Kerberos update krb5.conf
Intended for:
Kerberos users
Scenario/Use case:
Update krb5.conf to newest version
Instructions:
Updates included in krb5.conf v5.7:
- Updated [realms] area under FNAL.GOV:
- added a rule to allow cross realm authentication between the FNAL.GOV realm and the FERMI.WIN.FNAL.GOV realm
How to update krb5.conf
Linux/Unix
- SLF7
yum update fermilab-conf_kerberos
- CentOS 8
yum update fermilab-conf_kerberos
dnf update fermilab-conf_kerberos
- Other
Back up the existing file. Download the update here and manually replace the existing file.
Mac OS
- Fermilab-Managed device
Install from the Self Service app.
- Other
Download the update here and manually replace the existing file.
Windows
- Domain/Fermilab Managed
Install from the Software Center.
- Other
Backup existing file. Download the update here and manually replace the existing file.
How to revert to previous version of krb5.conf
- SL7
yum downgrade fermilab-conf_kerberos
- CentOS 8
yum downgrade fermilab-conf_kerberos
dnf downgrade fermilab-conf_kerberos
- Other
Manually replace the file from back up.
If you have installed the krb5.conf file from Self Service, previous version of the file will be backed up locally.
Mac OS
If you have installed krb5.conf file from Self Service, the previous version of the file will be backed up locally. Manually replace the file from back up. The back up location is: /etc/krb5.conf-original
Windows
If you have installed the krb5.conf file from the Software Center, the previous version of the file will be backed up locally. Manually replace the file from back up. The back up location is C:\ProgramData\Kerberos\krb5(DateStamp).bak, where DateStamp depends on the installation date.
See Also:
The previous version for all operating systems is also available here:
https://metrics.fnal.gov/authentication/krb5conf/