From ffa65c885b78a8d783f9e8cd51cf7c0b751207f9 Mon Sep 17 00:00:00 2001 From: Timothy Pearson Date: Mon, 4 Jun 2012 02:43:34 -0500 Subject: New realm now functions almost fully --- confskel/heimdal/krb5.conf | 13 ------------- 1 file changed, 13 deletions(-) (limited to 'confskel/heimdal/krb5.conf') diff --git a/confskel/heimdal/krb5.conf b/confskel/heimdal/krb5.conf index 9185177..e76a90f 100644 --- a/confskel/heimdal/krb5.conf +++ b/confskel/heimdal/krb5.conf @@ -1,8 +1,6 @@ [libdefaults] ticket_lifetime = 86400 default_realm = @@@REALM_UCNAME@@@ - default_etypes = des3-hmac-sha1 des-cbc-crc des-cbc-md5 - default_etypes_des = des3-hmac-sha1 des-cbc-crc des-cbc-md5 [appdefaults] pkinit_anchors = FILE:/etc/trinity/ldap/tde-ca/anchors/tdeca.pem @@ -21,17 +19,6 @@ @@@REALM_LCNAME@@@ = @@@REALM_UCNAME@@@ .@@@REALM_LCNAME@@@ = @@@REALM_UCNAME@@@ -[kdc] - enable-pkinit = yes - pkinit_identity = FILE:/etc/trinity/ldap/tde-ca/public/@@@KDCSERVER@@@.pki.crt,/etc/trinity/ldap/tde-ca/private/@@@KDCSERVER@@@.pki.key - pkinit_anchors = FILE:/etc/trinity/ldap/tde-ca/anchors/tdeca.pem - pkinit_allow-proxy-certificate = false - - database = { - dbname = ldap:@@@REALM_DCNAME@@@ - acl_file = /etc/heimdal-kdc/kadmind.acl - } - [logging] kdc = FILE:/var/log/krb5kdc.log admin_server = FILE:/var/log/kadmin.log -- cgit v1.2.1