summaryrefslogtreecommitdiff
path: root/config/keytab.acl
diff options
context:
space:
mode:
Diffstat (limited to 'config/keytab.acl')
-rw-r--r--config/keytab.acl6
1 files changed, 6 insertions, 0 deletions
diff --git a/config/keytab.acl b/config/keytab.acl
new file mode 100644
index 0000000..c55ae46
--- /dev/null
+++ b/config/keytab.acl
@@ -0,0 +1,6 @@
+# /etc/remctl/acl/keytab -- ACL for keytab retrieval.
+#
+# This is the ACL controlling who can retrieve keytabs for the existing
+# keys of principals matching lines in /etc/krb5kdc/allow-extract. It
+# usually should only contain one principal, the principal of the wallet
+# server.