Integrate Logins with HP CIFS Server, HP-UX, and Windows 2003R2/2008

45
rlogin Example
The rlogin feature of SIS uses the host principle that was created by the CIFS/Samba keytab file
generation, so no special effort is required to configure a clean working example.
Buffy has an existing login to the system atcuxvm5.rose.hp.com. A “klist” command shows that she
has her default principals. She executes an rlogin to the system atcuxvm6.rose.hp.com, and gains
access without providing a password. After exiting the atcuxvm6 session, another klist on her original
session on atcuxvm5 reveals that she now has the host/atcuxvm6.rose.hp.com@ATCWIN1.HP.COM
principal. The associated Wireshark trace proves that this principal was acquired from the KDC
during the rlogin, and that the POSIX credentials were retrieved from the KDC as well. Buffy’s session
was authenticated on atcuxvm6 using the host principal that she retrieved from the KDC.
NOTE: rlogin usage with LDAP accounts requires an edit to /etc/opt/ldapux/ldapux_client.conf.
*uncomment* the line reading #password_as=”x”.
telnet Example
The telnet feature of SIS also uses the host principal that was created by the CIFS/Samba keytab file
generation, so no special effort is required to configure a clean working example.