Attribute Description
Required /
Optional Default value
auth.kerberos.dns_l
ookup.k
dc
This is a switch that determines
which information registered in
the SRV records in the DNS
server to use when searching
the Kerberos server.
■
true: Searches with the
information registered in
the SRV records in the DNS
server
■
false: Searches with the host
name and port number
When "realm name" and
"<value specied to the realm
name>.kdc" are specied, the
Kerberos server is not searched
with the information registered
in the SRV records by specifying
"true".
Optional false
auth.kerberos.clock
skew
The acceptable range of the
dierence in time between the
SVP and the Kerberos server
where the SVP is operating.
Must be between 0 and 300
seconds.
1
Optional 300
auth.kerberos.time
out
The number of seconds before
the connection to the RADIUS
server times out. Must be
between 1 and 30. When 0 is
specied, the connection does
not time out until a
communication error occurs.
1
Optonal 10
auth.kerberos.real
m_name
Realm identier name
Any name to distinguish the
information of Kerberos server
in each realm. Duplicate names
cannot be used. If you register
multiple names, use a comma
to separate the names. The
value specied here is called
<realm_name> hereafter.
Optional
2
None
Creating a Kerberos conguration le
Chapter 4: User administration
System Administrator Guide for VSP Gx00 models and VSP Fx00 models 127