[33444] in Kerberos

home help back first fref pref prev next nref lref last post

Re: Help: Login and Kerberos

daemon@ATHENA.MIT.EDU (Russ Allbery)
Sat Jun 4 14:31:54 2011

From: Russ Allbery <rra@stanford.edu>
To: Lee Eric <openlinuxsource@gmail.com>
In-Reply-To: <BANLkTi=tp3XhqtjOwWEba15Txn7_MSqhLQ@mail.gmail.com> (Lee Eric's
	message of "Sat, 4 Jun 2011 22:14:54 +0800")
Date: Sat, 04 Jun 2011 11:31:48 -0700
Message-ID: <87y61hzbvv.fsf@windlord.stanford.edu>
MIME-Version: 1.0
Cc: kerberos@mit.edu
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
Errors-To: kerberos-bounces@mit.edu

Lee Eric <openlinuxsource@gmail.com> writes:

> Hi all,

> I have set up a Kerberos server already in my network environment and
> clients can get users principle tkt by kinit. And I hope when users
> login they can get their principle automatically. So what I need to do
> with the system? Do I need to use PAM to achieve that?

Yup, assuming that you're talking about Linux or other UNIX systems.
That's the standard functionality of any Kerberos PAM module.

> And what password will use when user login?

The Kerberos password, usually, although you have various more complex
options available to you in PAM configuration if you want.

-- 
Russ Allbery (rra@stanford.edu)             <http://www.eyrie.org/~eagle/>
________________________________________________
Kerberos mailing list           Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos

home help back first fref pref prev next nref lref last post