
Add tests to ensure the manifests apply cleanly and a kerberos ticket can be granted. The krb5-admin-server service won't start without the realm being manually set up, so add those steps in between running the manifest once and checking for idempotency. Once the realm is set up, the service will automatically start and puppet shouldn't try to start it again. Change-Id: I7f8aea80ea40bf4ff28fafa6a53c9d26e9c303ec