Help on Access > Authentication Providers > Kerberos Provider

The following information and controls appear on Access > Authentication Providers > Kerberos Provider.

Get Started
Opens a dialog box that enables you to configure Kerberos realms, domains, and providers in a single step. Once all of the components are configured, you can create the provider and join the realm.
Create a Kerberos Realm
Opens a dialog box that enables you to create and configure a Kerberos realm.
Realm Name
Specifies a fully qualified domain name in uppercase characters. For example, CLUSTER-NAME.COMPANY.COM.
Set as the default realm
Specifies whether the provided realm is the default.
Key Distribution Centers
Specifies the hostname or IP address of a Key Distribution Center (KDC). You can add more than one KDC.
Admin Server
Specifies the hostname or IP address of the administrative server that will be designated as the master KDC. If you do not specify a server, OneFS will designate the first KDC server listed as the master KDC.
Default Domain
Specifies the fully qualified domain name to use for translating the service principal names.
Cancel
Cancels the creation of the realm and closes the dialog box.
Create Realm
Adds the new Kerberos realm to the system.
Kerberos Realms
Table that displays a list of Kerberos realms currently in the system.
Select a bulk action
Lists actions that can be applied to multiple Kerberos realms simultaneously.
Delete Selection
Bulk action that deletes from the system each Kerberos realm whose check box has been selected.
Realm
Displays the name of the Kerberos realm.
Key Distribution Centers
Displays all KDCs associated with the Kerberos realm.
Admin Server
Displays the administrative server that is designated as the master KDC.
View/Edit
Opens a dialog box from which you can view the current settings of the Kerberos realm.
Close
Closes the dialog box.
Edit Realm
Enables you to make modifications to the Kerberos realm.
Cancel
Cancels any edits to the Kerberos realm.
Save Changes
Saves any modifications made to the Kerberos realm.
More
Displays a list of additional actions that can be applied to the Kerberos realm.
Delete Realm
Deletes the Kerberos realm from the system.
Create a Kerberos Domain
Opens a dialog box that enables you to create one or more additional Kerberos domains.
Domain
Specifies the fully qualified domain name.
Realm
Displays a drop-down list from which you can select an existing realm. The domain will be associated with the selected realm.
Cancel
Cancels the creation of the domain and closes the dialog box.
Create Realm
Adds the new Kerberos domain to the system.
Kerberos Domains
Table that displays a list of Kerberos domains currently in the system.
Select a bulk action
Lists actions that can be applied to multiple Kerberos domains simultaneously.
Delete Selection
Bulk action that deletes from the system each Kerberos domain whose check box has been selected.
Domain
Displays the name of the Kerberos domain.
Kerberos Realm
Displays the realm associated with the Kerberos domain.
View/Edit
Opens a dialog box from which you can view the current settings of the Kerberos domain.
Close
Closes the dialog box.
Edit Domain
Enables you to make modifications to the Kerberos domain.
Cancel
Cancels any edits to the Kerberos domain.
Save Changes
Saves any modifications made to the Kerberos domain.
More
Displays a list of additional actions that can be applied to the Kerberos domain.
Delete Domain
Deletes the Kerberos domain from the system.
Create a Kerberos Provider
Opens a dialog box that enables you to create and configure a Kerberos provider.
User
Specifies a user name who has the permission to create the SPNs in the Kerberos realm.
Password
Displays the password for the user.
Realm
Displays a drop-down list from which you can select an existing realm. Select the realm the user authenticates to.
Service Principal Name Management
Specifies one of the following methods for managing service principal names (SPNs):
Use recommended SPNs
If you select this option, OneFS will automatically select SPNs to be associated with the specified realm.
Manually associate SPNs
If you select this option, specify an SPN in the format service/principal@realm to manually associate it with the selected realm. You can add more than one SPN for association.
Cancel
Cancels the creation of the provider and closes the dialog box.
Create Realm
Adds the new Kerberos provider to the system.
Kerberos Providers
Table that displays a list of Kerberos providers currently in the system.
Select a bulk action
Lists actions that can be applied to multiple Kerberos providers simultaneously.
Delete Selection
Bulk action that deletes from the system each Kerberos provider whose check box has been selected.
Realm
Displays the realm associated with the Kerberos provider.
Service Principal Name Management
Indicates whether the provider users recommended or manually selected SPNs.
View/Edit
Opens a dialog box from which you can view the current settings of the Kerberos provider.
Close
Closes the dialog box.
Edit Provider
Enables you to make modifications to the Kerberos provider.
Cancel
Cancels any edits to the Kerberos provider.
Save Changes
Saves any modifications made to the Kerberos provider.
More
Displays a list of additional actions that can be applied to the Kerberos provider.
Delete Provider
Deletes the Kerberos provider from the system.