Skip to content
Snippets Groups Projects
krb5.conf 1.3 KiB
Newer Older
Xueshan Feng's avatar
Xueshan Feng committed
[appdefaults]
  default_lifetime          = 25hrs
  forwardable               = true
  noaddresses               = true

[libdefaults]
  kdc_timesync = 1
  default_realm             = stanford.edu
  ticket_lifetime           = 25h
  default_lifetime          = 7d
  renew_lifetime            = 7d
  forward                   = true
  forwardable               = true
  renewable                 = true
  encrypt                   = true
  dns_lookup_realm          = true
  rdns                      = false
  noaddresses               = true
  allow_weak_crypto         = false
  dns_canonicalize_hostname = false
  ignore_acceptor_hostname  = true

[realms]
    stanford.edu = {
        kdc                 = kdc-slave.stanford.edu:88
        kdc                 = krb5auth1.stanford.edu:88
        kdc                 = krb5auth2.stanford.edu:88
        master_kdc          = master-kdc.stanford.edu:88
        admin_server        = krb5-admin.stanford.edu
        kpasswd_server      = krb5-admin.stanford.edu
        default_domain      = stanford.edu
        kadmind_port        = 749
    }

[domain_realm]
  stanford.edu              = stanford.edu
  .stanford.edu             = stanford.edu
  .sunet                    = stanford.edu
  cluster.local             = stanford.edu
  .cluster.local            = stanford.edu