Kerberos xinetd Configuration
These instructions are for configuring the kerberos applications with xinetd.
Using NCSA's Kerberos distribution
If you are using NCSA's kerberos distribution, installed in /usr/local/krb5,
then you can use the following for setting up the services with xinetd. The
following configuration files are located in /etc/xinetd.d/:
krb5-telnet
service telnet
{
flags = REUSE
socket_type = stream
wait = no
user = root
server = /usr/local/krb5/sbin/telnetd
server_args = -X KERBEROS_V4 -a valid
log_on_failure += USERID
disable = no
}
kshell
service kshell
{
flags = REUSE
socket_type = stream
wait = no
user = root
server = /usr/local/krb5/sbin/kshd
server_args = -5 -c -A
disable = no
}
klogin
service klogin
{
flags = REUSE
socket_type = stream
wait = no
user = root
server = /usr/local/krb5/sbin/klogind
server_args = -5 -c
disable = no
}
eklogin
service eklogin
{
flags = REUSE
socket_type = stream
wait = no
user = root
server = /usr/local/krb5/sbin/klogind
server_args = -5 -c -e
disable = no
}
gss-ftp
service ftp
{
flags = REUSE
socket_type = stream
wait = no
user = root
server = /usr/local/krb5/sbin/ftpd
server_args = -a
disable = no
}
Using RedHat Kerberos distribution
If you are using RedHat's kerberos distribution then you can use
the following for setting up the services with xinetd. The following
configuration files are located in /etc/xinetd.d/:
krb5-telnet
service telnet
{
flags = REUSE
socket_type = stream
wait = no
user = root
server = /usr/kerberos/sbin/telnetd
server_args = -X KERBEROS_V4 -a valid
log_on_failure += USERID
disable = no
}
kshell
service kshell
{
flags = REUSE
socket_type = stream
wait = no
user = root
server = /usr/kerberos/sbin/kshd
server_args = -5 -c -A
disable = no
}
klogin
service klogin
{
flags = REUSE
socket_type = stream
wait = no
user = root
server = /usr/kerberos/sbin/klogind
server_args = -5 -c
disable = no
}
eklogin
service eklogin
{
flags = REUSE
socket_type = stream
wait = no
user = root
server = /usr/kerberos/sbin/klogind
server_args = -5 -c -e
disable = no
}
gss-ftp
service ftp
{
flags = REUSE
socket_type = stream
wait = no
user = root
server = /usr/kerberos/sbin/ftpd
server_args = -a
disable = no
}
Back to NCSA Kerberos Information
Question or comments about this page may be sent to Kerberos@ncsa.uiuc.edu