[31609] in Kerberos

home help back first fref pref prev next nref lref last post

Re: moving kerberos master to new server

daemon@ATHENA.MIT.EDU (Sachin Punadikar)
Fri Oct 23 10:12:35 2009

MIME-Version: 1.0
In-Reply-To: <374416a5-2b8a-419c-85ba-c1100b48cbbb@l34g2000vba.googlegroups.com>
Date: Fri, 23 Oct 2009 19:40:17 +0530
Message-ID: <9549b1d80910230710n4fedc349rd4ce7704d256fc21@mail.gmail.com>
From: Sachin Punadikar <punadikar.sachin@gmail.com>
To: peter sands <peter_sands@techemail.com>
Cc: kerberos@mit.edu
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
Errors-To: kerberos-bounces@mit.edu

Pete,

Ideally it should work. But I would suggest you to take dump of KDC database
and then move on to the new hardware.

- Sachin.

On Fri, Oct 23, 2009 at 5:33 PM, peter sands <peter_sands@techemail.com>wrote:

> Hello,
> Currently using kerberos 5.
> Soon I plan to migrate this server onto another hardware that will
> have a new hostname and IP, but same O/S level (aix).
>
> My first thoughts in doing this was to:
> Stop  the master server, all clients will then goto to the slave for
> authentication.
> Install the krb5 binaries, without configuring the new master.
> Tar up the /var/krb5 and /etc/krb5 directories, then untar it onto the
> new host.
> Change the kdc and krb5 conf files with the new hostname. Start the
> new master up
>
> Would that work, or is there another sequence I should follow.
>
> Thanks
> Pete.
> ________________________________________________
> Kerberos mailing list           Kerberos@mit.edu
> https://mailman.mit.edu/mailman/listinfo/kerberos
>
________________________________________________
Kerberos mailing list           Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos

home help back first fref pref prev next nref lref last post