Indiana University
University Information Technology Services
  
What are archived documents?

At IU, in Gentoo Linux, how do I authenticate to the Kerberos realm (IU.EDU)?

To authenticate to the Kerberos realm at Indiana University (IU.EDU) using Gentoo Linux:

Note: You will need to be logged in as root for the following commands to work.

  1. Run the following command to install MIT Kerberos 5: USE="-krb4" emerge mit-krb5
  2. Run the following command to install pam_krb5: emerge pam_krb5
  3. Download the krb5.conf file at: http://informationsecurity.iu.edu/krb5.conf
  4. Change the auth section of /etc/pam.d/system-auth to: auth required /lib/security/pam_env.so auth sufficient /lib/security/pam_unix.so likeauth nullok auth sufficient /lib/security/pam_krb5.so use_first_pass auth required /lib/security/pam_deny.so

When you attempt to authenticate, PAM will first check the local /etc/passwd file for the correct password. If this check fails, PAM will then perform a check against one of the Kerberos servers. If the Kerberos check is successful, you will be allowed to log in.

To log into a workstation, you must have an existing local account.

At Indiana University, to get support for personal or departmental Linux or Unix systems, see At IU, how do I get support for Linux or Unix?

This is document aqjc in domain all.
Last modified on October 27, 2008.
Please tell us, did you find the answer to your question?