HP Visualize J5000 hp enterprise file system: planning and configuring hp DCE/ - Page 160

Enter Password

Page 160 highlights

The DFS/NFS Secure Gateway Configuring Gateway Server Machines the user. In addition, it requires the issuer to identity the user for whom authenticated access is desired and the NFS client from which the user is to access DFS. Also, the dfs_login command allows the issuer to request a ticket lifetime; the dfsgw add command does not. The dfsgw add command has the following syntax: dfsgw add -id networkID:userID [-dceid login_name[:password]] \ > [-af address_family] The command includes the following options: -id networkID:userID Specifies the network address or hostname of an NFS client and the UID of the user who is to be authenticated to DCE from that client. -dceid login_name[:password] Specifies the DCE principal name and, optionally, the password of the user who is to be authenticated to DCE. The command does not prompt for a principal name and password if you do not specify a principal name and you have a valid TGT; the command does not prompt for a password if you specify your own principal name and you have a valid TGT. The command always prompts for a password if you name a principal other than yourself. -af address_family Specifies the style of network address to be used to identify hosts. By default, the command uses the only address family currently supported, inet (Internet). For example, the following dfsgw add command obtains DCE credentials for the user ludwig, who has UID 7439, from the NFS client that has network address 15.27.32.40: $ dfsgw add -id 15.27.32.40:7439 -dceid ludwig Enter Password: password Mapping added successfully, PAG is 41ffffe4 where password is the DCE password of the user ludwig. The command reports that a mapping for the user was successfully added to the authentication table on the Gateway Server machine; the user's PAG is 41ffffe4. 160

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164

160
The DFS/NFS Secure Gateway
Configuring Gateway Server Machines
the user. In addition, it requires the issuer to identity the user for whom
authenticated access is desired and the NFS client from which the user is to
access DFS. Also, the
dfs_login
command allows the issuer to request a
ticket lifetime; the
dfsgw add
command does not.
The
dfsgw add
command has the following syntax:
dfsgw add -id
networkID:userID
[
-dceid
login_name[:password]
] \
> [
-af
address_family
]
The command includes the following options:
-id
networkID:userID
Specifies the network address or hostname of an NFS client and the UID of
the user who is to be authenticated to DCE from that client.
-dceid
login_name[:password]
Specifies the DCE principal name and, optionally, the password of the user
who is to be authenticated to DCE. The command does not prompt for a
principal name and password if you do not specify a principal name and you
have a valid TGT; the command does not prompt for a password if you
specify your own principal name and you have a valid TGT. The command
always prompts for a password if you name a principal other than yourself.
-af
address_family
Specifies the style of network address to be used to identify hosts. By
default, the command uses the only address family currently supported,
inet
(Internet).
For example, the following
dfsgw add
command obtains DCE credentials
for the user
ludwig
, who has UID
7439
, from the NFS client that has
network address
15.27.32.40
:
$
dfsgw add -id 15.27.32.40:7439 -dceid ludwig
Enter Password:
password
Mapping added successfully, PAG is 41ffffe4
where
password
is the DCE password of the user
ludwig
. The command
reports that a mapping for the user was successfully added to the
authentication table on the Gateway Server machine; the user’s PAG is
41ffffe4
.