[OpenAFS] Problems with access to /afs

Jacob Gorm Hansen jg@ioi.dk
Fri, 1 Jun 2001 12:13:26 +0200

On Fri, Jun 01, 2001 at 10:19:16AM +0200, Martin Schulz wrote:
> So you're using the migration kit? 

Yes, aklog and asetky from the debian package.

> > - Or, if we try
> > aklog ioi.dk -k IOI.DK
> > 
> > tokens says:
> > Tokens held by the Cache Manager:
> > 
> > User's (AFS ID 1) tokens for afs@ioi.dk [Expires Jun  1 10:45]
> >    --End of list--
> That looks better. What does "pts examine 1" says?

I think my main problem is that every time I try to use pts it fails with a

$ pts examine system:administrators
pts: security object was passed a bad ticket so couldn't look up names

Or similar error relating to a bad ticket. Why is my ticket bad when tokens
says I have one???

> > But, in any case, when trying to run afs-rootvol we get:
> What is that afs-rootvol program? 

It is a script that comes with the debian packages to setup permissions etc
for /afs.

> What does "bos listusers yourserverhere" says?

Running without -localauth gives me a bad ticket error. With localauth it works
when I'm root also:

bos listusers paleface -localauth
SUsers are: paleface.root paleface 

> Other things to check:
>         pts examine system:administrators
>         pts membership system:administrators

Anything pts fails with a bad ticket :-(


always always avoid redundancy