ibm-information-center/dist/eclipse/plugins/i5OS.ic.rzakh_5.4.0.1/rzakhpascesenario_addiseries-aprincipal.htm

60 lines
4.2 KiB
HTML
Raw Normal View History

2024-04-02 14:02:31 +00:00
<?xml version="1.0" encoding="UTF-8"?>
<!DOCTYPE html
PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html lang="en-us" xml:lang="en-us">
<head>
<meta http-equiv="Content-Type" content="text/html; charset=utf-8" />
<meta name="security" content="public" />
<meta name="Robots" content="index,follow" />
<meta http-equiv="PICS-Label" content='(PICS-1.1 "http://www.icra.org/ratingsv02.html" l gen true r (cz 1 lz 1 nz 1 oz 1 vz 1) "http://www.rsac.org/ratingsv01.html" l gen true r (n 0 s 0 v 0 l 0) "http://www.classify.org/safesurf/" l gen true r (SS~~000 1))' />
<meta name="DC.Type" content="task" />
<meta name="DC.Title" content="Add iSeries A service principal to the Kerberos server" />
<meta name="DC.Relation" scheme="URI" content="rzakhscenpase.htm" />
<meta name="DC.Relation" scheme="URI" content="rzakhpascesenario_createuserprincipals.htm" />
<meta name="DC.Relation" scheme="URI" content="rzakhpascesenario_configurewindows2000andXP.htm" />
<meta name="copyright" content="(C) Copyright IBM Corporation 1998, 2006" />
<meta name="DC.Rights.Owner" content="(C) Copyright IBM Corporation 1998, 2006" />
<meta name="DC.Format" content="XHTML" />
<meta name="DC.Identifier" content="rzakhpascesenario_addiseries-aprincipal" />
<meta name="DC.Language" content="en-us" />
<!-- All rights reserved. Licensed Materials Property of IBM -->
<!-- US Government Users Restricted Rights -->
<!-- Use, duplication or disclosure restricted by -->
<!-- GSA ADP Schedule Contract with IBM Corp. -->
<link rel="stylesheet" type="text/css" href="./ibmdita.css" />
<link rel="stylesheet" type="text/css" href="./ic.css" />
<title>Add iSeries A service principal to the Kerberos server</title>
</head>
<body id="rzakhpascesenario_addiseries-aprincipal"><a name="rzakhpascesenario_addiseries-aprincipal"><!-- --></a>
<!-- Java sync-link --><script language="Javascript" src="../rzahg/synch.js" type="text/javascript"></script>
<h1 class="topictitle1">Add iSeries A service principal to the Kerberos server</h1>
<div><div class="section">For i5/OS™ interfaces
to accept Kerberos tickets, you must add them to the Kerberos server as principals.
If you are already in the kadmin environment, skip steps 1 through 4.<div class="note"><span class="notetitle">Note:</span> Any
and all passwords used within this scenario are for example purposes only.
They should not be used during an actual configuration. The principal name
also is for example purposes only.</div>
</div>
<ol><li class="stepexpand"><span>In a character-based interface, type <tt>call QP2TERM</tt> at the
command line.</span> This command opens an interactive shell environment
that allows you to work with i5/OS PASE applications.</li>
<li class="stepexpand"><span>At the command line, enter <tt>export PATH=$PATH:/usr/krb5/sbin</tt>.</span> This command points to the Kerberos scripts that are necessary to run
the executable files.</li>
<li class="stepexpand"><span>At the command line, enter <tt>kadmin -p admin/admin</tt>, and
press Enter.</span></li>
<li class="stepexpand"><span>Sign in with administrator's password.</span> For example, <kbd class="userinput">secret</kbd>.</li>
<li class="stepexpand"><span>At the kadmin prompt, enter <tt>addprinc -pw iseriesa123 krbsvr400/iseriesa.myco.com</tt>.</span> You will receive a message that reads:<pre>Principal "krbsvr400/iseriesa.myco.com@MYCO.COM" created.</pre>
</li>
<li class="stepexpand"><span>Enter <tt>quit</tt> to exit the kadmin interface, and press F3
(Exit) to exit the PASE environment.</span></li>
</ol>
</div>
<div>
<div class="familylinks">
<div class="parentlink"><strong>Parent topic:</strong> <a href="rzakhscenpase.htm" title="Understand the goals, objectives, prerequisites, and configuration steps for setting up your Kerberos server.">Scenario: Set up Kerberos server in i5/OS PASE</a></div>
<div class="previouslink"><strong>Previous topic:</strong> <a href="rzakhpascesenario_createuserprincipals.htm">Create user principals on the Kerberos server</a></div>
<div class="nextlink"><strong>Next topic:</strong> <a href="rzakhpascesenario_configurewindows2000andXP.htm">Configure Windows 2000 and Windows XP workstations</a></div>
</div>
</div>
</body>
</html>