Sun Enterprise Authentication Mechanism 1.0.2 Guide
    
A
 
 -a option
  Kerberized commands ( Index Term Link )
 
 acceptor option
  /etc/pam.conf file ( Index Term Link )
 
 access
  getting to server
   with SEAM ( Index Term Link )
  obtaining for a specific service ( Index Term Link )
 
 application server
  configuring ( Index Term Link )
 
 authentication
  disabling with -X option ( Index Term Link )
  overview of Kerberos ( Index Term Link )
  SEAM and ( Index Term Link )
  terminology ( Index Term Link )
 
 authenticator
  in SEAM ( Index Term Link ) ( Index Term Link )
 
 authorization
  SEAM and ( Index Term Link )
 
 automatic login
  disabling ( Index Term Link )
  enabling ( Index Term Link )
    
C
 
 cache
  credential ( Index Term Link )
 
 clear protection level ( Index Term Link )
 
 client
  definition in SEAM ( Index Term Link )
 
 commands
  table of SEAM ( Index Term Link )
 
 configuring
  SEAM
   overview ( Index Term Link )
 
 configuring application servers ( Index Term Link )
 
 credential
  cache ( Index Term Link )
  description ( Index Term Link )
  obtaining for a server ( Index Term Link )
  obtaining for a TGS ( Index Term Link )
  or tickets ( Index Term Link )
 
 credential cache ( Index Term Link )
    
D
 
 daemons
  table of SEAM ( Index Term Link )
    
E
 
 encryption
  privacy service ( Index Term Link )
  with -x option ( Index Term Link )
 
 /etc/krb5/krb5.keytab file ( Index Term Link )
 
 /etc/pam.conf
  description ( Index Term Link )
 
 /etc/pam.conf file
  acceptor option ( Index Term Link )
  SEAM and ( Index Term Link )
    
F
 
 -F option
  Kerberized commands ( Index Term Link ) ( Index Term Link )
 
 -f option
  Kerberized commands ( Index Term Link ) ( Index Term Link )
 
 -F option
  or -f option ( Index Term Link ) ( Index Term Link )
 
 -f option
  or -F option ( Index Term Link ) ( Index Term Link )
 
 files
  kdc.conf ( Index Term Link )
  table of SEAM ( Index Term Link )
 
 forwardable tickets
  definition ( Index Term Link )
  description ( Index Term Link )
  with -F option ( Index Term Link ) ( Index Term Link )
  with -f option ( Index Term Link ) ( Index Term Link )
 
 ftp command
  description ( Index Term Link )
  SEAM and ( Index Term Link )
  setting protection level in ( Index Term Link )
 
 ftpd daemon
  SEAM and ( Index Term Link )
    
G
 
 Generic Security Service API
  See GSS-API
 
 getting
  access to a specific service ( Index Term Link )
  credential for a server ( Index Term Link )
  credential for a TGS ( Index Term Link )
 
 GSS-API
  SEAM and ( Index Term Link ) ( Index Term Link )
 
 gsscred table
  using ( Index Term Link )
 
 gssd daemon
  SEAM and ( Index Term Link )
    
H
 
 hierarchical realms
  in SEAM ( Index Term Link )
    
I
 
 IDs
  mapping UNIX to Kerberos principals ( Index Term Link )
 
 initial ticket
  definition ( Index Term Link )
 
 instance
  in principals names ( Index Term Link )
 
 integrity
  SEAM and ( Index Term Link )
  security service ( Index Term Link )
 
 invalid ticket
  definition ( Index Term Link )
    
K
 
 -K option
  Kerberized commands ( Index Term Link )
 
 -k option
  Kerberized commands ( Index Term Link )
 
 kadmind daemon
  master KDC and ( Index Term Link )
 
 KDC
  master
   definition ( Index Term Link )
  slave
   definition ( Index Term Link )
  slave or master ( Index Term Link )
 
 kdc.conf file
  ticket lifetime and ( Index Term Link )
 
 Kerberos
  and Kerberos V5 ( Index Term Link )
  and SEAM ( Index Term Link ) ( Index Term Link )
  terminology ( Index Term Link )
 
 key
  description ( Index Term Link )
  private ( Index Term Link )
  service ( Index Term Link )
  session ( Index Term Link ) ( Index Term Link )
 
 Key Distribution Center
  See KDC
 
 kinds of tickets ( Index Term Link )
 
 kinit command
  ticket lifetime ( Index Term Link )
 
 kprop command
  description ( Index Term Link )
 
 krb5.keytab file ( Index Term Link )
 
 krb5cc_uid file ( Index Term Link )
 
 krb5kdc daemon
  master KDC and ( Index Term Link )
 
 ktkt_warnd daemon
  SEAM and ( Index Term Link )
    
L
 
 lifetime of ticket
  in SEAM ( Index Term Link )
    
M
 
 -m option
  Kerberized commands ( Index Term Link )
 
 mapping
  UIDs to Kerberos principals ( Index Term Link )
 
 master KDC
  definition ( Index Term Link )
  slave KDCs and ( Index Term Link )
 
 max_life value
  description ( Index Term Link )
 
 max_renewable_life value
  description ( Index Term Link )
    
N
 
 non-hierarchical realms
  in SEAM ( Index Term Link )
    
O
 
 obtaining
  access to a specific service ( Index Term Link )
  credential for a server ( Index Term Link )
  credential for a TGS ( Index Term Link )
 
 options to Kerberized commands ( Index Term Link )
 
 ovsec_adm.xxxxx file ( Index Term Link )
    
P
 
 PAM
  configuration file ( Index Term Link )
  SEAM and ( Index Term Link ) ( Index Term Link )
 
 pam.conf file
  description ( Index Term Link )
  SEAM and ( Index Term Link )
 
 postdatable ticket
  definition ( Index Term Link )
 
 postdated ticket
  description ( Index Term Link )
 
 primary
  in principals names ( Index Term Link )
 
 principal
  in SEAM ( Index Term Link )
  principal name ( Index Term Link )
  service principal ( Index Term Link )
  user principal ( Index Term Link )
 
 privacy
  availability ( Index Term Link )
  SEAM and ( Index Term Link )
  security service ( Index Term Link )
 
 private key
  definition in SEAM ( Index Term Link )
 
 private protection level ( Index Term Link )
 
 protection level
  clear ( Index Term Link )
  private ( Index Term Link )
  safe ( Index Term Link )
  setting in ftp ( Index Term Link )
 
 proxiable ticket
  definition ( Index Term Link )
 
 proxy ticket
  definition ( Index Term Link )
    
R
 
 rcp command
  description ( Index Term Link )
  SEAM and ( Index Term Link )
 
 realms
  and servers ( Index Term Link )
  contents of ( Index Term Link )
  hierarchical or non-hierarchical ( Index Term Link )
  in principal names ( Index Term Link )
  in principals names ( Index Term Link )
  requesting tickets for specific ( Index Term Link )
 
 renewable ticket
  definition ( Index Term Link )
 
 rlogin command
  description ( Index Term Link )
  SEAM and ( Index Term Link )
 
 rlogind daemon
  SEAM and ( Index Term Link )
 
 RPCSEC_GSS API
  SEAM and ( Index Term Link )
 
 rsh command
  description ( Index Term Link )
  SEAM and ( Index Term Link )
 
 rshd daemon
  SEAM and ( Index Term Link )
    
S
 
 safe protection level ( Index Term Link )
 
 SEAM
  and Kerberos V5 ( Index Term Link ) ( Index Term Link )
  commands ( Index Term Link ) ( Index Term Link )
  components of ( Index Term Link )
  daemons ( Index Term Link )
  examples of using Kerberized commands ( Index Term Link )
  files ( Index Term Link )
  gaining access to server ( Index Term Link )
  options to Kerberized commands ( Index Term Link )
  overview ( Index Term Link )
  overview of authentication ( Index Term Link )
  overview of kerberized commands ( Index Term Link )
  reference ( Index Term Link )
  remote applications ( Index Term Link )
  table of command options ( Index Term Link )
  terminology ( Index Term Link )
  using ( Index Term Link )
 
 SEAM commands ( Index Term Link )
  examples of ( Index Term Link )
 
 security mechanism
  specifying with -m option ( Index Term Link )
 
 security service
  in SEAM ( Index Term Link )
  integrity ( Index Term Link )
  privacy ( Index Term Link )
 
 servers
  and realms ( Index Term Link )
  definition in SEAM ( Index Term Link )
  gaining access with SEAM ( Index Term Link )
  obtaining credential for ( Index Term Link )
 
 service
  definition in SEAM ( Index Term Link )
  obtaining access for specific service ( Index Term Link )
 
 service key
  definition in SEAM ( Index Term Link )
 
 service principal
  description ( Index Term Link )
 
 session key
  definition in SEAM ( Index Term Link )
  SEAM authentication and ( Index Term Link )
 
 single-sign-on system ( Index Term Link )
  SEAM and ( Index Term Link )
 
 slave KDCs
  definition ( Index Term Link )
  master KDC and ( Index Term Link )
 
 stash file
  definition ( Index Term Link )
    
T
 
 tables
  gsscred ( Index Term Link )
 
 telnet command
  description ( Index Term Link )
  SEAM and ( Index Term Link )
 
 telnetd daemon
  SEAM and ( Index Term Link )
 
 terminology
  authentication-specific ( Index Term Link )
  Kerberos-specific ( Index Term Link )
  SEAM ( Index Term Link )
 
 TGS
  getting credential for ( Index Term Link )
 
 TGT
  in SEAM ( Index Term Link )
 
 ticket
  -F option or -f option ( Index Term Link )
  forwardable ( Index Term Link ) ( Index Term Link ) ( Index Term Link ) ( Index Term Link )
  -k option ( Index Term Link )
  requesting for specific realm ( Index Term Link )
 
 ticket file
  See credential cache
 
 ticket-granting service
  See TGS
 
 Ticket-Granting Ticket
  See TGT
 
 tickets
  definition ( Index Term Link )
  description ( Index Term Link )
  file
   See credential cache
  forwardable ( Index Term Link ) ( Index Term Link )
  initial ( Index Term Link )
  invalid ( Index Term Link )
  lifetime ( Index Term Link )
  maximum renewable lifetime ( Index Term Link )
  or credentials ( Index Term Link )
  postdatable ( Index Term Link )
  postdated ( Index Term Link )
  proxiable ( Index Term Link )
  proxy ( Index Term Link )
  renewable ( Index Term Link )
  types of ( Index Term Link )
 
 /tmp/krb5cc_uid file ( Index Term Link )
 
 /tmp/ovsec_adm.xxxxx file ( Index Term Link )
 
 transparency
  definition in SEAM ( Index Term Link )
 
 types of tickets ( Index Term Link )
    
U
 
 user principal
  description ( Index Term Link )
 
 /usr/lib/krb5/kprop command
  description ( Index Term Link )
    
X
 
 -X option
  Kerberized commands ( Index Term Link )
 
 -x option
  Kerberized commands ( Index Term Link )