nisupdkeys(1M)
NAME
nisupdkeys − update the public keys in a NIS+ directory object
SYNOPSIS
/usr/lib/nis/nisupdkeys [ −H host ] [ −C ] [ directory ]
DESCRIPTION
This command updates the public keys in an NIS+ directory object. When the public key for a NIS+ server is changed, the key is stored in the cred.org_dir table of the server’s local directory. This information must be propagated to all directory objects that reference that server for the NIS+ system to work correctly. This command accomplishes that.
nisupdkeys reads a directory object and attempts to get the public key for each server of that directory. These keys are placed in the directory object and the object is then modified to reflect the new keys.
If directory is present, the directory object for that directory is updated. Otherwise the directory object for the default domain is updated.
OPTIONS
−H host This option limits key changes to the server named host. Note that the hostname should be a fully qualified NIS+ name. If the named host does not serve the directory, no action is taken.
−C Specify that the key is to be cleared rather than set. Attempts to communicate to a server that has no public key will not use secure RPC.
EXAMPLES
The following example updates the keys for servers of the foo.bar. domain.
example% nisupdkeys foo.bar.
This example updates the key for host fred which serves the foo.bar. domain.
example% nisupdkeys −H fred foo.bar.
This example clears the public key for host wilma in the foo.bar. directory.
example% nisupdkeys −CH wilma foo.bar.
SEE ALSO
nisaddcred(1), niscat(1), nis_objects(3N)
NOTES
The user executing this command must have modify access to the directory object for it to succeed. The existing directory object can be displayed with the niscat(1) command using the −o option.
For this command to be successful, the user making the request must have modify permission on the directory object.
SunOS 5.1 — Last change: 26 Sep 1992