From f2f4d17e723feb8425bc9442c52f11bafaae8dab Mon Sep 17 00:00:00 2001 From: zeekling Date: Thu, 5 Oct 2023 13:16:43 +0000 Subject: [PATCH] =?UTF-8?q?=E4=BF=AE=E6=94=B9kerberos=E7=9B=B8=E5=85=B3=20?= =?UTF-8?q?(#9)?= MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit 1.修改域名为test.hadoop.com。 2.增加readme。 Reviewed-on: https://git.zeekling.cn/linux/dockerFiles/pulls/9 --- kerberos/README.md | 21 +++++++++++++++++++++ kerberos/client/krb5.conf | 4 ++-- kerberos/server/kadm5.acl | 2 +- kerberos/server/krb5.conf | 2 +- kerberos/start.sh | 2 +- 5 files changed, 26 insertions(+), 5 deletions(-) create mode 100644 kerberos/README.md diff --git a/kerberos/README.md b/kerberos/README.md new file mode 100644 index 0000000..e6dc98e --- /dev/null +++ b/kerberos/README.md @@ -0,0 +1,21 @@ + + +## 编译 + +```bash +docker build -t zeekling/kerberos ./ +``` + +## 启动 + +```bash +docker run -d --name=kerberos zeekling/kerberos +``` + +## 安装依赖 + +```bash +apt install krb5-user +``` + + diff --git a/kerberos/client/krb5.conf b/kerberos/client/krb5.conf index 95071ff..27bdc46 100644 --- a/kerberos/client/krb5.conf +++ b/kerberos/client/krb5.conf @@ -4,7 +4,7 @@ kdc = FILE:/var/log/krb5kdc.log admin_server = FILE:/var/log/kadmind.log [libdefaults] -default_realm = TEST.COM +default_realm = TEST.HADOOP.COM dns_lookup_realm = false dns_lookup_kdc = false ticket_lifetime = 24h @@ -12,7 +12,7 @@ renew_lifetime = 7d forwardable = true [realms] -TEST.COM = { +TEST.HADOOP.COM = { kdc = krb5-kdc-server:88 admin_server = krb5-kdc-server } diff --git a/kerberos/server/kadm5.acl b/kerberos/server/kadm5.acl index e712aa5..a6c9f2c 100644 --- a/kerberos/server/kadm5.acl +++ b/kerberos/server/kadm5.acl @@ -1 +1 @@ -*/admin@TEST.COM * +*/admin@TEST.HADOOP.COM * diff --git a/kerberos/server/krb5.conf b/kerberos/server/krb5.conf index 2067290..56e3fef 100644 --- a/kerberos/server/krb5.conf +++ b/kerberos/server/krb5.conf @@ -3,7 +3,7 @@ kdc_ports = 88 kdc_tcp_ports = 88 [realms] -TEST.COM = { +TEST.HADOOP.COM = { #master_key_type = aes256-cts acl_file = /etc/krb5kdc/kadm5.acl dict_file = /usr/share/dict/words diff --git a/kerberos/start.sh b/kerberos/start.sh index 64d715f..e614a69 100755 --- a/kerberos/start.sh +++ b/kerberos/start.sh @@ -1,6 +1,6 @@ #!/bin/bash -FQDN="test.com" +FQDN="test.hadoop.com" ADMIN="admin" PASS="Admin12!"