marianomier / SEBC

Cloudera Boot Camp
0 stars 1 forks source link

Security Labs #6

Open marianomier opened 6 years ago

marianomier commented 6 years ago

Plan one: follow the documentation here Plan two: Launch the Kerberos wizard and complete the checklist. Set up an MIT KDC Once integration is sucessful, add these files to security/labs: /etc/krb5.conf as krb5.conf.md /var/kerberos/krb5kdc/kdc.conf as kfc.conf.md /var/kerberos/krb5kdc/kadm5.acl as kadm5.acl.md Create a file kinit.md that includes: The kinit command you use to authenticate your test user The output from a klist command listing your credentials and ticket lifetime

image

image

image

image

[logging] default = FILE:/var/log/krb5libs.log kdc = FILE:/var/log/krb5kdc.log admin_server = FILE:/var/log/kadmind.log

[libdefaults] dns_lookup_realm = false ticket_lifetime = 24h renew_lifetime = 7d forwardable = true rdns = false default_realm = MARIANO.COM default_ccache_name = KEYRING:persistent:%{uid} [realms] MARIANO.COM = { kdc =ip-172-31-63-6.ec2.internal admin_server = ip-172-31-63-6.ec2.internal }

[domain_realm] ip-172-31-63-6.ec2.internal = MARIANO.COM ip-172-31-63-6.ec2.internal = MARIANO.COM

image

image image image

image

image

image image

image

image image

image

image

image