If your realm is YZ.EDU, then that's what you use. If UVWX.YZ.EDU is
a host name and not a realm name, then it doesn't belong in your
principal names.
Can you explain why you want to auth against the secondary rather than
the primary? I can't think of any reason that should matter.
-Mitch
O
Yah, A little background might help.
UVWX.YZ.EDU is the realm of my secondary KDC for these two hosts (the
clients) which I am trying to configure krb auth on. YZ.EDU is the
primary KDC on these hosts. These two hosts are my bastion servers ,
i.e. hop off boxes to protect my local machines
Heres an update to the kerberos realm issue I am now seeing.
I want to use my secondary KDC (UVWX.YZ.EDU) rather than the primary
KDC (YZ.EDU), but amanda doesnt seem to know how to look for it. I
include the KDC realm in all of my config's. amanda.conf, and .k5login.
Here is my .k5login