show aaa kerberos
To display Kerberos service information, use the show aaa kerberos command in privileged EXEC mode.
show aaa kerberos [ username user ]| keytab ]
Syntax Description
keytab |
Displays information about the Kerberos keytab file. |
username user |
Displays tickets for the specified user. |
Command Default
If you do not specify a keyword, tickets for all users are displayed.
Command Modes
The following table shows the modes in which you can enter the command:
Command Mode |
Firewall Mode |
Security Context |
|||
---|---|---|---|---|---|
Routed |
Transparent |
Single |
Multiple |
||
Context |
System |
||||
Privileged EXEC |
|
— |
|
|
— |
Usage Guidelines
Use the show aaa kerberos command, without keywords, to view all the Kerberos tickets cached on the ASA. Add the username keyword to view the Kerberos tickets of a specific user. You must use the keytab keyword to see any information about the keytab file.
Examples
The following example shows the usage of the show aaa kerberos command:
ciscoasa
(config)# show aaa kerberos
Default Principal Valid Starting Expires Service Principalkcduser@example.com 06/29/10 17:33:00 06/30/10 17:33:00 asa$/mycompany.com@example.comkcduser@example.com 06/29/10 17:33:00 06/30/10 17:33:00 http/owa.mycompany.com@example.com
The following example shows how to display information about the Kerberos keytab file.
ciscoasa# show aaa kerberos keytab
Principal: host/asa2@BXB-WIN2016.EXAMPLE.COM
Key version: 10
Key type: arcfour (23)