Compare commits
3 Commits
Author | SHA1 | Date | |
---|---|---|---|
3381c69c08 | |||
6edbae36fd | |||
95e6dd7c59 |
21
kerberos/README.md
Normal file
21
kerberos/README.md
Normal file
@ -0,0 +1,21 @@
|
|||||||
|
|
||||||
|
|
||||||
|
## 编译
|
||||||
|
|
||||||
|
```bash
|
||||||
|
docker build -t zeekling/kerberos ./
|
||||||
|
```
|
||||||
|
|
||||||
|
## 启动
|
||||||
|
|
||||||
|
```bash
|
||||||
|
docker run -d --name=kerberos zeekling/kerberos
|
||||||
|
```
|
||||||
|
|
||||||
|
## 安装依赖
|
||||||
|
|
||||||
|
```bash
|
||||||
|
apt install krb5-user
|
||||||
|
```
|
||||||
|
|
||||||
|
|
@ -4,7 +4,7 @@ kdc = FILE:/var/log/krb5kdc.log
|
|||||||
admin_server = FILE:/var/log/kadmind.log
|
admin_server = FILE:/var/log/kadmind.log
|
||||||
|
|
||||||
[libdefaults]
|
[libdefaults]
|
||||||
default_realm = TEST.COM
|
default_realm = TEST.HADOOP.COM
|
||||||
dns_lookup_realm = false
|
dns_lookup_realm = false
|
||||||
dns_lookup_kdc = false
|
dns_lookup_kdc = false
|
||||||
ticket_lifetime = 24h
|
ticket_lifetime = 24h
|
||||||
@ -12,7 +12,7 @@ renew_lifetime = 7d
|
|||||||
forwardable = true
|
forwardable = true
|
||||||
|
|
||||||
[realms]
|
[realms]
|
||||||
TEST.COM = {
|
TEST.HADOOP.COM = {
|
||||||
kdc = krb5-kdc-server:88
|
kdc = krb5-kdc-server:88
|
||||||
admin_server = krb5-kdc-server
|
admin_server = krb5-kdc-server
|
||||||
}
|
}
|
||||||
|
@ -1 +1 @@
|
|||||||
*/admin@TEST.COM *
|
*/admin@TEST.HADOOP.COM *
|
||||||
|
@ -3,12 +3,12 @@ kdc_ports = 88
|
|||||||
kdc_tcp_ports = 88
|
kdc_tcp_ports = 88
|
||||||
|
|
||||||
[realms]
|
[realms]
|
||||||
TEST.COM = {
|
TEST.HADOOP.COM = {
|
||||||
#master_key_type = aes256-cts
|
master_key_type = aes256-cts
|
||||||
acl_file = /etc/krb5kdc/kadm5.acl
|
acl_file = /etc/krb5kdc/kadm5.acl
|
||||||
dict_file = /usr/share/dict/words
|
dict_file = /usr/share/dict/words
|
||||||
admin_keytab = /var/krb5kdc/kadm5.keytab
|
admin_keytab = /var/krb5kdc/kadm5.keytab
|
||||||
max_renewable_life = 7d 0h 0m 0s
|
max_renewable_life = 7d 0h 0m 0s
|
||||||
supported_enctypes = aes256-cts:normal aes128-cts:normal des3-hmac-sha1:normal arcfour-hmac:normal des-hmac-sha1:normal des-cbc-md5:normal des-cbc-crc:normal
|
supported_enctypes = aes256-cts-hmac-sha1-96:normal aes128-cts-hmac-sha1-96:normal des3-cbc-sha1:normal arcfour-hmac-md5:normal aes128-cts aes256-cts
|
||||||
}
|
}
|
||||||
|
|
||||||
|
@ -1,6 +1,6 @@
|
|||||||
#!/bin/bash
|
#!/bin/bash
|
||||||
|
|
||||||
FQDN="test.com"
|
FQDN="test.hadoop.com"
|
||||||
ADMIN="admin"
|
ADMIN="admin"
|
||||||
PASS="Admin12!"
|
PASS="Admin12!"
|
||||||
|
|
||||||
|
Loading…
x
Reference in New Issue
Block a user