ktutil - Kerberos keytab maintenance utility
/usr/bin/ktutil
The ktutil command is an interactive command-line interface utility for managing the keylist in keytab files. You must read in a keytab's keylist before you can manage it. Also, the user running the ktutil command must have read/write permissions on the keytab. For example, if a keytab is owned by root, which it typically is, ktutil must be run as root to have the appropriate permissions.
clear_list
clear
read_kt file
rkt file
write_kt file
wkt file
add_entry number
addent number
delete_entry number
delent number
list
l
list_request
lr
quit
exit
q
Example 1 Deleting a principal from a file
The following example deletes the host/[email protected] principal from the /etc/krb5/krb5.keytab file. Notice that if you want to delete an entry from an existing keytab, you must first write the keylist to a temporary keytab and then overwrite the existing keytab with the temporary keytab. This is because the wkt command actually appends the current keylist to an existing keytab, so you can't use it to overwrite a keytab.
example# /usr/krb5/bin/ktutil ktutil: rkt /etc/krb5/krb5.keytab ktutil: list slot KVNO Principal ---- ---- --------------------------------------- 1 8 host/[email protected] 2 5 host/[email protected] ktutil:delent 2 ktutil:l slot KVNO Principal ---- ---- -------------------------------------- 1 8 host/[email protected] ktutil:wkt /tmp/krb5.keytab ktutil:q example# mv /tmp/krb5.keytab /etc/krb5/krb5.keytab
/etc/krb5/krb5.keytab
See attributes(5) for descriptions of the following attributes:
|
The command arguments are Evolving. The command output is Unstable.
kadmin(1M), k5srvutil(1M), attributes(5), kerberos(5)
Закладки на сайте Проследить за страницей |
Created 1996-2024 by Maxim Chirkov Добавить, Поддержать, Вебмастеру |