Kerberos Server Version 2.0 Release Notes HP 9000 Networking Edition 2 Manufacturing Part Number: T1417-90004 E0602 U.S.A. © Copyright 2002, Hewlett-Packard Company. .
Legal Notices The information in this document is subject to change without notice. Hewlett-Packard makes no warranty of any kind with regard to this manual, including, but not limited to, the implied warranties of merchantability and fitness for a particular purpose. Hewlett-Packard shall not be held liable for errors contained herein or direct, indirect, special, incidental or consequential damages in connection with the furnishing, performance, or use of this material. Warranty.
©Copyright 1986 Digital Equipment Corporation. ©Copyright 1990 Motorola, Inc. ©Copyright 1990, 1991, 1992 Cornell University ©Copyright 1989-1991 The University of Maryland ©Copyright 1988 Carnegie Mellon University ©Copyright 1984-2002 FairCom Corporation ©Copyright 1998-2002 Cybersafe Corporation ©Copyright 1991-2002 Mentat Inc. ©Copyright 1996 Morning Star Technologies Inc. ©Copyright 1996 Progressive Systems, Inc. ©Copyright 1991-2000 Isogon Corporation, All Rights Reserved.
1 HP’s Kerberos Server V 2.
HP’s Kerberos Server V 2.0 Release Note Announcement Announcement HP’s Kerberos Server V 2.0, product number T1417AA is based on the client-server architecture. It ensures secure communication in a networked environment by leveraging individual trust relationships. It then brokers this trust across enterprise-wide distributed client-server networks. The communication between the client and server is secured by using the Kerberos protocol.
HP’s Kerberos Server V 2.0 Release Note What’s in This Version What’s in This Version The Kerberos Server is primarily a centralized network authentication system providing security solutions to geographically dispersed organizations. Listed below are some of the key features of the Kerberos Server V 2.0.
HP’s Kerberos Server V 2.0 Release Note What’s in This Version This mechanism has been provided in this version of the Kerberos Server, by having the parent process always monitor the server daemon. If the server daemon dies or crashes, the parent process will automatically spawn a new server daemon.
HP’s Kerberos Server V 2.0 Release Note What’s in This Version Migration Tool The Kerberos Server’s database migration tool, kdb_migrate, enables you to migrate your Kerberos database from Kerberos database V 1.0 to the new version, Kerberos database V 2.0. NOTE The Kerberos database formats of version 1.0 and version 2.0 are not compatible with each other. The kdb_migrate tool migrates each entry in the version 1.0 dumpfile into the version 2.0 dumpfile.
HP’s Kerberos Server V 2.0 Release Note What’s in This Version Table 1-1 Propagation Tools (Continued) If You Want To: Manually control propagation on one or more servers once propagation is configured and started. Use This Tool: prpadmin kpropd.ini The kpropd.ini file is the propagation configuration file that the mkpropcf tool creates using the information from the local krb.conf file. This file is generally located at: /opt/krb5 Ensure that only authorized users have access to this file.
HP’s Kerberos Server V 2.0 Release Note What’s in This Version • If you run prpadmin from the command line, you must specify a particular command. For example: #./prpadmin full_dump • To run prpadmin in a shell-like command loop, execute prpadmin with no commands, and then specify a particular command. Refer to the Installing, Configuring and Administering the Kerberos Server V 2.0, (T1417-90003) guide for more details.
HP’s Kerberos Server V 2.0 Release Note What’s in This Version NOTE You must add the first administrative principal using the Local Administrator, kadminl or kadminl_ui, located on the primary server before you can use the Remote Administrator, kadmin or kadmin_ui from a secondary server or client. You do not need to log in to the Local Administrator. Any user with root access to the primary security server can run the Local Administrator.
HP’s Kerberos Server V 2.0 Release Note Known Problems and Workarounds Known Problems and Workarounds • On an IPv6 configured machine, if the IPv6 interface is up and running, kadmind will not function as expected.
HP’s Kerberos Server V 2.0 Release Note Compatibility Information and Installation Requirements Compatibility Information and Installation Requirements Pre-Installation Requirements Before you install the Server, it is recommended that you: • Ensure that the Kerberos Server is installed on a system that is physically secure and has restricted access to it. If necessary, ascertain that the system, on which you install the Server, is kept under lock and key.
HP’s Kerberos Server V 2.0 Release Note Compatibility Information and Installation Requirements OS Platform and Version Compatibility HP-UX 11i Other Requirements KRB5 Client Software. On HP-UX 11i this product is shipped as part of core. Disk Space Required To Install This product requires 10 Mbytes of disk space Install With System Up or Down Install this product with the system up. The system does not need to be rebooted after the product has been installed.
HP’s Kerberos Server V 2.0 Release Note Compatibility Information and Installation Requirements See the man page on swinstall (1m) for more information on this command Step 3. Click on OK on the “Specify Source” window. Step 4. Highlight T1417AA in the ‘Software Selection’ dialog, then select ‘Mark For Install’ from the ‘Actions’ menu to install all filesets in the bundle. Step 5. When you have marked the product components you want to install, select ‘Install (analysis)’ from the ‘Actions’ menu. Step 6.
HP’s Kerberos Server V 2.0 Release Note Patches and Fixes in This Version Patches and Fixes in This Version There are no bug fixes or patches included in this version of Kerberos Server V 2.0.
HP’s Kerberos Server V 2.0 Release Note List Of Documents Available With This Product List Of Documents Available With This Product The documentation related to the Kerberos Server V 2.0 product is listed below. • Installing, Administering and Configuring the Kerberos Server V 2.0 on HP-UX 11i (T1417-90003). • Kerberos Server Version 2.0 Release Note (T1417-90004) Kerberos Server V 2.0 documentation is available from the following sources: • The HP Technical Documentation Web Site at http://docs.hp.
HP’s Kerberos Server V 2.0 Release Note Software Availability in Native Languages Software Availability in Native Languages There is no information in non-English languages for this version of Kerberos Server V 2.0.