macOS User Configuration
1. /etc/krb5.conf
[libdefaults]
default_realm = ABCDEF.COM
allow_weak_crypto = false
rdns = false
[realms]
ABCDEF.COM = {
kdc = kdc.abcdef.com
kdc = kdc2.abcdef.com
admin_server = kdc.abcdef.com
kpasswd_server = kdc.abcdef.com
}
2. /etc/ssh/ssh_config
- After MacOS update, this configuration usually reset. So after update you must check this configuration.
GSSAPIAuthentication yes => Allow authentication protocol for ssh kerberos support
StrictHostKeyChecking no
3. kinit at the MacOS terminal
kinit --kdc-hostname=kdc.abcdef.com,kdc2.abcdef.com sfixer@ABCDEF.COM
반응형
'Setup' 카테고리의 다른 글
Kerberos setup - 4 (API Server for User management) (629) | 2019.12.09 |
---|---|
Kerberos setup - 2 (Kerberos Client) (928) | 2019.12.09 |
Kerberos setup - 1 (Kerberos Server) (1901) | 2019.12.09 |
OpenVPN setup - 3 (OpenVPN Client for VPC Tunnel) (1427) | 2019.12.09 |
OpenVPN setup - 2 (OpenVPN Server) (1394) | 2019.12.09 |