TD 92579EN
15 February 2012 / Ver. H
Installation and Operation Manual
IP-DECT Base Station & IP-DECT Gateway (software version 5.0.x)
67
2
Login on the client using a Windows server account. When prompted for user
name, the name of the Windows domain has to be entered in front of the user
name, separated by a backslash in the following way: DOMAIN\username.
Configure secondary Kerberos server
The Kerberos server is crucial when using Kerberos authentication, so it is recommended
to have a secondary Kerberos server in the IP-DECT system. The secondary server is used if
the primary server is not working properly. It is recommended to set up the secondary
Kerberos server on the Standby Master. To configure an IPBS/IPBL as a secondary Kerberos
server, do the following:
1
Make sure that the IP address of a NTP time server is specified. Select General >
NTP.
2
Select General > Kerberos.
3
Enter the root password for the secondary Kerberos server which should be the
same as the password used for the primary server. This password is used to encrypt
the information stored on the server.
4
Click "OK".
5
The secondary Kerberos server is enabled. Enter the realm name in the
Realm
field.
6
LDAP is used to replicate the primary server database. Enter the IP address of the
primary Kerberos server in the
Master
field in the LDAP Replication section. For
more information about LDAP, see
8.4
LDAP
on page 82.
7
Select the Enable check box.
8
Click "OK".
9
Click "OK" again to perform the LDAP replication.
Each client must also be configured with the secondary server information.
10
Select General > Admin.
11
Go to the Authentication Servers section.
12
In the Secondary Address text field of the Kerberos server, enter the IP address of
the secondary Kerberos server. In the secondary Kerberos server enter 127.0.0.1
(localhost) as the IP address. The Port text field is filled out automatically.
13
Click "OK".
Delete a user or trusted realm
To delete a user account from the Kerberos server do the following:
1
Select General > Kerberos.
2
In the Users section select the Delete check box for the user to be deleted.
3
Click "OK".
To delete a trusted realm relationship from the Kerberos server do the following:
1
Select General > Kerberos.
2
In the Trusted Realms section select the Delete check box for the realm to be
deleted.
3
Click "OK".