4–7 Oct 2011
Building 5, Hamburg site
Europe/Berlin timezone
Live stream under http://webcast.desy.de/Live/desylive38.htm

Merging CERN's Kerberos Realms under Active Directory

6 Oct 2011, 10:00
20m
Main Auditorium (Building 5, Hamburg site)

Main Auditorium

Building 5, Hamburg site

Notkestrasse 85 D-22607 Hamburg

Speaker

Mr John Hefferman (CERN)

Summary

CERN IT has recently carried out a merger of its central Kerberos services. The aim of this presentation is to:
- Highlight the problems of having two separate Kerberos Realms and why this merger was carried out.
- Summarise the migration approaches considered (Cross realm trust, Heimdal, Active Directory) and the problems encountered with the chosen method.
- Provide an overview of the changes made to the Kerberos infrastructure to enable the Active Directory KDC's to provide authentication in place of Heimdal.

Estimated length of presentation<BR>(in minutes, may be changed by chair) 15 minutes

Primary author

Presentation materials