LinuxQuestions.org

LinuxQuestions.org (/questions/)
-   Linux - Security (https://www.linuxquestions.org/questions/linux-security-4/)
-   -   Noobie Kerberos / single signon question. (https://www.linuxquestions.org/questions/linux-security-4/noobie-kerberos-single-signon-question-609668/)

charlweed 12-28-2007 03:59 PM

Noobie Kerberos / single signon question.
 
Hi!
I have the starting details, but I need to know the "big-picture" view of setting up Kerberos, and configuring my other linux boxes to use it for authentication.

I followed this howto:
http://www.tldp.org/HOWTO/Kerberos-I...WTO/index.html

To configure my server, and it seems to be running. I installed krb5-workstation on a test client, and I "think" I configured it. But now what? If create users on my clients, how will the password be stored? Will my KDE and Gnome session use kerberos now, or do I have to configure them? What about Samba?

All the stuff I find on Google assumes that I already know what I'm doing :)
I need a few sentences on "user creation and management with kerberos"

Thanks!

Charlweed



P.S.
What I'm REALLY trying to do, is get rid of a Windows 2000 Server + Exchange. So when I figure everything out, my new FC7 server will be a Samba Domain Controller, and run Scalix. If there is a shortcut for this ( like Fedora Directory Server ?) , I'd be really interested :)
C

Deleriux 12-28-2007 04:43 PM

PAM should be able to do the kerberos stuff. If you can configure pam to authenticate for kerberos then the rest of the PAM enabled applications can take advantage of that (GDM, login, etc).

As for how you do that - I have never setup PAM to do it personally!

I found this article which might provide some pointers in the right direction.

http://www.linuxjournal.com/article/7336

charlweed 01-02-2008 10:56 AM

Thanks so much, and Happy New Year!


All times are GMT -5. The time now is 05:03 AM.