no worries yeah I will be posting it after I get this up and running as it should
one more question
I added some more servers to resolve by using DNS to my zone
training.com.db
webserver IN A 192.168.2.30 ;
I did this and restarted both named services on both nodes master first and slave second
but the zone with this new value was not transferred to the slave
what is the procedure to the master every time a change is made on it it will replicate it to master....
I include all my config so you can check in PDF file or doc
I have the primary set up, but cannot get the secondary box to answer a query. Here is the message I get:
> nslookup dfwnet1 10.26.38.41
*** Can't find server name for address 10.26.38.41: Non-existent host/domain
*** Default servers are not available
10.26.38.41 is the IP of the secondary... (3 Replies)
I just installed Solaris 6/10 without any problems but I didn't connect the network cable when I installed it.
Here are my problems:
-I can access webpages using IP addrsses but not with domain names
-ssh is installed but it is not running ('ps -e | grep sshd' didn't show it)
I have been... (4 Replies)
I´m using LDAP for groups and NFS for home dirs. My problem is as follows:
I only have a few groups, so it's not the problem everyone else had. When I've mounted a disk over NFS, I need to have my primary group in order to read in the groups I'm a member of. Secondary groups is not working.
... (0 Replies)
Hi All,
I have configured linux server as local dns server (practice level).
I have given the IP and hostname details in /etc/hosts
-bash-3.00# cat /etc/hosts
#
# Internet host table
#
::1 localhost
127.0.0.1 localhost
192.168.1.78 dummy.set.com loghost
192.168.1.57 cent.set.com #... (3 Replies)
Hi,
I have installed RHEL5 as a new build and need get it to resolve to the internet. At the moment I get following:
# dig www.google.com
; <<>> DiG 9.3.6-P1-RedHat-9.3.6-4.P1.el5 <<>> www.google.com
;; global options: printcmd
;; Got answer:
;; ->>HEADER<<- opcode: QUERY, status:... (9 Replies)
Hi All,
Distros of machines : RHEL6
Bind Vesrion : Bind-9.7-3.2
I am trying to set up a test DNS for my home network. I have two rhel 6 machines A and B. Machine A has 2 NICs and is acting as a router also, one NIC is facing intranet and the otehr is facing intranet. On machine A i have... (0 Replies)
I have a Linux machine and it seems DNS cache is not getting clear on it. It is still showing old values, even after changing in DNS server by Network team. I did /etc/init.d/nscd restart But still it is showing old values on this server.
On my rest of servers in environment, nslookup is showing... (7 Replies)
hi there,
i using salaris 10 as my DNS server.
i have 2 dns server primary and secondary. if primary dns server i edit/update, the other secondary dns server must be sync too.
How can i configure if dns server (primary) can sync the secondary? (1 Reply)
Hi there,
I have a VPS and am working on a little side project for myself and friend which is a DNS proxy. Everything was great till recently. My VPS IP has been detected by some botnet or something, and I believe SMURF attacks are occuring. The VPS provider keeps shutting down my VPS... (3 Replies)
Hi,
We have built a new server (RHEL VM)and added that IP/hostname into dns zone configs file on DNS server (Solaris 10). Reloaded the configuration using
and added nameserver into resolv.conf on client. But when I am trying nslookup, its not getting resolved. The nameserver is not able to... (8 Replies)
Discussion started by: snchaudhari2
8 Replies
LEARN ABOUT FREEBSD
iprop
IPROP(8) BSD System Manager's Manual IPROP(8)NAME
iprop, ipropd-master, ipropd-slave -- propagate changes to a Heimdal Kerberos master KDC to slave KDCs
SYNOPSIS
ipropd-master [-c string | --config-file=string] [-r string | --realm=string] [-k kspec | --keytab=kspec] [-d file | --database=file]
[--slave-stats-file=file] [--time-missing=time] [--time-gone=time] [--detach] [--version] [--help]
ipropd-slave [-c string | --config-file=string] [-r string | --realm=string] [-k kspec | --keytab=kspec] [--time-lost=time] [--detach]
[--version] [--help] master
DESCRIPTION
ipropd-master is used to propagate changes to a Heimdal Kerberos database from the master Kerberos server on which it runs to slave Kerberos
servers running ipropd-slave.
The slaves are specified by the contents of the slaves file in the KDC's database directory, e.g. /var/heimdal/slaves. This has principals
one per-line of the form
iprop/slave@REALM
where slave is the hostname of the slave server in the given REALM, e.g.
iprop/kerberos-1.example.com@EXAMPLE.COM
On a slave, the argument master specifies the hostname of the master server from which to receive updates.
In contrast to hprop(8), which sends the whole database to the slaves regularly, iprop normally sends only the changes as they happen on the
master. The master keeps track of all the changes by assigning a version number to every change to the database. The slaves know which was
the latest version they saw, and in this way it can be determined if they are in sync or not. A log of all the changes is kept on the mas-
ter. When a slave is at an older version than the oldest one in the log, the whole database has to be sent.
The changes are propagated over a secure channel (on port 2121 by default). This should normally be defined as ``iprop/tcp'' in
/etc/services or another source of the services database. The master and slaves must each have access to a keytab with keys for the iprop
service principal on the local host.
There is a keep-alive feature logged in the master's slave-stats file (e.g. /var/heimdal/slave-stats).
Supported options for ipropd-master:
-c string, --config-file=string
-r string, --realm=string
-k kspec, --keytab=kspec
keytab to get authentication from
-d file, --database=file
Database (default per KDC)
--slave-stats-file=file
file for slave status information
--time-missing=time
time before slave is polled for presence (default 2 min)
--time-gone=time
time of inactivity after which a slave is considered gone (default 5 min)
--detach
detach from console
--version
--help
Supported options for ipropd-slave:
-c string, --config-file=string
-r string, --realm=string
-k kspec, --keytab=kspec
keytab to get authentication from
--time-lost=time
time before server is considered lost (default 5 min)
--detach
detach from console
--version
--help
Time arguments for the relevant options above may be specified in forms like 5 min, 300 s, or simply a number of seconds.
FILES
slaves, slave-stats in the database directory.
SEE ALSO krb5.conf(5), hprop(8), hpropd(8), iprop-log(8), kdc(8).
Heimdal May 24, 2005 Heimdal