[Freeipa-devel] solaris 10 x86 client instructions

Simo Sorce ssorce at redhat.com
Thu Jan 10 22:32:42 UTC 2008


On Thu, 2008-01-10 at 17:30 -0500, Rob Crittenden wrote:
> > Second, using kadmin.local you will create the service principal under
> > cn=kerberos and not under cn=services, until we have real computer
> > objects I think we should store host/fqdn principals under services.
> 
> That probably explains why ipa-getkeytab isn't find the principal in F-7 
> for me then.

IIRC ipa-getkeytab will get you a keytab for just any principal at this
time (even users wiping out their previous password :-), I can't
remember limiting it to the cn=services tree.

Simo.

-- 
| Simo S Sorce |
| Sr.Soft.Eng. |
| Red Hat, Inc |
| New York, NY |




More information about the Freeipa-devel mailing list