Accessing a Kerberized UI Firefox
To access a Kerberos-protected UI, Firefox must be configured to pass Kerberos credentials to the appropriate KDC (Key Distribution Center). Ensure you have the following prerequisites on your local machine:
- krb5.conf (Kerberos configuration file)
- Necessary keytab and principal for authentication
Follow these steps to configure Firefox:
- Open Firefox Configuration:
- In the Firefox address bar, type
and press Enter.about:config - Accept any warning messages, if prompted.
- In the Firefox address bar, type
- Filter for Kerberos Settings:
- In the search field, type
to filter the configuration list.negotiate
- In the search field, type
- Set Trusted URIs:
- Double-click on
to open the dialog box.network.negotiate-auth.trusted-uris - Enter the domain(s) for which Kerberos authentication must be used (e.g.,
)..example.com
- Double-click on

- Restart Firefox:
- After setting the trusted URIs, restart Firefox.
- Authenticate with Kerberos:
- Run
with the necessary keytab and principal.kinit
- Run
kinit -kt example.keytab example@EXAMPLE.COM
Once authenticated, Firefox sends the Kerberos credentials to the domain specified, allowing access to the Kerberos-protected UI.

Have a suggestion?