summaryrefslogtreecommitdiff
path: root/config/services/kerberos
diff options
context:
space:
mode:
authorquentin@aristote.fr <quentin@aristote.fr>2026-01-04 17:14:10 +0100
committerquentin@aristote.fr <quentin@aristote.fr>2026-01-04 17:14:10 +0100
commit2be77459af61137ec91cdf3d6c2d990b47afb2a5 (patch)
tree3801a95174aed9c50ec1ff28110cb37d2d073b84 /config/services/kerberos
parent960262a6fb02d148a5a50165ff13a4701e9d907b (diff)
Revert "services: add kerberos"
This reverts commit 960262a6fb02d148a5a50165ff13a4701e9d907b.
Diffstat (limited to 'config/services/kerberos')
-rw-r--r--config/services/kerberos/default.nix39
1 files changed, 0 insertions, 39 deletions
diff --git a/config/services/kerberos/default.nix b/config/services/kerberos/default.nix
deleted file mode 100644
index e36ab40..0000000
--- a/config/services/kerberos/default.nix
+++ /dev/null
@@ -1,39 +0,0 @@
-{
- config,
- ...
-}:
-let
- realm = "aristote.mesh";
-in
-{
- # client
- security.krb5 = {
- enable = true;
- settings = {
- libdefaults.default_realm = realm;
- realms."${realm}" =
- let
- server = "${config.networking.hostName}.${realm}";
- in
- {
- kdc = server;
- admin_server = server;
- };
- };
- };
-
- # server
- networking.firewall.allowedTCPPorts = [
- 88
- 749
- ];
- services.kerberos_server = {
- enable = true;
- settings.realms."${realm}" = { };
- # initialization procedure
- # https://github.com/NixOS/nixpkgs/issues/72722#issuecomment-557658883
- # > kdb5_util create -s -r ${realm}
- # > systemctl restart kadmind.service kdc.service
- };
-
-}