Difference between revisions of "Kerberos"

From wikieduonline
Jump to navigation Jump to search
Tags: Mobile web edit, Mobile edit
Tags: Mobile web edit, Mobile edit
Line 6: Line 6:
  
 
* Binaries: <code>[[ktutil]]</code>, <code>[[klist]]</code>, <code>[[kinit]]</code>
 
* Binaries: <code>[[ktutil]]</code>, <code>[[klist]]</code>, <code>[[kinit]]</code>
 
 
  
 
A Kerberos realm is the domain over which a Kerberos authentication server has the authority to authenticate a user, host or service. A realm name is often, but not always the upper case version of the name of the DNS domain over which it presides.
 
A Kerberos realm is the domain over which a Kerberos authentication server has the authority to authenticate a user, host or service. A realm name is often, but not always the upper case version of the name of the DNS domain over which it presides.
  
 +
== Configuration files ==
 +
* <code>/etc/[[krb5.conf]]</code><ref>https://linux.die.net/man/5/krb5.conf</ref>
  
 +
== Commands ==
 +
* <code>[[kinit admin]]</code>
  
== Configuration files ==
 
* <code>/etc/[[krb5.conf]]</code><ref>https://linux.die.net/man/5/krb5.conf</ref>
 
  
 
== Activities ==
 
== Activities ==

Revision as of 11:10, 13 July 2020

Kerberos is a computer-network authentication protocol that works on the basis of tickets to allow nodes communicating over a non-secure network to prove their identity to one another in a secure manner. Kerberos uses UDP port 88 by default

At least two implementations are available, [Heimdal]( https://www.h5l.org/) and [MIT](https://web.mit.edu/kerberos/).

OpenSSH implements Kerberos support since early versions.

A Kerberos realm is the domain over which a Kerberos authentication server has the authority to authenticate a user, host or service. A realm name is often, but not always the upper case version of the name of the DNS domain over which it presides.

Configuration files

Commands


Activities

  1. Install Kerberos KDC Server and Client in Linux: apt install krb5-kdc krb5-admin-server krb5-config -y[2]
  2. Understand why time synchronization and DNS plays an important role in order to work KDC properly[3]
  3. Read about SPNEGO


Related terms

See also

  • https://linux.die.net/man/5/krb5.conf
  • https://linuxconfig.org/how-to-install-kerberos-kdc-server-and-client-on-ubuntu-18-04
  • https://linuxconfig.org/how-to-install-kerberos-kdc-server-and-client-on-ubuntu-18-04
  • Advertising: