# cfengine krb5.conf version 3 [libdefaults] allow_weak_crypto = true forwardable = yes ticket_lifetime = 2400000 default_realm = ATLAS.UMICH.EDU default_tkt_enctypes = aes256-cts-hmac-sha1-96 aes128-cts-hmac-sha1-96 des3-hmac-sha1 arcfour-hmac-md5 des-cbc-crc default_tgs_enctypes = aes256-cts-hmac-sha1-96 aes128-cts-hmac-sha1-96 des3-hmac-sha1 arcfour-hmac-md5 des-cbc-crc [realms] ATLAS.UMICH.EDU = { default_domain = grid.umich.edu kdc = linat03.grid.umich.edu:88 kdc = linat02.grid.umich.edu:88 kdc = linat04.grid.umich.edu:88 admin_server = linat03.grid.umich.edu:749 kpasswd_protocol = SET_CHANGE } CITI.UMICH.EDU = { kdc = kerberos.citi.umich.edu:88 admin_server = kerberos.citi.umich.edu:749 kpasswd_protocol = SET_CHANGE } UMICH.EDU = { kdc = fear.ifs.umich.edu:88 kdc = surprise.ifs.umich.edu:88 kdc = ruthless.ifs.umich.edu:88 admin_server = fear.ifs.umich.edu:749 kpasswd_protocol = SET_CHANGE } CERN.CH = { default_domain = cern.ch kpasswd_server = afskrb5m.cern.ch admin_server = afskrb5m.cern.ch kdc = cerndc.cern.ch. kpasswd_protocol = SET_CHANGE v4_name_convert = { host = { rcmd = host } } } FNAL.GOV = { default_domain = fnal.gov admin_server = krb-fnal-admin.fnal.gov kdc = krb-fnal-1.fnal.gov:88 kdc = krb-fnal-2.fnal.gov:88 kdc = krb-fnal-3.fnal.gov:88 kpasswd_protocol = SET_CHANGE } USATLAS.BNL.GOV = { kdc = akdc.usatlas.bnl.gov kdc = akdc01.usatlas.bnl.gov kdc = akdc02.usatlas.bnl.gov kdc = akdc00.usatlas.bnl.gov admin_server = akdc00.usatlas.bnl.gov default_domain = usatlas.bnl.gov } [domain_realm] .211.43.102 = ATLAS.UMICH.EDU .211.43.103 = ATLAS.UMICH.EDU .211.43.104 = ATLAS.UMICH.EDU 192.41.230. = ATLAS.UMICH.EDU .grid.umich.edu = ATLAS.UMICH.EDU .aglt2.org = ATLAS.UMICH.EDU .physics.lsa.umich.edu = ATLAS.UMICH.EDU .citi.umich.edu = CITI.UMICH.EDU .umich.edu = UMICH.EDU .cern.ch = CERN.CH .fnal.gov = FNAL.GOV .usatlas.bnl.gov = USATLAS.BNL.GOV usatlas.bnl.gov = USATLAS.BNL.GOV