Manage CA paths
Use the CA Paths tab on the Kerberos Configuration management page in the LMI to manage these settings. These settings contain the authentication paths used with direct (non-hierarchical) cross-realm authentication.
The CA Paths tab contains settings for the capaths section of the corresponding Kerberos configuration file. We can create, edit, and delete properties and CA paths in this section. We can also test authentication with your web server principal name and password.Steps
- Select Web > Global Settings > Kerberos Configuration. The current Kerberos configuration is displayed.
- On the CA Paths tab, take actions as needed.
- Create a CA path
- Click New > Client Realm.
- In the Create Client Realm window, enter the realm name in the Client Realm field.
- Click Save.
- Create a property
- Client realm in which to create the property.
- Click New > Property.
- In the Create New Property window, provide a value for the Server Realm and Intermediate Realm.
- Click Save.
- Edit a property
- Select the property to edit from the table.
- Click Edit.
- In the Edit Property window, modify the value as needed.
- Click Save.
- Delete a CA path
- Select the CA path to delete from the table.
- Click Delete.
- In the Confirm Action window, click Yes.
- Delete a property
- Select the property to delete from the table.
- Click Delete.
- In the Confirm Action window, click Yes.
- Test authentication with principal and password
- Click Test.
- In the Test Kerberos Authentication window, enter the name of the user that is created as the web server principal in the Username field.
- Enter the password in the Password field.
- Click Test.
Parent topic: Kerberos configuration