Linux ns1.utparral.edu.mx 6.8.0-79-generic #79~22.04.1-Ubuntu SMP PREEMPT_DYNAMIC Fri Aug 15 16:54:53 UTC 2 x86_64
Apache/2.4.58 (Unix) OpenSSL/1.1.1w PHP/8.2.12 mod_perl/2.0.12 Perl/v5.34.1
: 10.10.1.9 | : 10.10.1.254
Cant Read [ /etc/named.conf ]
daemon
Terminal
AUTO ROOT
Adminer
Backdoor Destroyer
Linux Exploit
Lock Shell
Lock File
Create User
README
+ Create Folder
+ Create File
/
usr /
share /
cups /
doc-root /
help /
[ HOME SHELL ]
Name
Size
Permission
Action
accounting.html
2.63
KB
-rw-r--r--
admin.html
11.66
KB
-rw-r--r--
api-admin.html
16.86
KB
-rw-r--r--
api-filter.html
57.21
KB
-rw-r--r--
api-ppd.html
84.63
KB
-rw-r--r--
cgi.html
2.12
KB
-rw-r--r--
cupspm.html
434.33
KB
-rw-r--r--
encryption.html
4.21
KB
-rw-r--r--
firewalls.html
3.94
KB
-rw-r--r--
glossary.html
2.66
KB
-rw-r--r--
kerberos.html
4.58
KB
-rw-r--r--
license.html
11.78
KB
-rw-r--r--
man-backend.html
9.71
KB
-rw-r--r--
man-cancel.html
2.79
KB
-rw-r--r--
man-classes.conf.html
1.5
KB
-rw-r--r--
man-client.conf.html
6.95
KB
-rw-r--r--
man-cupsaccept.html
2.71
KB
-rw-r--r--
man-cups-config.html
3.52
KB
-rw-r--r--
man-cupsd.conf.html
39.71
KB
-rw-r--r--
man-cupsd-helper.html
3.05
KB
-rw-r--r--
man-cupsd.html
3.76
KB
-rw-r--r--
man-cupsd-logs.html
9.93
KB
-rw-r--r--
man-cupsenable.html
3.2
KB
-rw-r--r--
man-cups-files.conf.html
13
KB
-rw-r--r--
man-cups.html
8.2
KB
-rw-r--r--
man-cups-lpd.html
4.66
KB
-rw-r--r--
man-cups-snmp.html
2.96
KB
-rw-r--r--
man-cupstestppd.html
4.94
KB
-rw-r--r--
man-filter.html
11.7
KB
-rw-r--r--
man-ippevepcl.html
1.94
KB
-rw-r--r--
man-ippeveprinter.html
10.03
KB
-rw-r--r--
man-ippfind.html
9.77
KB
-rw-r--r--
man-ipptoolfile.html
30.03
KB
-rw-r--r--
man-ipptool.html
7.56
KB
-rw-r--r--
man-lpadmin.html
10.65
KB
-rw-r--r--
man-lpc.html
2.52
KB
-rw-r--r--
man-lp.html
7.78
KB
-rw-r--r--
man-lpinfo.html
3.76
KB
-rw-r--r--
man-lpmove.html
2.08
KB
-rw-r--r--
man-lpoptions.html
4.31
KB
-rw-r--r--
man-lpq.html
2.19
KB
-rw-r--r--
man-lpr.html
6.38
KB
-rw-r--r--
man-lprm.html
2.3
KB
-rw-r--r--
man-lpstat.html
4.77
KB
-rw-r--r--
man-mime.convs.html
2.89
KB
-rw-r--r--
man-mime.types.html
5.72
KB
-rw-r--r--
man-notifier.html
1.49
KB
-rw-r--r--
man-ppdc.html
3.78
KB
-rw-r--r--
man-ppdhtml.html
2.11
KB
-rw-r--r--
man-ppdi.html
2.27
KB
-rw-r--r--
man-ppdmerge.html
2.03
KB
-rw-r--r--
man-ppdpo.html
2.33
KB
-rw-r--r--
man-printers.conf.html
1.58
KB
-rw-r--r--
man-subscriptions.conf.html
1.61
KB
-rw-r--r--
network.html
18.56
KB
-rw-r--r--
options.html
16.42
KB
-rw-r--r--
overview.html
3.4
KB
-rw-r--r--
policies.html
21.25
KB
-rw-r--r--
postscript-driver.html
20.5
KB
-rw-r--r--
ppd-compiler.html
42.29
KB
-rw-r--r--
raster-driver.html
17.57
KB
-rw-r--r--
ref-ppdcfile.html
69.29
KB
-rw-r--r--
security.html
4.44
KB
-rw-r--r--
sharing.html
4.45
KB
-rw-r--r--
spec-banner.html
4.05
KB
-rw-r--r--
spec-command.html
6.08
KB
-rw-r--r--
spec-design.html
11.61
KB
-rw-r--r--
spec-ipp.html
65.41
KB
-rw-r--r--
spec-ppd.html
86.91
KB
-rw-r--r--
spec-raster.html
23.34
KB
-rw-r--r--
spec-stp.html
3.79
KB
-rw-r--r--
translation.html
24.29
KB
-rw-r--r--
Delete
Unzip
Zip
${this.title}
Close
Code Editor : kerberos.html
<html> <!-- SECTION: Getting Started --> <head> <title>Using Kerberos Authentication</title> <link rel="stylesheet" type="text/css" href="../cups-printable.css"> </head> <body> <h1 class="title">Using Kerberos Authentication</h1> <p>CUPS allows you to use a Key Distribution Center (KDC) for authentication on your local CUPS server and when printing to a remote authenticated queue. This document describes how to configure CUPS to use Kerberos authentication and provides links to the MIT help pages for configuring Kerberos on your systems and network.</p> <blockquote><b>Note:</b> Kerberos authentication is deprecated starting in CUPS 2.4.0. OAuth 2.0 is the recommended SSO replacement.</blockquote> <h2 class="title" id="REQUIREMENTS">System Requirements</h2> <p>The following are required to use Kerberos with CUPS:</p> <ol> <li>Heimdal Kerberos (any version) or MIT Kerberos (1.6.3 or newer)</li> <li>Properly configured Domain Name System (DNS) infrastructure (for your servers): <ol type="a"> <li>DNS server(s) with static IP addresses for all CUPS servers or configured to allow DHCP updates to the host addresses and</li> <li>All CUPS clients and servers configured to use the same DNS server(s).</li> </ol> </li> <li>Properly configured Kerberos infrastructure: <ol type='a'> <li>KDC configured to allow CUPS servers to obtain Service Granting Tickets (SGTs) for the "host" and "HTTP" services/principals,</li> <li>LDAP-based user accounts - both OpenDirectory and ActiveDirectory provide this with the KDC, and</li> <li>CUPS clients and servers bound to the same KDC and LDAP server(s).</li> </ol> </li> </ol> <h2 class="title" id="KRB5">Configuring Kerberos on Your System</h2> <p>Before you can use Kerberos with CUPS, you will need to configure Kerberos on your system and setup a system as a KDC. Because this configuration is highly system and site-specific, please consult the following on-line resources provided by the creators of Kerberos at the Massachusetts Institute of Technology (MIT):</p> <ul> <li><a href="http://web.mit.edu/kerberos/" target="_blank">Kerberos: The Network Authentication Protocol</a></li> <li><a href="http://web.mit.edu/macdev/KfM/Common/Documentation/faq-osx.html" target="_blank">Kerberos on macOS Frequently Asked Questions</a></li> </ul> <p>The Linux Documentation Project also has a HOWTO on Kerberos:</p> <ul> <li><a href="http://tldp.org/HOWTO/html_single/Kerberos-Infrastructure-HOWTO/" target="_blank">Kerberos Infrastructure HOWTO</a></li> </ul> <h2 class="title" id="CUPS">Configuring CUPS to Use Kerberos</h2> <p>Once you have configured Kerberos on your system(s), you can then enable Kerberos authentication by selecting the <tt>Negotiate</tt> authentication type. The simplest way to do this is using the <tt>cupsctl(8)</tt> command on your server(s):</p> <pre class="command"><kbd>cupsctl DefaultAuthType=Negotiate</kbd></pre> <p>You can also enable Kerberos from the web interface by checking the <VAR>Use Kerberos Authentication</VAR> box and clicking <VAR>Change Settings</VAR>:</p> <pre class="command">https://server.example.com:631/admin</pre> <p>After you have enabled Kerberos authentication, use the built-in "authenticated" policy or your own custom policies with the printers you will be sharing. See <a href="policies.html">Managing Operation Policies</a> for more information.</p> <h2 class="title" id="IMPLEMENT">Implementation Information</h2> <p>CUPS implements Kerberos over HTTP using GSSAPI and the service/principal names "host/server.example.com" for command-line access and "HTTP/server.example.com" for web-based access, where "server.example.com" is replaced by your CUPS server's hostname. Because of limitations in the HTTP GSSAPI protocol extension, only a single domain/KDC is supported for authentication. The (experimental) HTTP extension is described in <a href="http://tools.ietf.org/html/rfc4559">RFC 4559</a>.</p> <p>When doing printing tasks that require authentication, CUPS requests single-use "tickets" from your login session to authenticate who you are. These tickets give CUPS a username of the form "user@REALM", which is then truncated to just "user" for purposes of user and group checks.</p> <p>In order to support printing to a shared printer, CUPS runs the IPP or SMB backend as the owner of the print job so it can obtain the necessary credentials when the job is de-spooled to the server.</p> </body> </html>
Close