The following planning work sheets illustrates the type of information you need before you enable your systems to use Kerberos authentication.
Prerequisite work sheet | Answers |
---|---|
Is your i5/OS™ V5R3 (5722-SS1) or later for all of your iSeries™ systems? | Yes |
Have you applied the latest program temporary fixes (PTFs)? | Yes |
Are the following options and licensed products
installed on all your iSeries systems?
|
Yes |
Is iSeries Access for Windows (5722-XE1) installed on the administrator's PC? | Yes |
Is iSeries Navigator installed on the administrator's
PC?
|
Yes |
Have you installed the latest IBM iSeries Access for Windows service pack? See iSeries Access for the latest service pack. | Yes |
Do you have *SECADM, *ALLOBJ, and *IOSYSCFG special authorities? | Yes |
Do you have one of the following systems
acting as the Kerberos server? If yes, specify which system.
|
Yes, Windows 2000 Server |
For Windows 2000 Server and Windows Server 2003, do you have Windows Support Tools (which provides the ktpass tool) installed? | Yes |
Is the iSeries system time within 5 minutes of the system time on the Kerberos server? If not see Synchronize system times. | Yes |
Questions | Answers |
---|---|
What is the name of the system group? | MyCo2 system group |
What systems will be included in this system group? | iSeries A, iSeries B, iSeries C, iSeries D |
What are the service principal names for the iSeries systems? | krbsvr400/iseriesa.myco.com@MYCO.COM |