[OpenAFS] OpenAFS 1.4.5 on OSX 10.5

david l goodrich dlg@dsrw.org
Mon, 5 Nov 2007 16:30:03 -0600


--wq9mPyueHGvFACwf
Content-Type: text/plain; charset=us-ascii
Content-Disposition: inline
Content-Transfer-Encoding: quoted-printable

On Mon, Nov 05, 2007 at 05:00:16PM -0500, Jeffrey Altman wrote:
> You are not the only one.  It is a change in the way the Kerberos
> libraries on Leopard behave when there is no [domain_realm] mapping
> specified in the krb5.conf file for the AFS volume server hostnames.

Left unsaid here is that adding this:

[domain_realm]
        dsrw.org =3D DSRW.ORG
        .dsrw.org =3D DSRW.ORG

to /Library/Preferences/edu.mit.Kerberos made the problem go away.
  --david
>=20
> Jeffrey Altman
>=20
>=20
> david l goodrich wrote:
> > Is anyone else seeing this behavior with OpenAFS on Leopard?
> >=20
> > Every time I aklog, I get a permission denied, but I still get
> > tokens.  Any advice would be great.
> >   --david
> >=20
> > elektra:~ dlg$ unlog
> > elektra:~ dlg$ tokens
> >=20
> > Tokens held by the Cache Manager:
> >=20
> >    --End of list--
> > elektra:~ dlg$ aklog
> > aklog: Permission denied so unable to create remote PTS user
> > dlg@dsrw.org in cell dsrw.org (status: 267269).
> > elektra:~ dlg$ tokens
> >=20
> > Tokens held by the Cache Manager:
> >=20
> > Tokens for afs@dsrw.org [Expires Dec  5 15:45]
> >    --End of list--
> > elektra:~ dlg$ uname -a
> > Darwin elektra.dsrw.org 9.0.0 Darwin Kernel Version 9.0.0: Tue
> > Oct  9 21:35:55 PDT 2007; root:xnu-1228~1/RELEASE_I386 i386
> > elektra:~ dlg$ bos version
> > openafs 1.4.5
> > elektra:~ dlg$=20
> >=20
> >=20
> >=20



--wq9mPyueHGvFACwf
Content-Type: application/pgp-signature; name="signature.asc"
Content-Description: Digital signature
Content-Disposition: inline

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.6 (GNU/Linux)

iD8DBQFHL5lrHDmo5jqnP4QRAmdDAJ4lr7vatvN5r5wK8U3nLvT6N2+EggCfcWOq
gaQCsoBcB5zTvhq+zRw1v2s=
=POwN
-----END PGP SIGNATURE-----

--wq9mPyueHGvFACwf--