HP CIFS Server and Kerberos

110
9.2 Testing the Merged Keytab Files
The following HP-UX and HP CIFS Server configuration was used for these tests:
HP-UX 11iv3
o pam_kerberos
o nsswitch ldap passwd/group
o Kerberos Client E.1.6.2
o LDAP-UX Client B.04.17
HP CIFS Server A.02.03.03
Windows 2003R2 Active Directory
Unified Login Domain Model
o SFU 3.5
o HP-UX users hosted on the AD with RFC 2307 UNIX attributes
1. Test local HP-UX logins with an AD-resident user. Test all nodes in the cluster. One way to
verify that the Kerberos login worked correctly is to run a Wireshark trace on the KDC and
locate the TGS Reply packet with the correct HP-UX server principal:
Note the username Buffy and the host/emonster.rose.hp.com service principal. This proves that the
host service principal key that is resident in the merged keytab file is valid.