Jump to content United States-English
HP.com Home Products and Services Support and Drivers Solutions How to Buy
» Contact HP
More options
HP.com home
Installing, Configuring and Administering the Kerberos Server V 2.0 on HP-UX 11i: HP 9000 Networking > Chapter 6 Administration

Maintenance Tasks

» 

Technical documentation

Complete book in PDF
» Feedback
Content starts here

 » Table of Contents

 » Glossary

 » Index

There are various maintenance tasks associated with Kerberos Security Servers. This section describes:

  • Protecting Security Server Secrets

  • Backing Up Primary Server Data

Protecting Security Server Secrets

Kerberos Security Server stores two types of secrets, namely:

  • host/fqdn@ REALM service prinicpal

  • Master Password

It is crucial that these secrets not be compromised. Performing simple maintenance tasks and following password protection guidelines helps prevent security breaches.

host/fqdn@REALM

The host/fqdn@REALM service principal name is required for database propagation. You should change this key by generating a new key, extracting it to the server's service key table file and deleting the old key. Refer to “Maintaining Secret Keys In The Key Table File”, for more information on performing these tasks.

NOTE: During key generation and extraction of the host/fqdn@REALM principal, the current service tickets become invalid; but since service tickets are created at each application logon, applications users will not be affected by the update.

Master Password

The master password is entered during installation of a security server and is used while using the principal database utilities. You must select a strong password and make sure that it is kept safe from intruders. Refer to “Database Master Password”, for more information on selecting and protecting the master password.

Printable version
Privacy statement Using this site means you accept its terms Feedback to webmaster
© 2002 Hewlett-Packard Development Company, L.P.