JavaScript is required to for searching.
Skip Navigation Links
Exit Print View
Oracle Solaris Administration: Security Services     Oracle Solaris 11 Information Library
search filter icon
search icon

Document Information

Preface

Part I Security Overview

1.  Security Services (Overview)

Part II System, File, and Device Security

2.  Managing Machine Security (Overview)

3.  Controlling Access to Systems (Tasks)

4.  Virus Scanning Service (Tasks)

5.  Controlling Access to Devices (Tasks)

6.  Using the Basic Audit Reporting Tool (Tasks)

7.  Controlling Access to Files (Tasks)

Part III Roles, Rights Profiles, and Privileges

8.  Using Roles and Privileges (Overview)

9.  Using Role-Based Access Control (Tasks)

10.  Security Attributes in Oracle Solaris (Reference)

Part IV Cryptographic Services

11.  Cryptographic Framework (Overview)

12.  Cryptographic Framework (Tasks)

13.  Key Management Framework

Part V Authentication Services and Secure Communication

14.  Network Services Authentication (Tasks)

15.  Using PAM

16.  Using SASL

17.  Using Secure Shell (Tasks)

18.  Secure Shell (Reference)

Part VI Kerberos Service

19.  Introduction to the Kerberos Service

20.  Planning for the Kerberos Service

21.  Configuring the Kerberos Service (Tasks)

22.  Kerberos Error Messages and Troubleshooting

23.  Administering Kerberos Principals and Policies (Tasks)

24.  Using Kerberos Applications (Tasks)

25.  The Kerberos Service (Reference)

Part VII Auditing in Oracle Solaris

26.  Auditing (Overview)

27.  Planning for Auditing

28.  Managing Auditing (Tasks)

29.  Auditing (Reference)

Glossary

Index

Numbers and Symbols

A

B

C

D

E

F

G

H

I

K

L

M

N

O

P

Q

R

S

T

U

V

W

X

Z

K

-k option
encrypt command, index iconHow to Encrypt and Decrypt a File
Kerberized commands, index iconOverview of Kerberized Commands
mac command, index iconHow to Compute a MAC of a File
-K option
encrypt command, index iconHow to Encrypt and Decrypt a File
mac command, index iconHow to Compute a MAC of a File
Kerberized commands, index iconOverview of Kerberized Commands
rolemod command, index iconHow to Change the Security Attributes of a Role
usermod command, index iconHow to Change the RBAC Properties of a User
.k5.REALM file, description, index iconKerberos Files
.k5login file
description
index iconGranting Access to Your Account
index iconKerberos Files
rather than revealing password, index iconGranting Access to Your Account
kadm5.acl file
description, index iconKerberos Files
format of entries, index iconHow to Modify the Kerberos Administration Privileges
master KDC entry
index iconHow to Manually Configure a Master KDC
index iconHow to Configure a KDC to Use an LDAP Data Server
index iconHow to Swap a Master KDC and a Slave KDC
new principals and
index iconHow to Create a New Kerberos Principal
index iconHow to Duplicate a Kerberos Principal
kadm5.keytab file, description, index iconKerberos Files
kadmin command
creating host principal
index iconHow to Manually Configure a Master KDC
index iconHow to Configure a KDC to Use an LDAP Data Server
description, index iconKerberos Commands
ktadd command, index iconHow to Add a Kerberos Service Principal to a Keytab File
ktremove command, index iconHow to Remove a Service Principal From a Keytab File
removing principals from keytab with, index iconHow to Remove a Service Principal From a Keytab File
SEAM Tool and, index iconWays to Administer Kerberos Principals and Policies
kadmin.local command
adding administration principals
index iconHow to Manually Configure a Master KDC
index iconHow to Configure a KDC to Use an LDAP Data Server
automating creation of principals, index iconAutomating the Creation of New Kerberos Principals
description, index iconKerberos Commands
kadmin.log file, description, index iconKerberos Files
kadmind daemon
Kerberos and, index iconKerberos Daemons
master KDC and, index iconKerberos-Specific Terminology
kbd file, index iconHow to Disable a System's Abort Sequence
KbdInteractiveAuthentication keyword, Secure Shell, index iconKeywords in Secure Shell
kcfd daemon
index iconAdministrative Commands in the Cryptographic Framework
index iconHow to Refresh or Restart All Cryptographic Services
kclient command, description, index iconKerberos Commands
kdb5_ldap_util command, description, index iconKerberos Commands
kdb5_util command
creating KDC database, index iconHow to Manually Configure a Master KDC
creating stash file
index iconHow to Manually Configure a Slave KDC
index iconHow to Configure a Slave KDC to Use Full Propagation
description, index iconKerberos Commands
KDC
backing up and propagating, index iconBacking Up and Propagating the Kerberos Database
configuring master
automatic, index iconHow to Automatically Configure a Master KDC
interactive, index iconHow to Interactively Configure a Master KDC
manual, index iconHow to Manually Configure a Master KDC
with LDAP, index iconHow to Configure a KDC to Use an LDAP Data Server
configuring slave
automatic, index iconHow to Automatically Configure a Slave KDC
interactive, index iconHow to Interactively Configure a Slave KDC
manual, index iconHow to Manually Configure a Slave KDC
copying administration files from slave to master
index iconHow to Manually Configure a Slave KDC
index iconHow to Configure a Slave KDC to Use Full Propagation
creating database, index iconHow to Manually Configure a Master KDC
creating host principal
index iconHow to Manually Configure a Master KDC
index iconHow to Configure a KDC to Use an LDAP Data Server
database propagation, index iconWhich Database Propagation System to Use
master
definition, index iconKerberos-Specific Terminology
planning, index iconThe Number of Slave KDCs
ports, index iconPorts for the KDC and Admin Services
restricting access to servers, index iconHow to Restrict Access to KDC Servers
slave, index iconThe Number of Slave KDCs
definition, index iconKerberos-Specific Terminology
slave or master
index iconKerberos Servers
index iconConfiguring KDC Servers
starting daemon
index iconHow to Manually Configure a Slave KDC
index iconHow to Configure a Slave KDC to Use Full Propagation
swapping master and slave, index iconSwapping a Master KDC and a Slave KDC
synchronizing clocks
master KDC
index iconHow to Manually Configure a Master KDC
index iconHow to Configure a KDC to Use an LDAP Data Server
slave KDC
index iconHow to Manually Configure a Slave KDC
index iconHow to Configure a Slave KDC to Use Full Propagation
kdc.conf file
description, index iconKerberos Files
ticket lifetime and, index iconTicket Lifetimes
kdc.log file, description, index iconKerberos Files
kdcmgr command
configuring master
automatic, index iconHow to Automatically Configure a Master KDC
interactive, index iconHow to Interactively Configure a Master KDC
configuring slave
automatic, index iconHow to Automatically Configure a Slave KDC
interactive, index iconHow to Interactively Configure a Slave KDC
server status, index iconHow to Interactively Configure a Master KDC
kdestroy command
example, index iconDestroying Kerberos Tickets
Kerberos and, index iconKerberos Commands
KeepAlive keyword, Secure Shell, index iconKeywords in Secure Shell
Kerberos
administering, index iconAdministering Kerberos Principals and Policies (Tasks)
Administration Tool
See SEAM Tool
commands
index iconKerberos User Commands
index iconKerberos Commands
components of, index iconKerberos Components
configuration decisions, index iconPlanning for the Kerberos Service
configuring KDC servers, index iconConfiguring KDC Servers
daemons, index iconKerberos Daemons
enabling Kerberized applications only, index iconHow to Enable Only Kerberized Applications
encryption types
overview, index iconKerberos Encryption Types
using, index iconUsing Kerberos Encryption Types
error messages, index iconKerberos Error Messages
examples of using Kerberized commands, index iconUsing Kerberized Commands (Examples)
files, index iconKerberos Files
gaining access to server, index iconGaining Access to a Service Using Kerberos
granting access to your account, index iconGranting Access to Your Account
Kerberos V5 protocol, index iconWhat Is the Kerberos Service?
online help, index iconOnline Help URL in the Graphical Kerberos Administration Tool
options to Kerberized commands, index iconOverview of Kerberized Commands
overview
authentication system
index iconHow the Kerberos Service Works
index iconHow the Kerberos Authentication System Works
Kerberized commands, index iconOverview of Kerberized Commands
password management, index iconKerberos Password Management
planning for, index iconPlanning for the Kerberos Service
realms
See realms (Kerberos)
reference, index iconThe Kerberos Service (Reference)
remote applications, index iconKerberos Remote Applications
table of network command options, index iconOverview of Kerberized Commands
terminology
index iconKerberos Terminology
index iconKerberos-Specific Terminology
troubleshooting, index iconKerberos Troubleshooting
using, index iconUsing Kerberos Applications (Tasks)
Kerberos authentication, and Secure RPC, index iconKerberos Authentication
Kerberos commands, index iconKerberos User Commands
enabling only Kerberized, index iconHow to Enable Only Kerberized Applications
examples, index iconUsing Kerberized Commands (Examples)
kern.notice entry, syslog.conf file, index iconProtecting Executable Files From Compromising Security
kernel providers, listing, index iconHow to List Available Providers
Key Distribution Center, See KDC
key management framework (KMF), See KMF
key pairs
creating, index iconHow to Generate a Key Pair by Using the pktool genkeypair Command
generating
using the pktool command, index iconHow to Generate a Key Pair by Using the pktool genkeypair Command
KEYBOARD_ABORT system variable, index iconHow to Disable a System's Abort Sequence
keylogin command, use for Secure RPC, index iconImplementation of Diffie-Hellman Authentication
KeyRegenerationInterval keyword, sshd_config file, index iconKeywords in Secure Shell
keys
creating DH key for NIS user, index iconHow to Set Up a Diffie-Hellman Key for an NIS User
creating for Secure Shell, index iconHow to Generate a Public/Private Key Pair for Use With Secure Shell
definition in Kerberos, index iconAuthentication-Specific Terminology
generating for Secure Shell, index iconHow to Generate a Public/Private Key Pair for Use With Secure Shell
generating key pair
using the pktool command, index iconHow to Generate a Key Pair by Using the pktool genkeypair Command
generating symmetric key
using the dd command, index iconHow to Generate a Symmetric Key by Using the dd Command
using the pktool command, index iconHow to Generate a Symmetric Key by Using the pktool Command
service key, index iconAdministering Keytab Files
session keys
Kerberos authentication and, index iconHow the Kerberos Authentication System Works
using for MAC, index iconHow to Compute a MAC of a File
keyserv daemon, index iconHow to Restart the Secure RPC Keyserver
keyserver
description, index iconImplementation of Diffie-Hellman Authentication
starting, index iconHow to Restart the Secure RPC Keyserver
keystores
exporting certificates, index iconHow to Export a Certificate and Private Key in PKCS #12 Format
importing certificates, index iconHow to Import a Certificate Into Your Keystore
listing contents, index iconHow to Create a Certificate by Using the pktool gencert Command
managed by KMF, index iconKey Management Framework Utilities
protecting with password in KMF, index iconHow to Generate a Passphrase by Using the pktool setpin Command
supported by KMF
index iconManaging Public Key Technologies
index iconKMF Keystore Management
keytab file
adding master KDC's host principal to
index iconHow to Manually Configure a Master KDC
index iconHow to Configure a KDC to Use an LDAP Data Server
adding service principal to
index iconAdministering Keytab Files
index iconHow to Add a Kerberos Service Principal to a Keytab File
administering, index iconAdministering Keytab Files
administering with ktutil command, index iconAdministering Keytab Files
disabling a host's service with delete_entry command, index iconHow to Temporarily Disable Authentication for a Service on a Host
read into keytab buffer with read_kt command
index iconHow to Display the Keylist (Principals) in a Keytab File
index iconHow to Temporarily Disable Authentication for a Service on a Host
removing principals with ktremove command, index iconHow to Remove a Service Principal From a Keytab File
removing service principal from, index iconHow to Remove a Service Principal From a Keytab File
viewing contents with ktutil command
index iconHow to Remove a Service Principal From a Keytab File
index iconHow to Display the Keylist (Principals) in a Keytab File
viewing keylist buffer with list command
index iconHow to Display the Keylist (Principals) in a Keytab File
index iconHow to Temporarily Disable Authentication for a Service on a Host
keytab option, SASL and, index iconSASL Options
keywords
See also specific keyword
attribute in BART, index iconRules File Attributes
command-line overrides in Secure Shell, index iconSecure Shell Commands
Secure Shell, index iconKeywords in Secure Shell
kgcmgr command, description, index iconKerberos Commands
kinit command
example, index iconCreating a Kerberos Ticket
-F option, index iconCreating a Kerberos Ticket
Kerberos and, index iconKerberos Commands
ticket lifetime, index iconTicket Lifetimes
klist command
example, index iconViewing Kerberos Tickets
-f option, index iconViewing Kerberos Tickets
Kerberos and, index iconKerberos Commands
KMF
adding plugin, index iconHow to Manage Third-Party Plugins in KMF
creating
passphrases for keystores, index iconKMF Keystore Management
password for keystore, index iconHow to Generate a Passphrase by Using the pktool setpin Command
self-signed certificate, index iconHow to Create a Certificate by Using the pktool gencert Command
exporting certificates, index iconHow to Export a Certificate and Private Key in PKCS #12 Format
importing certificates into keystore, index iconHow to Import a Certificate Into Your Keystore
keystores
index iconManaging Public Key Technologies
index iconKMF Keystore Management
library, index iconManaging Public Key Technologies
listing plugins, index iconHow to Manage Third-Party Plugins in KMF
managing
keystores, index iconKMF Keystore Management
PKI policy, index iconKMF Policy Management
plugins, index iconKMF Plugin Management
public key technologies (PKI), index iconManaging Public Key Technologies
removing plugin, index iconHow to Manage Third-Party Plugins in KMF
utilities, index iconKey Management Framework Utilities
kmfcfg command
list plugin subcommand, index iconHow to Manage Third-Party Plugins in KMF
plugin subcommands
index iconManaging Public Key Technologies
index iconKMF Plugin Management
known_hosts file
controlling distribution, index iconMaintaining Known Hosts in Secure Shell
description, index iconSecure Shell Files
Korn shell, privileged version, index iconProfile Shells and RBAC
kpasswd command
error message, index iconChanging Your Password
example, index iconChanging Your Password
Kerberos and, index iconKerberos Commands
passwd command and, index iconChanging Your Password
kprop command, description, index iconKerberos Commands
kpropd.acl file, description, index iconKerberos Files
kpropd daemon, Kerberos and, index iconKerberos Daemons
kproplog command, description, index iconKerberos Commands
krb5.conf file
description, index iconKerberos Files
domain_realm section, index iconMapping Host Names Onto Realms
editing
index iconHow to Manually Configure a Master KDC
index iconHow to Configure a KDC to Use an LDAP Data Server
ports definition, index iconPorts for the KDC and Admin Services
krb5.keytab file, description, index iconKerberos Files
krb5cc_uid file, description, index iconKerberos Files
krb5kdc daemon
Kerberos and, index iconKerberos Daemons
master KDC and, index iconKerberos-Specific Terminology
starting
index iconHow to Manually Configure a Slave KDC
index iconHow to Configure a Slave KDC to Use Full Propagation
ksh command, privileged version, index iconProfile Shells and RBAC
ktadd command
adding service principal
index iconAdministering Keytab Files
index iconHow to Add a Kerberos Service Principal to a Keytab File
syntax, index iconHow to Add a Kerberos Service Principal to a Keytab File
ktkt_warnd daemon, Kerberos and, index iconKerberos Daemons
ktremove command, index iconHow to Remove a Service Principal From a Keytab File
ktutil command
administering keytab file, index iconAdministering Keytab Files
delete_entry command, index iconHow to Temporarily Disable Authentication for a Service on a Host
Kerberos and, index iconKerberos Commands
list command
index iconHow to Display the Keylist (Principals) in a Keytab File
index iconHow to Temporarily Disable Authentication for a Service on a Host
read_kt command
index iconHow to Display the Keylist (Principals) in a Keytab File
index iconHow to Temporarily Disable Authentication for a Service on a Host
viewing list of principals
index iconHow to Remove a Service Principal From a Keytab File
index iconHow to Display the Keylist (Principals) in a Keytab File
kvno command, Kerberos and, index iconKerberos Commands