1 #Update a keytab for the external DNS server to use
2 dn: samAccountName
=dns
-$
{HOSTNAME
},CN=Principals
5 objectClass: kerberosSecret
7 servicePrincipalName
: DNS
/$
{DNSDOMAIN
}
8 servicePrincipalName
: DNS
/$
{DNSNAME
}
9 msDS
-KeyVersionNumber
: 1
10 privateKeytab
: $
{DNS_KEYTAB
}
11 secret
:: $
{DNSPASS_B64
}
12 samAccountName
: dns
-$
{HOSTNAME
}