This shows you the differences between two versions of the page.
Both sides previous revision Previous revision Next revision | Previous revision Next revision Both sides next revision | ||
настройка_kdc_серверов_и_клиентов [2015/02/11 15:31] val [Запуск] |
настройка_kdc_серверов_и_клиентов [2019/07/02 14:44] val [Настройка] |
||
---|---|---|---|
Line 3: | Line 3: | ||
===== Подготовка сети ===== | ===== Подготовка сети ===== | ||
- | [[Финальная настройка DNS сервера]] | + | * [[Финальная настройка DNS сервера]] |
- | + | * [[Сервис NTP]] | |
- | [[Сервис NTP]] | + | |
===== Настройка KDC ===== | ===== Настройка KDC ===== | ||
Line 11: | Line 10: | ||
==== Установка ==== | ==== Установка ==== | ||
- | === MIT Ubuntu/Debian === | + | === Debian/Ubuntu (MIT) === |
<code> | <code> | ||
- | root@server:~# apt-get install krb5-kdc krb5-admin-server | + | root@server:~# apt install krb5-kdc krb5-admin-server |
</code> | </code> | ||
- | === HEIMDAL FreeBSD === | + | === FreeBSD (Heimdal) === |
<code> | <code> | ||
[server:~] # cat /etc/rc.conf | [server:~] # cat /etc/rc.conf | ||
+ | </code><code> | ||
... | ... | ||
- | kerberos5_server_enable="YES" # FreeBSD8,9 | ||
kdc_enable="YES" # FreeBSD10 | kdc_enable="YES" # FreeBSD10 | ||
... | ... | ||
</code> | </code> | ||
- | === MIT CentOS/SL === | ||
- | <code> | ||
- | [root@server ~]# yum install krb5-server | ||
- | </code> | ||
==== Настройка ==== | ==== Настройка ==== | ||
Line 41: | Line 36: | ||
</code> | </code> | ||
- | === MIT Ubuntu/Debian === | + | === Debian/Ubuntu (MIT) === |
- | + | ||
- | !!! В виртуальной машине krb5_newrealm может зависать. | + | |
- | + | ||
- | Может помочь, регистрация в консоли | + | |
- | + | ||
- | <code> | + | |
- | apt-get install gpm | + | |
- | </code> | + | |
- | + | ||
- | и хаотические движения курсором мыши | + | |
<code> | <code> | ||
Line 63: | Line 48: | ||
</code> | </code> | ||
- | === HEIMDAL FreeBSD === | + | === FreeBSD (Heimdal) === |
<code> | <code> | ||
server# kstash | server# kstash | ||
Line 77: | Line 62: | ||
</code> | </code> | ||
- | === MIT CentOS/SL === | + | ==== Запуск ==== |
+ | |||
+ | === FreeBSD10 === | ||
<code> | <code> | ||
- | [root@server ~]# /usr/kerberos/sbin/kdb5_util create -s | + | [server:~] # service kdc start |
</code> | </code> | ||
- | ==== Запуск ==== | ||
- | === FreeBSD === | + | === Ubuntu/Debian === |
<code> | <code> | ||
- | [server:~] # /etc/rc.d/kerberos start | + | root@server:~# service krb5-kdc restart |
</code> | </code> | ||
- | === FreeBSD10 === | + | ==== Отладка ==== |
+ | |||
+ | === FreeBSD === | ||
<code> | <code> | ||
- | [server:~] # service kdc start | + | server# tail -f /var/heimdal/kdc.log |
</code> | </code> | ||
- | === Ubuntu/Debian === | + | === Debian/Ubuntu === |
<code> | <code> | ||
- | root@server:~# /etc/init.d/krb5-kdc restart | + | server# tail -f /var/log/auth.log |
</code> | </code> | ||
- | |||
===== Настройка Kerberos клиента ===== | ===== Настройка Kerberos клиента ===== | ||
==== Инсталляция ==== | ==== Инсталляция ==== | ||
- | === Ubuntu/Debian === | + | === Debian/Ubuntu === |
<code> | <code> | ||
- | # apt-get install krb5-user | + | # apt install krb5-user |
</code> | </code> | ||
Line 124: | Line 111: | ||
</code> | </code> | ||
- | ===== Дополнительные материалы ===== | ||
- | |||
- | ==== MIT FreeBSD ==== | ||
- | <code> | ||
- | [server:~] # pkg_add -r krb5-18 | ||
- | |||
- | [server:~] # mkdir -p /usr/local/var/krb5kdc/ | ||
- | |||
- | [server:~] # kdb5_util create -s | ||
- | |||
- | [server:~] # cat /etc/rc.local | ||
- | /usr/local/sbin/krb5kdc | ||
- | |||
- | [server:~] # kadmin.local | ||
- | </code> |