[OpenAFS] home on afs woes

Juha Jäykkä juolja@utu.fi
Sun, 15 Jan 2006 00:50:43 +0200


--Signature_Sun__15_Jan_2006_00_50_43_+0200_JRSqRPDkVK3F3pPw
Content-Type: text/plain; charset=ISO-8859-15
Content-Transfer-Encoding: quoted-printable

> Yeah, currently you have to be careful to start sshd outside of a PAG
> when using libpam-openafs-session (with, for instance, "echo

Plus you need to make sure, your users end up in session-specific pag's.
While this is not strictly necessary, it's quite inconvenient to have two
(possibly unrelated) ssh sessions to the same host, that share a pag. Like
someone already mentioned, this leads to situation where session #1 doing
an unlog also unlogs session #2, which is probably not what people would
expect.

I got all this now with pam_afs2.so. It's really very nice.

> /etc/init.d/sshd start | at now" if you still have at installed despite
> its security track record).

I don't have at and I already made the mistake of putting cron into my
shell's PAG, so I could not think of anything else except editing
/etc/inittab and running "telinit q". It works. =3D)

Cheers,
Juha

--=20
		 -----------------------------------------------
		| Juha J=E4ykk=E4, juolja@utu.fi			|
		| home: http://www.utu.fi/~juolja/		|
		 -----------------------------------------------

--Signature_Sun__15_Jan_2006_00_50_43_+0200_JRSqRPDkVK3F3pPw
Content-Type: application/pgp-signature

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.2 (GNU/Linux)

iD8DBQFDyYBFSqzK5nsyX0kRAqyHAKC7+/cKqasCj4BSpt0LxBsfLAPt3QCdFue+
Nq3sCgwGz7ilEp/8GDl7QdQ=
=CQOl
-----END PGP SIGNATURE-----

--Signature_Sun__15_Jan_2006_00_50_43_+0200_JRSqRPDkVK3F3pPw--