Once the servers have been restarted, the systems will be using Kerberos
for authentication and the trusted group for authorization. For a system
to accept and carry out a request, that system will verify not only that the
requesting system has a valid Kerberos principal, but also that it trusts
that Kerberos principal by checking if that principal is in its trusted group
list.
Note: You need to repeat these steps on each of the target systems,
using the following i5/OS™ service principals:
- krbsvr400/iseriesa.myco.com@MYCO.COM
- krbsvr400/iseriesb.myco.com@MYCO.COM
- krbsvr400/iseriesc.myco.com@MYCO.COM
- krbsvr400/iseriesd.myco.com@MYCO.COM
To verify that Kerberos authentication is working on the endpoint
systems, complete the following tasks:
Note: Be sure you have created a home
directory for your i5/OS user profile before performing these tasks.
You have now completed the tasks required to configure your Management
Central server jobs to use Kerberos authentication between endpoint systems.