Layer: services

Module: kerberos

Tunables Interfaces

Description:

This policy supports:

Servers:

Clients:


Tunables:

allow_kerberos
Default value

false

Description

Allow system to run with kerberos

Return

Interfaces:

kerberos_dontaudit_write_config( domain )
Summary

Do not audit attempts to write the kerberos configuration file (/etc/krb5.conf).

Parameters
Parameter:Description:Optional:
domain

Domain to not audit.

No
kerberos_manage_host_rcache( domain )
Summary

Read the kerberos kdc configuration file (/etc/krb5kdc.conf).

Parameters
Parameter:Description:Optional:
domain

Domain allowed access.

No
kerberos_read_config( domain )
Summary

Read the kerberos configuration file (/etc/krb5.conf).

Parameters
Parameter:Description:Optional:
domain

Domain allowed access.

No
kerberos_read_kdc_config( domain )
Summary

Read the kerberos kdc configuration file (/etc/krb5kdc.conf).

Parameters
Parameter:Description:Optional:
domain

Domain allowed access.

No
kerberos_read_keytab( domain )
Summary

Read the kerberos key table.

Parameters
Parameter:Description:Optional:
domain

Domain allowed access.

No
kerberos_rw_config( domain )
Summary

Read and write the kerberos configuration file (/etc/krb5.conf).

Parameters
Parameter:Description:Optional:
domain

Domain allowed access.

No
kerberos_use( domain )
Summary

Use kerberos services

Parameters
Parameter:Description:Optional:
domain

Domain allowed access.

No
Return