xref: /illumos-gate/usr/src/cmd/gss/etc/krb5.conf (revision fe598cdcd847f8359013532d5c691bb6190378c0)
17c478bd9Sstevel@tonic-gate#
27c478bd9Sstevel@tonic-gate# CDDL HEADER START
37c478bd9Sstevel@tonic-gate#
47c478bd9Sstevel@tonic-gate# The contents of this file are subject to the terms of the
5*fe598cdcSmp153739# Common Development and Distribution License (the "License").
6*fe598cdcSmp153739# You may not use this file except in compliance with the License.
77c478bd9Sstevel@tonic-gate#
87c478bd9Sstevel@tonic-gate# You can obtain a copy of the license at usr/src/OPENSOLARIS.LICENSE
97c478bd9Sstevel@tonic-gate# or http://www.opensolaris.org/os/licensing.
107c478bd9Sstevel@tonic-gate# See the License for the specific language governing permissions
117c478bd9Sstevel@tonic-gate# and limitations under the License.
127c478bd9Sstevel@tonic-gate#
137c478bd9Sstevel@tonic-gate# When distributing Covered Code, include this CDDL HEADER in each
147c478bd9Sstevel@tonic-gate# file and include the License file at usr/src/OPENSOLARIS.LICENSE.
157c478bd9Sstevel@tonic-gate# If applicable, add the following below this CDDL HEADER, with the
167c478bd9Sstevel@tonic-gate# fields enclosed by brackets "[]" replaced with your own identifying
177c478bd9Sstevel@tonic-gate# information: Portions Copyright [yyyy] [name of copyright owner]
187c478bd9Sstevel@tonic-gate#
197c478bd9Sstevel@tonic-gate# CDDL HEADER END
207c478bd9Sstevel@tonic-gate#
217c478bd9Sstevel@tonic-gate#
22*fe598cdcSmp153739# Copyright 2007 Sun Microsystems, Inc.  All rights reserved.
237c478bd9Sstevel@tonic-gate# Use is subject to license terms.
247c478bd9Sstevel@tonic-gate#
257c478bd9Sstevel@tonic-gate# ident	"%Z%%M%	%I%	%E% SMI"
267c478bd9Sstevel@tonic-gate#
277c478bd9Sstevel@tonic-gate
287c478bd9Sstevel@tonic-gate# krb5.conf template
297c478bd9Sstevel@tonic-gate# In order to complete this configuration file
307c478bd9Sstevel@tonic-gate# you will need to replace the __<name>__ placeholders
31*fe598cdcSmp153739# with appropriate values for your network and uncomment the
32*fe598cdcSmp153739# appropriate entries.
337c478bd9Sstevel@tonic-gate#
347c478bd9Sstevel@tonic-gate[libdefaults]
35*fe598cdcSmp153739#        default_realm = ___default_realm___
367c478bd9Sstevel@tonic-gate
377c478bd9Sstevel@tonic-gate[realms]
38*fe598cdcSmp153739#        ___default_realm___ = {
39*fe598cdcSmp153739#                kdc = ___master_kdc___
40*fe598cdcSmp153739#                kdc = ___slave_kdc1___
41*fe598cdcSmp153739#                kdc = ___slave_kdc2___
42*fe598cdcSmp153739#                kdc = ___slave_kdcN___
43*fe598cdcSmp153739#                admin_server = ___master_kdc___
44*fe598cdcSmp153739#        }
457c478bd9Sstevel@tonic-gate
467c478bd9Sstevel@tonic-gate[domain_realm]
47*fe598cdcSmp153739#	___domainname___ = ___default_realm___
487c478bd9Sstevel@tonic-gate
497c478bd9Sstevel@tonic-gate[logging]
507c478bd9Sstevel@tonic-gate        default = FILE:/var/krb5/kdc.log
517c478bd9Sstevel@tonic-gate        kdc = FILE:/var/krb5/kdc.log
527c478bd9Sstevel@tonic-gate	kdc_rotate = {
537c478bd9Sstevel@tonic-gate
547c478bd9Sstevel@tonic-gate# How often to rotate kdc.log. Logs will get rotated no more
557c478bd9Sstevel@tonic-gate# often than the period, and less often if the KDC is not used
567c478bd9Sstevel@tonic-gate# frequently.
577c478bd9Sstevel@tonic-gate
587c478bd9Sstevel@tonic-gate		period = 1d
597c478bd9Sstevel@tonic-gate
607c478bd9Sstevel@tonic-gate# how many versions of kdc.log to keep around (kdc.log.0, kdc.log.1, ...)
617c478bd9Sstevel@tonic-gate
627c478bd9Sstevel@tonic-gate		versions = 10
637c478bd9Sstevel@tonic-gate	}
647c478bd9Sstevel@tonic-gate
657c478bd9Sstevel@tonic-gate[appdefaults]
667c478bd9Sstevel@tonic-gate	kinit = {
677c478bd9Sstevel@tonic-gate		renewable = true
687c478bd9Sstevel@tonic-gate		forwardable= true
697c478bd9Sstevel@tonic-gate	}
70