Realms are defined in the SDT. The default_realm specification is also known as the “local” realm. The other realms defined in the configuration are known as “foreign” realms.
Users defined to Kerberos are not defined in the configuration file, but must be defined entirely through the Security File. Users defined in the local realm are known as “local” principals. Only local principals are allowed to initiate Kerberos commands from the local and Unix Systems Services. Users defined in a foreign realm are mapped in the SDT with a surrogate user in the local realm.
|
Copyright © 2014 CA Technologies.
All rights reserved.
|
|