User Tools

Site Tools


hosts:enclave:kerberos

Differences

This shows you the differences between two versions of the page.

Link to this comparison view

Both sides previous revisionPrevious revision
hosts:enclave:kerberos [2022/09/27 00:22] tcmalhosts:enclave:kerberos [Unknown date] (current) – removed - external edit (Unknown date) 127.0.0.1
Line 1: Line 1:
-====== Kerberos ====== 
  
-^ Port(s) | 88, 749  | 
-^ Publicly Accessible?   | No | 
-^ Upstream       | [[https://web.mit.edu/kerberos/|MIT Kerberos]] | 
- 
-A network authentication protocol. Because our network is largely trusted, this mostly just functions as a secure and authoritative way to validate passwords. 
- 
-===== Data directories ===== 
- 
-  * ''/var/lib/krb5kdc/'' 
- 
-===== Configuration locations ===== 
- 
-Handled declaratively using [[https://git.tardisproject.uk/tardis/nix/-/tree/main/profiles/services/krb|Nix]]. Unfortunately, upstream doesn't have a module for the kerberos KDC, so we use a [[https://git.tardisproject.uk/tardis/nix/-/blob/main/modules/services/kdc.nix|custom one]]. 
hosts/enclave/kerberos.1664238157.txt.gz · Last modified: 2022/09/27 00:22 by tcmal