Add second realm to existing KDC ?

chris listy at fastmail.fm
Tue Sep 10 12:49:39 EDT 2019


On 9/10/19 12:43 PM, Greg Hudson wrote:
> Add the new realm specification to the config files.  Make sure ports
> are specified in realm config, not in [kdcdefaults], so that each
> process can use separate ports.  Create a new database for the new realm.
> 
> Then arrange for krb5kdc to be run with "-r REALM" flags for each realm,
> and similarly for kadmind.  How you do this part is system-specific.



Greg, thank you very much.  I will give it a go.

I'd rather have a single KDC with a slightly wonky setup than 2 separate
vanilla KDCs.  :-)

Thanks,
chris


More information about the Kerberos mailing list