<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: How to increase the kerberos ticket validity time/automate kerberos tickets in a  SAS program in New SAS User</title>
    <link>https://communities.sas.com/t5/New-SAS-User/How-to-increase-the-kerberos-ticket-validity-time-automate/m-p/785912#M32178</link>
    <description>&lt;P&gt;Question on the same topic. I know running kinit command would refresh the session key for the current kerberos ticket. But&amp;nbsp; wondering, what happens when this happens during the sas hive batch job processing as the job is still running with old session key? Does it uses the same ticket with new session key for authentication again?&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Mon, 13 Dec 2021 23:59:59 GMT</pubDate>
    <dc:creator>sselvakumars</dc:creator>
    <dc:date>2021-12-13T23:59:59Z</dc:date>
    <item>
      <title>How to increase the kerberos ticket validity time/automate kerberos tickets in a  SAS program</title>
      <link>https://communities.sas.com/t5/New-SAS-User/How-to-increase-the-kerberos-ticket-validity-time-automate/m-p/512597#M2388</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;We have IWA/SSO enabled on our SAS servers. So any time a user logs in to SAS Enterprise guide , a kerberos ticket is generated and that is valid only for 10 hours. After 10 hours, the users are required to login to a new session. Now, there are some of the SAS programs that run for more than 10 hours. In that case, is there a way to generate a kerberos ticket that is valid for X hours from a SAS program so they don't fail due to lack of a valid ticket? Is the same scenario possible on SAS linux server?&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Another question is -- Is it possible to automate generating the Kerberos tickets for users once the old ones expire instead of requiring to login to a new session.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 13 Nov 2018 15:44:52 GMT</pubDate>
      <guid>https://communities.sas.com/t5/New-SAS-User/How-to-increase-the-kerberos-ticket-validity-time-automate/m-p/512597#M2388</guid>
      <dc:creator>RupaJ</dc:creator>
      <dc:date>2018-11-13T15:44:52Z</dc:date>
    </item>
    <item>
      <title>Re: How to increase the kerberos ticket validity time/automate kerberos tickets in a  SAS program</title>
      <link>https://communities.sas.com/t5/New-SAS-User/How-to-increase-the-kerberos-ticket-validity-time-automate/m-p/513001#M2480</link>
      <description>&lt;P&gt;&lt;a href="https://communities.sas.com/t5/user/viewprofilepage/user-id/185092"&gt;@RupaJ&lt;/a&gt;,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;The default domain policy for "Maximum lifetime for service ticket" is 600 minutes. You need to contact your Windows/Kerberos administrator and increase the value in that option.&lt;/P&gt;
&lt;BLOCKQUOTE&gt;
&lt;P&gt;Another question is -- Is it possible to automate generating the Kerberos tickets for users once the old ones expire instead of requiring to login to a new session.&amp;nbsp;&lt;/P&gt;
&lt;/BLOCKQUOTE&gt;
&lt;P&gt;Yes, you can do that via SSH script, but ticket renewal requires a user keytab.&lt;/P&gt;</description>
      <pubDate>Wed, 14 Nov 2018 16:28:27 GMT</pubDate>
      <guid>https://communities.sas.com/t5/New-SAS-User/How-to-increase-the-kerberos-ticket-validity-time-automate/m-p/513001#M2480</guid>
      <dc:creator>alexal</dc:creator>
      <dc:date>2018-11-14T16:28:27Z</dc:date>
    </item>
    <item>
      <title>Re: How to increase the kerberos ticket validity time/automate kerberos tickets in a  SAS program</title>
      <link>https://communities.sas.com/t5/New-SAS-User/How-to-increase-the-kerberos-ticket-validity-time-automate/m-p/785912#M32178</link>
      <description>&lt;P&gt;Question on the same topic. I know running kinit command would refresh the session key for the current kerberos ticket. But&amp;nbsp; wondering, what happens when this happens during the sas hive batch job processing as the job is still running with old session key? Does it uses the same ticket with new session key for authentication again?&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 13 Dec 2021 23:59:59 GMT</pubDate>
      <guid>https://communities.sas.com/t5/New-SAS-User/How-to-increase-the-kerberos-ticket-validity-time-automate/m-p/785912#M32178</guid>
      <dc:creator>sselvakumars</dc:creator>
      <dc:date>2021-12-13T23:59:59Z</dc:date>
    </item>
  </channel>
</rss>

