[OpenAFS] the mac quandry with 2 realms

Carson Gaspar carson@taltos.org
Wed, 14 Jul 2010 10:33:41 -0700

David Bear wrote:
> We have an issue that we haven't found a good solution for on mac osX. 
> We have BOTH a kerberos realm called 'asu.edu <http://asu.edu>', and an 
> active directory domain called asurite. Our afs identities are all in 
> the asu.edu <http://asu.edu> realm. We also have cifs space that 
> requires authentication tokens from the asurite domain. 

This is what cross-realm trust is for. Configure asurite to trust 
asu.edu and be happy.