[29746] in Kerberos
RE: Problem Contact KDC
daemon@ATHENA.MIT.EDU (mohamed.chaari@orange-ftgroup.com)
Thu Apr 24 10:13:50 2008
Content-class: urn:content-classes:message
MIME-Version: 1.0
Date: Thu, 24 Apr 2008 16:08:34 +0200
Message-ID: <BAF83494CE653943A97B9F755016A06605FE3E08@ftrdmel1>
From: <mohamed.chaari@orange-ftgroup.com>
To: <raeburn@MIT.EDU>, <kerberos@MIT.EDU>
Content-Type: text/plain; charset="iso-8859-1"
Errors-To: kerberos-bounces@MIT.EDU
Content-Transfer-Encoding: 8bit
In the files krb5.conf, I wrote:
....
[realms]
EXAMPLE.COM = {
kdc = kerberos.example.com:88
admin_server = kerberos.example.com:749
default_domain = example.com
}
....
I understood that when the client ask for a ticket, it extract the kdc address from krb5.conf (kerberos.example.com).
-----Message d'origine-----
De : Ken Raeburn [mailto:raeburn@MIT.EDU] Envoyé : mercredi 23 avril 2008 17:31 À : zze-CHAARI Mohamed RD-CORE-ISS Cc : kerberos@mit.edu Objet : Re: Problem Contact KDC
On Apr 23, 2008, at 10:25, <mohamed.chaari@orange-ftgroup.com> <mohamed.chaari@orange-ftgroup.com
> wrote:
> **In the file example.zone:
>
> .... IN SOA example.com. root.example.com.
> ...
> ..
> IN NS example.com
> Kerberos IN A 192.168.1.254
> ...
>
> Other files of Kerberos are not changed.
>
> Can anyone help me please?
See http://web.mit.edu/kerberos/krb5-1.6/krb5-1.6.3/doc/krb5-admin.html#Using-DNS
for some examples of how to set up SRV records to point to the KDC.
We don't look up address records for a host named "kerberos" unless DNS SRV records or the config file says that that is the name of your KDC.
Ken
________________________________________________
Kerberos mailing list Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos