1*bf6873c5SCy Schubert[kdcdefaults] 2*bf6873c5SCy Schubert kdc_ports = 88 3*bf6873c5SCy Schubert kdc_tcp_ports = 88 4*bf6873c5SCy Schubert restrict_anonymous_to_tgt = true 5*bf6873c5SCy Schubert 6*bf6873c5SCy Schubert[realms] 7*bf6873c5SCy Schubert MIT.TEST = { 8*bf6873c5SCy Schubert database_name = /var/lib/krb5kdc/principal 9*bf6873c5SCy Schubert admin_keytab = /var/lib/krb5kdc/kadm5.keytab 10*bf6873c5SCy Schubert acl_file = /etc/krb5kdc/kadm5.acl 11*bf6873c5SCy Schubert key_stash_file = /var/lib/krb5kdc/stash 12*bf6873c5SCy Schubert max_life = 1d 1h 0m 0s 13*bf6873c5SCy Schubert max_renewable_life = 7d 0h 0m 0s 14*bf6873c5SCy Schubert master_key_type = aes256-cts 15*bf6873c5SCy Schubert supported_enctypes = aes256-cts:normal 16*bf6873c5SCy Schubert default_principal_flags = +preauth 17*bf6873c5SCy Schubert pkinit_identity = FILE:/var/lib/krb5kdc/kdc.pem,/var/lib/krb5kdc/kdckey.pem 18*bf6873c5SCy Schubert pkinit_anchors = FILE:/etc/krb5kdc/cacert.pem 19*bf6873c5SCy Schubert } 20