--- /dev/null
+slapd slapd/no_configuration boolean false
+slapd slapd/domain string example.org
+slapd shared/organization string My Organization
+slapd slapd/backend select HDB
+slapd slapd/purge_database boolean true
+slapd slapd/move_old_database boolean true
+slapd slapd/password1 password a
+slapd slapd/password2 password a
+slapd slapd/allow_ldap_v2 boolean false
--- /dev/null
+[kdcdefaults]
+ kdc_ports = 8888
+
+[realms]
+ EXAMPLE.ORG = {
+ database_name = %(sandir)s/krb5kdc/principal
+ acl_file = %(sandir)s/kadm5.acl
+ key_stash_file = %(sandir)s/krb5kdc/.k5.EXAMPLE.ORG
+ admin_keytab = FILE:%(sandir)s/krb5kdc/kadm5.keytab
+ kdc_ports = 8888
+ kpasswd_port = 8887
+ kadmind_port = 8886
+ max_life = 10h 0m 0s
+ max_renewable_life = 7d 0h 0m 0s
+ }
+[logging]
+ kdc = FILE:/tmp/myrealKDC.log
--- /dev/null
+[libdefaults]
+ default_realm = EXAMPLE.ORG
+ default_tkt_enctypes = des3-hmac-sha1 aes128-cts
+ default_tgs_enctypes = des3-hmac-sha1 aes128-cts
+
+[realms]
+ EXAMPLE.ORG = {
+ admin_server = %(localFQDN)s:8886
+ kpasswd_server = %(localFQDN)s:8887
+ #default_domain = EXAMPLE.ORG
+ kdc = %(localFQDN)s:8888
+ database_module = LDAP
+ }
+
+[dbdefaults]
+ ldap_kerberos_container_dn = "cn=krbContainer,dc=example,dc=org"
+
+[dbmodules]
+ LDAP = {
+ db_library = kldap
+ ldap_kerberos_container_dn = "cn=krbContainer,dc=example,dc=org"
+ ldap_kdc_dn = cn=admin,dc=example,dc=org
+ ldap_kadmind_dn = cn=admin,dc=example,dc=org
+ ldap_service_password_file = %(sandir)s/krb5kdc/admin.stash
+ ldap_servers = ldapi:///
+ }
+[domain_realm]
+
+[logging]
+ kdc = FILE:/tmp/kdc_fromkrb.log
+ default = FILE:/tmp/krb5.log
+ admin_server = FILE:/tmp/admin.log
+