[28942] in Kerberos

home help back first fref pref prev next nref lref last post

issue : Setting up KDC in two different domains

daemon@ATHENA.MIT.EDU (sunil chandran)
Wed Dec 26 14:08:17 2007

Message-ID: <ff9c077a0712252234m19cad7edv63d0467ac2823f0b@mail.gmail.com>
Date: Wed, 26 Dec 2007 12:04:49 +0530
From: "sunil chandran" <sunilsushil@gmail.com>
To: Kerberos@mit.edu
MIME-Version: 1.0
Content-Disposition: inline
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
Errors-To: kerberos-bounces@mit.edu

Hello all,

      I have two domains (xx.com) and (co.yy) two differnt domains
altogether.
i have a KDC set up in (xx.com) . users are in xx.com domain.

but my servers are in (co.yy) domain.

i had set up a test scenario with a user and a server in domain (xx.com)
since KDc was setup i got ticket and was able to authenticate well using
kerberos.

my issue is that all my production servers are in domain (co.yy) which
doesnt have a KDC.
i want to authencticate and use the server services in that domain. setting
up KDC is not feasible in both domains for me.

1. is there any possibility or a way that i can use services from domain(
co.yy) without a KDC set up there?
2. In other words, which REALM does the my server(co.yy) belong to?
3. how can i get a keytab for my server in domain(co.yy) which doesnt have a
KDC ?

please help me with these critical issues.

Thanks in advance.

Sunil
________________________________________________
Kerberos mailing list           Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos

home help back first fref pref prev next nref lref last post