1 #Update a keytab for the external DNS server to use
2 dn: samAccountName=dns-${HOSTNAME},CN=Principals
5 objectClass: kerberosSecret
7 saltPrincipal: dns-${HOSTNAME}@${REALM}
8 servicePrincipalName: DNS/${DNSNAME}
9 msDS-KeyVersionNumber: ${KEY_VERSION_NUMBER}
10 privateKeytab: ${DNS_KEYTAB}
11 secret:: ${DNSPASS_B64}
12 samAccountName: dns-${HOSTNAME}