Installing, Configuring and Administering the Kerberos Server V 2.0 on HP-UX 11i

Migration
Policy Migration
Chapter 344
Policy Migration
In the previous version of the Kerberos Server, version 1.0, a policy
with any name and attribute values could be created. Further, any
principal could subscribe to any of the policies present in the database.
In the new version of the Kerberos Server, version 2.0, the policies are
classified depending on the instance name of the Principal. Refer to
“Password Policy File” on page 101, for more information on classifying
policies.
The Policy information is available as a dump file after you have
migrated the dump file from version 1.0 to version 2.0. The
administrator needs to explicitly classify the Principals and add the
Policies to the password.policy file, as per the site policy.
Also, the system administrator needs to perform the task of manually
migrating the admin_acl_file from version 1.0 to version 2.0. Refer to
“admin_acl_file” on page 95, for more information.