Import Upstream version 1.8.5
[hcoop/debian/openafs.git] / doc / man-pages / pod5 / kaserverauxdb.pod
CommitLineData
805e021f
CE
1=head1 NAME
2
3kaserverauxdb - Records failed authentication attempts
4
5=head1 DESCRIPTION
6
7The file F<kaserverauxdb> records failed authentication attempts for the
8local Authentication Server. The server creates it automatically in the
9F</usr/afs/local> directory by default; use the B<-localfiles> argument to
10the B<kaserver> command to specify an alternate directory.
11
12The F<kaserverauxdb> file is an internal database used by the
13Authentication Server to prevent access by users who have exceeded the
14limit on failed authentication attempts defined in their Authentication
15Database entry. The Authentication Server refuses further attempts to
16authenticate to an account listed in the database until either an AFS
17system administrator issues the B<kas unlock> command to unlock the
18account, or the timeout period defined in the user's Authentication
19Database entry passes.
20
21The F<kaserverauxdb> file is in binary format, so its contents are not
22directly accessible. However, the output from the B<kas examine> command
23reports an account's maximum number of failed attempts, the lockout time,
24and whether the account is currently locked.
25
26=head1 CAUTIONS
27
28The Authentication Server is obsolete and is provided only for sites that
29need to use it while preparing for a migration to Kerberos KDC. It will be
30removed in a future version of OpenAFS.
31
32=head1 SEE ALSO
33
34L<kaserver.DB0(5)>,
35L<kas_examine(8)>,
36L<kas_unlock(8)>,
37L<kaserver(8)>
38
39=head1 COPYRIGHT
40
41IBM Corporation 2000. <http://www.ibm.com/> All Rights Reserved.
42
43This documentation is covered by the IBM Public License Version 1.0. It was
44converted from HTML to POD by software written by Chas Williams and Russ
45Allbery, based on work by Alf Wachsmann and Elizabeth Cassell.