Kerberos Server Version 3.12 Administrator's Guide

Configuring the Kerberos Server with LDAP
Autoconfiguring the Kerberos Server With LDAP Integration
Chapter 690
NOTE Ensure that you have a dump of the existing Kerberos database, before
you configure the Kerberos server with LDAP. “Migrating to a Newer
Version of the Kerberos Server” on page 39, for more information.
Step 6. Select one of the following options to configure the security mechanism of
your LDAP-based Kerberos server:
1. SSL
2. Password
Step 7. Enter the host name of the directory server. The default value is
displayed. To use the default, press Return; otherwise, enter your fully
qualified host name or the IP address.
Step 8. Enter the port number of the directory server. If you do not specify any
value the following default values are selected:
If you have opted for SSL as the security mechanism the default
value 636 is selected.
If you have opted for Password as the security mechanism the
default value 389 is selected.
Step 9. Enter the DN of the proxy user. The default value is displayed. To use
the default, press Return.
NOTE The proxy user must have the privileges to add, modify, and delete
Kerberos information on the Directory server.
Step 10. Enter the Proxy User password.
Step 11. If you have opted to configure SSL as the security mechanism of your
LDAP-based Kerberos Server, enter the Certificate db path.
Step 12. If you have opted to configure Password as the security mechanism of
your LDAP-based Kerberos Server, enter the directory path where the
certificates are located. The default path /etc/opt/ldapux is displayed.
To use the default, press Return.