[Search for users]
[Overall Top Noters]
[List of all Conferences]
[Download this site]
Title: | USG buildhelp questions/answers |
|
Moderator: | SMURF::FILTER |
|
Created: | Mon Apr 26 1993 |
Last Modified: | Mon Jan 20 1997 |
Last Successful Update: | Fri Jun 06 1997 |
Number of topics: | 2763 |
Total number of notes: | 5802 |
2207.0. "fwd: changes to kerberos in the PE environment" by AOSG::FILTER (Automatic Posting Software - mail to flume::puck) Fri May 03 1996 16:38
Date Of Receipt: 11-APR-1996 10:33:53.97
From: SMURF::FLUME::jmf "Joshua M. Friedman OSF/UNIX SDE 11-Apr-1996 1031"
To: odehelp@DEC:.zko.flume
CC: tea@DEC:.zko.flume, snow@DEC:.zko.flume, jmf@DEC:.zko.flume,
ring@DEC:.zko.flume, tresvik@DEC:.zko.flume
Subj: fwd: changes to kerberos in the PE environment
This change to our environment may be useful for you to know about
re: ODE & Kerberos issues.
Since kerberos1 used to be fbuffer, which would always time out from non-
f-net hosts (i.e. all workstations), and now it's become an available server,
workstation authentications should happen a lot faster in ZK3.
-josh
------- Forwarded Message
To: 33adms
Cc: [email protected], jmf, morse, binder
Subject: changes to kerberos in the PE environment
Date: Thu, 11 Apr 96 08:22:05 -0400
From: "Nolan Ring, UNIX Engineering Services Group, 381-0365" <ring>
X-Mts: smtp
Hi,
We ran into a problem yesterday because ronyon (aka kerberos4),
a MIPS box in the doc area, was keeping bad time.
All of the production systems were pointing to kerberos4 first
for their ticket requests, a setup we have because the ticket grantor
must be a single interface system. Ronyon's problems meant
that people couldn't get tickets.
With Josh's help I set up virago as a kerberos slave in the
PE environment. We decided to have virago be kerberos1 (instead of
fbuffer) and to have all of the production systems point to it.
If the kerberos logs on virago are any indication, it is working just fine!
The PE has virtually no reliance on ronyon any more.
Because virago now serves a PE function, I've set it up so that
people with root privs on yield can rsh into it.
Let me know if you encounter any problems because of this change.
Thanks.
Nolan
------- End of Forwarded Message
T.R | Title | User | Personal Name | Date | Lines
|
---|