HP Visualize J5000 hp enterprise file system: planning and configuring hp DCE/ - Page 158

ludwig, dfs_login, dfs_logout

Page 158 highlights

NOTE: The DFS/NFS Secure Gateway Configuring Gateway Server Machines dce_password Provides the DCE password of the specified user. If you do not specify a password, the command prompts for a password if one of the following is true: You name a user other than yourself; you name yourself and you do not already have a valid TGT; or you do not name a user and you do not already have a valid TGT. The command does not prompt for a password if you do not name a different user and you already have a valid TGT. When using dfs_login, the DFS-NFS gateway server (which can be overridden with the -h option) defaults to the hostname listed in /etc/mnttab where the /... directory is mounted. This hostname must exactly match the name of the DCE principal for that hostname. For example, if the host with DNS name foo.bar.com is in the DCE registry as /.:/hosts/foo, then /... must be mounted like this: foo:/... /... nfs defaults 0 0 874344687 and not foo.bar.com:/... /... nfs defaults 0 0 874344687 In order for the latter to work, the host running the DFS-NFS gateway server (dfsgwd) must be configured into the DCE registry as /.:/hosts/foo.bar.com. This would be done during initial DCE configuration of the node. For example, the user named ludwig issues the following dfs_login command to authenticate to DCE from an NFS client: $ dfs_login Password for [email protected]: password where password is the DCE password of the user ludwig. In the example, the user ludwig does not already have a valid TGT, so the command prompts for the user's password and obtains a TGT for the user. If the login succeeds, the dfs_login command returns no messages. To end the authenticated session before the DCE credentials expire, issue the dfs_logout command from the NFS client. The command removes the user's entry from the authentication table on the Gateway Server machine. The command can be issued either by the user whose entry is to be removed 158

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164

158
The DFS/NFS Secure Gateway
Configuring Gateway Server Machines
dce_password
Provides the DCE password of the specified user. If you do not specify a
password, the command prompts for a password if one of the following is
true:
You name a user other than yourself; you name yourself and you do
not already have a valid TGT; or you do not name a user and you do not
already have a valid TGT. The command does not prompt for a password if
you do not name a different user and you already have a valid TGT.
NOTE:
When using
dfs_login
, the DFS-NFS gateway server (which can be overridden with
the
-h
option) defaults to the hostname listed in
/etc/mnttab
where the
/...
directory is
mounted. This hostname must exactly match the name of the DCE principal for that
hostname. For example, if the host with DNS name foo.bar.com is in the DCE
registry as
/.:/hosts/foo
, then
/...
must be mounted like this:
foo:/... /... nfs defaults 0 0 874344687
and not
foo.bar.com:/... /... nfs defaults 0 0 874344687
In order for the latter to work, the host running the DFS-NFS gateway server
(
dfsgwd
) must be configured into the DCE registry as
/.:/hosts/foo.bar.com
. This
would be done during initial DCE configuration of the node.
For example, the user named
ludwig
issues the following
dfs_login
command to authenticate to DCE from an NFS client:
$
dfs_login
Password for [email protected]:
password
where
password
is the DCE password of the user
ludwig
. In the example,
the user
ludwig
does not already have a valid TGT, so the command prompts
for the user’s password and obtains a TGT for the user. If the login succeeds,
the
dfs_login
command returns no messages.
To end the authenticated session before the DCE credentials expire, issue the
dfs_logout
command from the NFS client. The command removes the
user’s entry from the authentication table on the Gateway Server machine.
The command can be issued either by the user whose entry is to be removed