OpenSolaris: Difference between revisions

From CSCWiki
Jump to navigation Jump to search
Line 26: Line 26:
add
add
other auth sufficient pam_krb5.so.1
other auth sufficient pam_krb5.so.1

You might want to also do this for 'login'.

You need to create /etc/krb5/krb5.keytab containing host/FQDN@CSCLUB.UWATERLOO.CA where FQDN = the fully qualified domain name of the host.


== External Links ==
== External Links ==

Revision as of 20:47, 18 January 2008

First, Solaris is drugs. Avoid it at all cost.

pkg-get

pkgadd -d http://www.blastwave.org/pkg_get.pkg
pkg-get -i gnupg
pkg-get -i vim

LDAP

ldapclient manual -a credentialLevel=anonymous \
    -a authenticationMethod=none \
    -a defaultSearchBase=dc=csclub,dc=uwaterloo,dc=ca \
    -a defaultSearchScope=sub \
    -a domainName=csclub.uwaterloo.ca \
    -a preferredServerList=ldap1.csclub.uwaterloo.ca,ldap2.csclub.uwaterloo.ca \
    -a defaultServerList=ldap1.csclub.uwaterloo.ca,ldap2.csclub.uwaterloo.ca

Kerberos

Copy caffeine:/etc/krb5.conf to /etc/krb5/krb5.conf

In /etc/pam.conf, after

other auth required   pam_unix_cred.so.1

add

other auth sufficient   pam_krb5.so.1

You might want to also do this for 'login'.

You need to create /etc/krb5/krb5.keytab containing host/FQDN@CSCLUB.UWATERLOO.CA where FQDN = the fully qualified domain name of the host.

External Links

https://www.cs.uwaterloo.ca/twiki/view/CF/ADAddSolaris10