Installing heimdal-kdc

Lothar Schilling ls at proasyl.de
Tue Mar 12 09:48:54 EDT 2019


Am 11.03.2019 um 20:14 schrieb Jeffrey Hutzelman:
>
> add, add_new_key, and ank are synonyms. The last dates back to krb4
>
>
> ------------------------------------------------------------------------
> *From:* Robbie Harwood <rharwood at redhat.com>
> *Sent:* Monday, March 11, 2019 13:49
> *To:* Lothar Schilling; kerberos at mit.edu
> *Subject:* Re: Installing heimdal-kdc
>
> Lothar Schilling <ls at proasyl.de> writes:
>
> > I got stuck again with putting heimdal-kdc to work.
> >
> > Having initiated the database I logged in locally (kadmin -l). There is
> > no such command as "add_principals" or "addprinc". Availabe are:
> > stash, kstash / dump / init / load / merge / add, ank, add_new_key /
> > passwd, cpw, change_password / delete, del, del_entry / del_enctype /
> > add_enctype / ext_keytab / get, get_entry / rename / modify /
> > privileges, privs / list / verify-password-quality, pwq / check / lock/
> > unlock / help, ? /  exit, quit /
>
> add_principals and addprinc are commands for MIT krb5's kadmin, not
> Heimdal.  Heimdal uses different commands; I think "ank" is the right
> one here, but it's been a while so I'll defer to those folk if they're
> around.
>
> Thanks,
> --Robbie
Finally solved the problem (which certainly was a newbie one...): In
MIT-kadmind.acl the placeholder for global permissions is *.
Heimdal-kadmind.acl uses "all".


More information about the Kerberos mailing list