| A | |||
| -a option | |||
Kerberized commands ( ) |
|||
| acceptor option | |||
/etc/pam.conf file ( ) |
|||
| access | |||
| getting to server | |||
with SEAM ( ) |
|||
obtaining for a specific service ( ) |
|||
| application server | |||
configuring ( ) |
|||
| authentication | |||
disabling with -X option ( ) |
|||
overview of Kerberos ( ) |
|||
SEAM and ( ) |
|||
terminology ( ) |
|||
| authenticator | |||
in SEAM ( ) ( ) |
|||
| authorization | |||
SEAM and ( ) |
|||
| automatic login | |||
disabling ( ) |
|||
enabling ( ) |
|||
| C | |||
| cache | |||
credential ( ) |
|||
clear protection level ( ) |
|||
| client | |||
definition in SEAM ( ) |
|||
| commands | |||
table of SEAM ( ) |
|||
| configuring | |||
| SEAM | |||
overview ( ) |
|||
configuring application servers ( ) |
|||
| credential | |||
cache ( ) |
|||
description ( ) |
|||
obtaining for a server ( ) |
|||
obtaining for a TGS ( ) |
|||
or tickets ( ) |
|||
credential cache ( ) |
|||
| D | |||
| daemons | |||
table of SEAM ( ) |
|||
| E | |||
| encryption | |||
privacy service ( ) |
|||
with -x option ( ) |
|||
/etc/krb5/krb5.keytab file ( ) |
|||
| /etc/pam.conf | |||
description ( ) |
|||
| /etc/pam.conf file | |||
acceptor option ( ) |
|||
SEAM and ( ) |
|||
| F | |||
| -F option | |||
Kerberized commands ( ) ( ) |
|||
| -f option | |||
Kerberized commands ( ) ( ) |
|||
| -F option | |||
or -f option ( ) ( ) |
|||
| -f option | |||
or -F option ( ) ( ) |
|||
| files | |||
kdc.conf ( ) |
|||
table of SEAM ( ) |
|||
| forwardable tickets | |||
definition ( ) |
|||
description ( ) |
|||
with -F option ( ) ( ) |
|||
with -f option ( ) ( ) |
|||
| ftp command | |||
description ( ) |
|||
SEAM and ( ) |
|||
setting protection level in ( ) |
|||
| ftpd daemon | |||
SEAM and ( ) |
|||
| G | ||||
| Generic Security Service API | ||||
| See GSS-API | ||||
| getting | ||||
access to a specific service ( ) |
||||
credential for a server ( ) |
||||
credential for a TGS ( ) |
||||
| GSS-API | ||||
SEAM and ( ) ( ) |
||||
| gsscred table | ||||
using ( ) |
||||
| gssd daemon | ||||
SEAM and ( ) |
||||
| H | |||
| hierarchical realms | |||
in SEAM ( ) |
|||
| I | |||
| IDs | |||
mapping UNIX to Kerberos principals ( ) |
|||
| initial ticket | |||
definition ( ) |
|||
| instance | |||
in principals names ( ) |
|||
| integrity | |||
SEAM and ( ) |
|||
security service ( ) |
|||
| invalid ticket | |||
definition ( ) |
|||
| K | ||||
| -K option | ||||
Kerberized commands ( ) |
||||
| -k option | ||||
Kerberized commands ( ) |
||||
| kadmind daemon | ||||
master KDC and ( ) |
||||
| KDC | ||||
| master | ||||
definition ( ) |
||||
| slave | ||||
definition ( ) |
||||
slave or master ( ) |
||||
| kdc.conf file | ||||
ticket lifetime and ( ) |
||||
| Kerberos | ||||
and Kerberos V5 ( ) |
||||
and SEAM ( ) ( ) |
||||
terminology ( ) |
||||
| key | ||||
description ( ) |
||||
private ( ) |
||||
service ( ) |
||||
session ( ) ( ) |
||||
| Key Distribution Center | ||||
| See KDC | ||||
kinds of tickets ( ) |
||||
| kinit command | ||||
ticket lifetime ( ) |
||||
| kprop command | ||||
description ( ) |
||||
krb5.keytab file ( ) |
||||
krb5cc_uid file ( ) |
||||
| krb5kdc daemon | ||||
master KDC and ( ) |
||||
| ktkt_warnd daemon | ||||
SEAM and ( ) |
||||
| L | |||
| lifetime of ticket | |||
in SEAM ( ) |
|||
| M | |||
| -m option | |||
Kerberized commands ( ) |
|||
| mapping | |||
UIDs to Kerberos principals ( ) |
|||
| master KDC | |||
definition ( ) |
|||
slave KDCs and ( ) |
|||
| max_life value | |||
description ( ) |
|||
| max_renewable_life value | |||
description ( ) |
|||
| N | |||
| non-hierarchical realms | |||
in SEAM ( ) |
|||
| O | |||
| obtaining | |||
access to a specific service ( ) |
|||
credential for a server ( ) |
|||
credential for a TGS ( ) |
|||
options to Kerberized commands ( ) |
|||
ovsec_adm.xxxxx file ( ) |
|||
| P | |||
| PAM | |||
configuration file ( ) |
|||
SEAM and ( ) ( ) |
|||
| pam.conf file | |||
description ( ) |
|||
SEAM and ( ) |
|||
| postdatable ticket | |||
definition ( ) |
|||
| postdated ticket | |||
description ( ) |
|||
| primary | |||
in principals names ( ) |
|||
| principal | |||
in SEAM ( ) |
|||
principal name ( ) |
|||
service principal ( ) |
|||
user principal ( ) |
|||
| privacy | |||
availability ( ) |
|||
SEAM and ( ) |
|||
security service ( ) |
|||
| private key | |||
definition in SEAM ( ) |
|||
private protection level ( ) |
|||
| protection level | |||
clear ( ) |
|||
private ( ) |
|||
safe ( ) |
|||
setting in ftp ( ) |
|||
| proxiable ticket | |||
definition ( ) |
|||
| proxy ticket | |||
definition ( ) |
|||
| R | |||
| rcp command | |||
description ( ) |
|||
SEAM and ( ) |
|||
| realms | |||
and servers ( ) |
|||
contents of ( ) |
|||
hierarchical or non-hierarchical ( ) |
|||
in principal names ( ) |
|||
in principals names ( ) |
|||
requesting tickets for specific ( ) |
|||
| renewable ticket | |||
definition ( ) |
|||
| rlogin command | |||
description ( ) |
|||
SEAM and ( ) |
|||
| rlogind daemon | |||
SEAM and ( ) |
|||
| RPCSEC_GSS API | |||
SEAM and ( ) |
|||
| rsh command | |||
description ( ) |
|||
SEAM and ( ) |
|||
| rshd daemon | |||
SEAM and ( ) |
|||
| S | |||
safe protection level ( ) |
|||
| SEAM | |||
and Kerberos V5 ( ) ( ) |
|||
commands ( ) ( ) |
|||
components of ( ) |
|||
daemons ( ) |
|||
examples of using Kerberized commands ( ) |
|||
files ( ) |
|||
gaining access to server ( ) |
|||
options to Kerberized commands ( ) |
|||
overview ( ) |
|||
overview of authentication ( ) |
|||
overview of kerberized commands ( ) |
|||
reference ( ) |
|||
remote applications ( ) |
|||
table of command options ( ) |
|||
terminology ( ) |
|||
using ( ) |
|||
SEAM commands ( ) |
|||
examples of ( ) |
|||
| security mechanism | |||
specifying with -m option ( ) |
|||
| security service | |||
in SEAM ( ) |
|||
integrity ( ) |
|||
privacy ( ) |
|||
| servers | |||
and realms ( ) |
|||
definition in SEAM ( ) |
|||
gaining access with SEAM ( ) |
|||
obtaining credential for ( ) |
|||
| service | |||
definition in SEAM ( ) |
|||
obtaining access for specific service ( ) |
|||
| service key | |||
definition in SEAM ( ) |
|||
| service principal | |||
description ( ) |
|||
| session key | |||
definition in SEAM ( ) |
|||
SEAM authentication and ( ) |
|||
single-sign-on system ( ) |
|||
SEAM and ( ) |
|||
| slave KDCs | |||
definition ( ) |
|||
master KDC and ( ) |
|||
| stash file | |||
definition ( ) |
|||
| T | ||||
| tables | ||||
gsscred ( ) |
||||
| telnet command | ||||
description ( ) |
||||
SEAM and ( ) |
||||
| telnetd daemon | ||||
SEAM and ( ) |
||||
| terminology | ||||
authentication-specific ( ) |
||||
Kerberos-specific ( ) |
||||
SEAM ( ) |
||||
| TGS | ||||
getting credential for ( ) |
||||
| TGT | ||||
in SEAM ( ) |
||||
| ticket | ||||
-F option or -f option ( ) |
||||
forwardable ( ) ( ) ( ) ( ) |
||||
-k option ( ) |
||||
requesting for specific realm ( ) |
||||
| ticket file | ||||
| See credential cache | ||||
| ticket-granting service | ||||
| See TGS | ||||
| Ticket-Granting Ticket | ||||
| See TGT | ||||
| tickets | ||||
definition ( ) |
||||
description ( ) |
||||
| file | ||||
| See credential cache | ||||
forwardable ( ) ( ) |
||||
initial ( ) |
||||
invalid ( ) |
||||
lifetime ( ) |
||||
maximum renewable lifetime ( ) |
||||
or credentials ( ) |
||||
postdatable ( ) |
||||
postdated ( ) |
||||
proxiable ( ) |
||||
proxy ( ) |
||||
renewable ( ) |
||||
types of ( ) |
||||
/tmp/krb5cc_uid file ( ) |
||||
/tmp/ovsec_adm.xxxxx file ( ) |
||||
| transparency | ||||
definition in SEAM ( ) |
||||
types of tickets ( ) |
||||
| U | |||
| user principal | |||
description ( ) |
|||
| /usr/lib/krb5/kprop command | |||
description ( ) |
|||
| X | |||
| -X option | |||
Kerberized commands ( ) |
|||
| -x option | |||
Kerberized commands ( ) |
|||