Add second realm to existing KDC ?

chris listy at fastmail.fm
Tue Sep 10 12:25:22 EDT 2019


Hi, we've been running a very simple MIT krb5 KDC for a single realm for
years with no problems.  Now, we'd like to add a second realm to the
mix.  Can it easily be added to the same KDC?   We don't need
cross-realm trust or anything.

If possible, then what would be the steps?  Add new realm to krb5.conf &
kdc.conf ?  Create new master database?  Or could the existing database
be used?  New tgt for the new domain?  What else?

Sorry for basic question, but could not find any info online.

Thanks,
chris


More information about the Kerberos mailing list