17.20 - Copying the Kerberos Keys From the KDC to the Principals - Analytics Database - Teradata Vantage

Teradata Vantage™ - Analytics Database Security Administration - 17.20

Deployment
VantageCloud
VantageCore
Edition
Enterprise
IntelliFlex
VMware
Product
Analytics Database
Teradata Vantage
Release Number
17.20
Published
June 2022
Language
English (United States)
Last Update
2023-03-07
dita:mapPath
hjo1628096075471.ditamap
dita:ditavalPath
qkf1628213546010.ditaval
dita:id
zuy1472246340572

After you generate Kerberos keys on the Linux MIT KDCs, you must securely move copies of the set of keytab files for database nodes from the KDC to a temporary location on any node of the corresponding database system.

If a database system resides in multiple domains, make sure you move the keytab files from the KDC in each domain. Save the copies of the keytab files here: /opt/teradata/tdat/tdgss/site/domain_name.sys_name.keytab.

domain_name.sys_name is defined in Generating the Key for the First Node.

This is a temporary location to use when you install the keys to the permanent location in Installing the Kerberos Keys. Make sure that each keytab file has a unique file name.