System Administration Guide: Security Services

Configuring SEAM (Task Map)

Parts of the configuration process depend on other parts and must be done in a specific order. These procedures often establish services that are required to use SEAM. Other procedures are not dependent on any order, and can be done when appropriate. The following task map shows a suggested order for a SEAM installation.

Table 8–1 First Steps: SEAM Configuration Order

Task 

Description 

For Instructions 

1. Plan for your SEAM installation 

 Lets you resolve configuration issues before you start the software configuration process. Planning ahead saves you time and other resources in the long run.Chapter 7, Planning for SEAM

2. (Optional) Install NTP 

 Configures the Network Time Protocol (NTP) software, or another clock synchronization protocol. In order for SEAM to work properly, the clocks on all systems in the realm must be synchronized.Synchronizing Clocks between KDCs and SEAM Clients

3. Configure the master KDC server 

 Configures and builds the master KDC server and database for a realm.How to Configure a Master KDC

4. (Optional) Configure a slave KDC server 

 Configures and builds a slave KDC server for a realm.How to Configure a Slave KDC

5. (Optional) Increase security on the KDC servers 

 Prevents security breaches on the KDC servers.How to Restrict Access to KDC Servers

6. (Optional) Configure swappable KDC servers 

 Makes the task of swapping the master KDC and a slave KDC easier.How to Configure a Swappable Slave KDC

Once the required steps have been completed, the following procedures can be used when required.

Table 8–2 Next Steps: Additional SEAM Tasks

Task 

Description 

For Instructions 

Configure cross-realm authentication 

 Enables communications from one realm to another realm.Configuring Cross-Realm Authentication

Configure SEAM clients 

 Enables a client to use SEAM services.Configuring SEAM Clients

Configure SEAM NFS server 

 Enables a server to share a file system that requires Kerberos authentication.Configuring SEAM NFS Servers