Installing and Administering Internet Services

Chapter 11 349
Secure Internet Services
Overview of the Secure Environment and the Kerberos V5 Protocol
Figure 11-3 Client Interoperability with Non-HP Kerberos V5 KDCs
Figure 11-3 illustrates which security clients can interoperate in
configurations using non-HP Kerberos V5 KDCs. Though not shown
here, there might be multiple non-HP Kerberos V5 KDCs in the
configuration.
Types of KDC Nodes
The HP DCE Security Service can be configured to run with security
clients using the Secure Internet Services and fulfill the role of the
KDC. An HP DCE Security Service node runs the HP DCE security
daemon secd. This node can be configured as the only member of a
single-node DCE cell, or as a member of a multi-node cell with HP
DCE clients.
For more information on how to configure an HP DCE Security
Service, see Planning and Configuring HP DCE.
The HP DCE Security Service is shown as node A in Figure 11-2.
Non-HP Kerberos V5 KDC
HP Kerberos
Clients*
& HP
Services
Non-HP
Kerberos
Secure
& Non-HP
Services
Clients*
(D)
(E)
* "Clients" are security clients.
They can be application clients or application servers.
(G)
Secure
Internet
Internet