[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: Heimdal and OpenBSD 2.6



Hi,

verify_krb5_conf does not complain anything.  

itoi@alice :) pwd
/afs/citi.umich.edu/projects/sinciti/smartcards/src/heimdal/i386_obsd26/lib/krb5
itoi@alice :) ./verify_krb5_conf /etc/krb5.conf

> When I try to copy that into /etc/krb5.conf and test running on an
> OpenBSD box (actually running 2.7 - but I don't think it should
> matter).  So there's a program called `verify_krb5_conf' that tries to
> read and give you any useful diagnostics on the krb5.conf syntax, can
> you try running that?  And please attach the complete configuration
> file, since there might be some whitespace that does bad things.  But
> the first thing for you to try is to remove the krb5.conf file and see
> if it works then, which is should, since you have a cname
> kerberos.citi.umich.edu.

> Thanks for your patience.

Thank YOU for your patience. :)

--
Concentration .. Naomaru Itoi
[libdefaults]
        ticket_lifetime = 600
        default_realm = CITI.UMICH.EDU
#        default_realm = HELL.CITI.UMICH.EDU
        default_tkt_enctypes = des-cbc-md5,des-cbc-crc
	default_tgs_enctypes = des-cbc-md5,des-cbc-crc
        forwardable = true


[realms]
	ALICE.CITI.UMICH.EDU = {
                kdc = alice.citi.umich.edu:88
                admin_server = alice.citi.umich.edu:749
                default_domain = alice.citi.umich.edu
        }

	HELL.CITI.UMICH.EDU = {
                kdc = hell.citi.umich.edu:88
                admin_server = hell.citi.umich.edu:749
                default_domain = hell.citi.umich.edu
        }

        CITI.UMICH.EDU = {
                kdc = babble.citi.umich.edu:88
                admin_server = babble.citi.umich.edu:749
                default_domain = citi.umich.edu
        }

	UMICH.EDU = {
		kdc = fear.ifs.umich.edu:88
		kdc = surprise.ifs.umich.edu:88
		kdc = ruthless.ifs.umich.edu:88
		admin_server = fear.ifs.umich.edu:749
		default_domain = umich.edu
	}

        ENGIN.UMICH.EDU = {
                kdc = k5master.engin.umich.edu:88
                admin_server = k5master.engin.umich.edu:749
                default_domain = engin.umich.edu
        }

	CMF.NRL.NAVY.MIL = {
		kdc = guardian.cmf.nrl.navy.mil
		kdc = forbin.cmf.nrl.navy.mil
		admin_server = guardian.cmf.nrl.navy.mil
		default_domain = cmf.nrl.navy.mil
	}

	FEDERATION.ATD.NET = {
		kdc = federation.cmf.nrl.navy.mil
		admin_server = federation.cmf.nrl.navy.mil
		default_domain = federation.atd.net
	}

        NRL.NAVY.MIL = {
		kdc = kdc1.nrl.navy.mil
		kdc = kdc2.nrl.navy.mil
		kdc = kdc3.nrl.navy.mil
		admin_server = kdc1.nrl.navy.mil
		default_domain = nrl.navy.mil
	}

	LCP.NRL.NAVY.MIL = {
		kdc = lcp.nrl.navy.mil
		kdc = fozzie.lcp.nrl.navy.mil
		kdc = sherlock-hemlock.lcp.nrl.navy.mil
		admin_server = lcp.nrl.navy.mil
		default_domain = lcp.nrl.navy.mil
		v4_instance_convert = {
			lcp = lcp.nrl.navy.mil
		}
	}

	CS.NRL.NAVY.MIL = {
		kdc = keymaster.itd.nrl.navy.mil
		kdc = gatemaster.itd.nrl.navy.mil
		admin_server = keymaster.itd.nrl.navy.mil
	}

        ARL.MIL = {
                kdc = KRB5.ARL.MIL
                kdc = KRB6.ARL.MIL
                admin_server = KRB5.ARL.MIL
                default_domain = ARL.MIL
        }
        ARL.HPC.MIL = {
                kdc = KDC1.ARL.HPC.MIL
                kdc = KDC2.ARL.HPC.MIL
                admin_server = KDC1.ARL.HPC.MIL
        }
        WSMR.ARL.MIL = {
                kdc = KRBII.ARL.MIL
                admin_server = KRBII.ARL.MIL
        }
        ASC.HPC.MIL = {
                kdc = kdc1.asc.hpc.mil
                admin_server = kdc1.asc.hpc.mil
        }
        NAVO.HPC.MIL = {
                kdc = kdc1.navo.hpc.mil
                admin_server = kdc1.navo.hpc.mil
        }
        WES.HPC.MIL = {
                kdc = kdc1.wes.hpc.mil
                admin_server = kdc1.wes.hpc.mil
        }

	NOSC.MIL = {
		kdc = pumbaa.nosc.mil
		kdc = scar.nosc.mil
		admin_server = pumbaa.nosc.mil
		default_domain = nosc.mil
	}

	HPCMO.HPC.MIL = {
		kdc = kdc1.hpcmo.hpc.mil
		admin_server = kdc1.hpcmo.hpc.mil
		default_domain = hpcmo.hpc.mil
	}

        FNC.GOV = {
                kdc = surely.arl.mil
                admin_server = surely.arl.mil
        }

	NCSA.EDU = {
		kdc = kerberos.ncsa.uiuc.edu:88
		kdc = kerberos-1.ncsa.uiuc.edu:88
		kdc = kerberos-2.ncsa.uiuc.edu:88
		admin_server = kerberos.ncsa.uiuc.edu:749
		default_domain = ncsa.uiuc.edu
	}

	UMR.EDU = {
		kdc = kdc.umr.edu
		kdc = kdc-1.umr.edu
		admin_server = kdc.umr.edu
		default_domain = umr.edu
	}

	PANIX.COM = {
		kdc = juggler.panix.com
		kdc = trinity.panix.com
		admin_server = juggler.panix.com
		default_domain = panix.com
	}

[domain_realm]
        .citi.umich.edu = CITI.UMICH.EDU
        citi.umich.edu = CITI.UMICH.EDU
        .engin.umich.edu = ENGIN.UMICH.EDU
        engin.umich.edu = ENGIN.UMICH.EDU
	si.umich.edu = UMICH.EDU
	.si.umich.edu = UMICH.EDU
	imap.itd.umich.edu = UMICH.EDU
	.imap.itd.umich.edu = UMICH.EDU
	rs.itd.umich.edu = UMICH.EDU
	.rs.itd.umich.edu = UMICH.EDU
	ifs.umich.edu = UMICH.EDU
	.ifs.umich.edu = UMICH.EDU
	citi.umich.edu = UMICH.EDU
	.citi.umich.edu = UMICH.EDU
	cscar.umich.edu = UMICH.EDU
	.cscar.umich.edu = UMICH.EDU
	css.itd.umich.edu = UMICH.EDU
	.css.itd.umich.edu = UMICH.EDU
	us.itd.umich.edu = UMICH.EDU
	.us.itd.umich.edu = UMICH.EDU
	ccs.itd.umich.edu = UMICH.EDU
	.ccs.itd.umich.edu = UMICH.EDU
	psc.lsa.umich.edu = UMICH.EDU
	.psc.lsa.umich.edu = UMICH.EDU
	snre.umich.edu = UMICH.EDU
	.snre.umich.edu = UMICH.EDU
	itd.umich.edu = UMICH.EDU
	.itd.umich.edu = UMICH.EDU
	lib.umich.edu = UMICH.EDU
	.lib.umich.edu = UMICH.EDU
	rescomp.housing.umich.edu = UMICH.EDU
	.rescomp.housing.umich.edu = UMICH.EDU
	housing.umich.edu = UMICH.EDU
	.housing.umich.edu = UMICH.EDU
	healthmedia.umich.edu = UMICH.EDU
	.healthmedia.umich.edu = UMICH.EDU
	.cmf.nrl.navy.mil = CMF.NRL.NAVY.MIL
	federation.cmf.nrl.navy.mil = FEDERATION.ATD.NET
	.nrl.navy.mil = NRL.NAVY.MIL
	.lcp.nrl.navy.mil = LCP.NRL.NAVY.MIL
	lcp.nrl.navy.mil = LCP.NRL.NAVY.MIL
	.itd.nrl.navy.mil = CS.NRL.NAVY.MIL
        .brl.army.mil = ARL.MIL
        .brl.mil = ARL.MIL
        .arl.army.mil = ARL.MIL
        .ha.md.us = ARL.MIL
        .nvl.army.mil = ARL.MIL
        ftb.pica.army.mil = ARL.MIL
        fdc.pica.army.mil = ARL.MIL
        h.root-servers.net = ARL.MIL
        .arl.hpc.mil = ARL.HPC.MIL
        .asc.hpc.mil = ASC.HPC.MIL
        .navo.hpc.mil = NAVO.HPC.MIL
        .wes.hpc.mil = WES.HPC.MIL
	.nosc.mil = NOSC.MIL
	.spawar.navy.mil = NOSC.MIL
        .hpcmo.hpc.mil = HPCMO.HPC.MIL
        .hpc.mil = ARL.HPC.MIL
        .fnc.gov = FNC.GOV
        surely.arl.mil = FNC.GOV
        mercury.arl.mil = WSMR.ARL.MIL
        natika.arl.mil = WSMR.ARL.MIL
        krbii.arl.mil = WSMR.ARL.MIL
	.ncsa.uiuc.edu = NCSA.EDU
	.umr.edu = UMR.EDU
	umr.edu = UMR.EDU
	.panix.com = PANIX.COM
	panix.com = PANIX.COM

[logging]
         kdc = FILE:/var/log/krb5kdc.log
         admin_server = FILE:/var/log/kadmin.log
         default = FILE:/var/log/krb5lib.log