rhcsa 'configure' the system joins the LDAP server, using Kerberos to authenticate the password.

Centralized Identity Management



#Install the package (if you have a practice environment) that does not necessarily need to be installed

sudo yum -y install authconfig-gtk sssd krb5-workstacion

#The old question is to test krb, but the new question is not? No matter what, do it.

After the installation is complete, enter authconfig-gtk directly in the terminal, and it will pop up a graphic for you immediately 0)0

The INFO of LDAP-SERVER will generally be given on the test questions

for example:
------------------------------------------------------------------
LDAP BASE DN         : dc=example,dc=com.
LDAP Server          : classroom.example.com
Kerbros Realm        : EXAMPLE.COM
Kerbros KDC : classroom.example.com
Kerbros Admin Server : classroom.example.com
-------------------------------------------------------------------
Then it also tells you that there is a download address for C (session) A (certificate):
http://xxxxx.xx.com/pub/example-ca.crt
------------------------------------------------------------------


Get the information and leave him alone.

Select 'User Account Database' as LDAP in Graphical.

Then it will report an error and tell you that there is something missing, just pretend it.

may have to be installed twice

After installation, it is very simple to fill in the above content in the corresponding column.

The place where use TLS to encrypt connections should be selected.

Then download the certificate and paste the certificate address into it.

If Kb of kdcs and admin servers cannot be entered

Please uncheck use dns to locate kdcs for realm at the bottom.

Finally Apply the application.




Guess you like

Origin http://43.154.161.224:23101/article/api/json?id=326365896&siteId=291194637