[libdefaults] default = benin.groupmediacontact.local default_realm = BENIN.GROUPMEDIACONTACT.LOCAL kdctimesync = 1 # proxiable = true dns_lookup_realm = true dns_lookup_kdc = true forwardable = yes [realms] BENIN.GROUPMEDIACONTACT.LOCAL = { kdc = mercures2.benin.groupmediacontact.local #kdc = mercure.benin.groupmediacontact.local:88 #You can have more than one kds, just keep adding more kdc = #entries #kdc = dsN.domain.com:88 #Uncomment if you have a krb admin server # admin_server = mercures2.benin.groupmediacontact.local:464 admin_server = mercures2.benin.groupmediacontact.local default_domain = BENIN.GROUPMEDIACONTACT.LOCAL } [domain_realm] .benin.groupmediacontact.local = BENIN.GROUPMEDIACONTACT.LOCAL benin.groupmediacontact.local = BENIN.GROUPMEDIACONTACT.LOCAL [login] krb4_convert = true krb4_get_tickets = false [kdc] profile = /var/kerberos/krb5kdc/kdc.conf [appdefaults] pam = { debug = false ticket_lifetime = 36000 renew_lifetime = 36000 forwardable = true krb4_convert = false } [logging] default = FILE:/var/log/krb5libs.log kdc = FILE:/var/log/krb5kdc.log admin_server = FILE:/var/log/kadmind.log