called replicator.
My question is: can I use the same keytab to hold the keys to the same 
service but for different realms?

I will install a realm ABC.COM to have hierarchical relation ships but for 
now I wanted to have the above configuration.

Best regards,

M

_________________________________________________________________
Don’t just search. Find. Check out the new MSN Search! 
http://search.msn.click-url.com/go/onm00200636ave/direct/01/

________________________________________________
Kerberos mailing list           Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos

home help back first fref pref prev next nref lref last post