1[kdcdefaults] 2 kdc_ports = 88 3 kdc_tcp_ports = 88 4 restrict_anonymous_to_tgt = true 5 6[realms] 7 MIT.TEST = { 8 database_name = /var/lib/krb5kdc/principal 9 admin_keytab = /var/lib/krb5kdc/kadm5.keytab 10 acl_file = /etc/krb5kdc/kadm5.acl 11 key_stash_file = /var/lib/krb5kdc/stash 12 max_life = 1d 1h 0m 0s 13 max_renewable_life = 7d 0h 0m 0s 14 master_key_type = aes256-cts 15 supported_enctypes = aes256-cts:normal 16 default_principal_flags = +preauth 17 pkinit_identity = FILE:/var/lib/krb5kdc/kdc.pem,/var/lib/krb5kdc/kdckey.pem 18 pkinit_anchors = FILE:/etc/krb5kdc/cacert.pem 19 } 20