[OpenAFS] AFS Issue
Kranthi Sangishetty
kranthi@qatar.cmu.edu
Thu, 21 Jun 2012 15:36:24 +0300
Hi,
We have AFS volume configured on a debain box as AFS client. We see that
the user AFS volume gets mounted but not the AFS tokens.
We see the following errors in the auth.log.
Jun 21 14:51:15 aqm sshd[10262]: Accepted password for username from
**.**.**.** port 3215 ssh2
Jun 21 14:51:15 aqm sshd[10262]: (pam_afs_session): pam_sm_setcred:
entry (0x2)
Jun 21 14:51:15 aqm sshd[10262]: (pam_afs_session): PAG creation failed:
Success
Jun 21 14:51:15 aqm sshd[10262]: (pam_afs_session): pam_sm_setcred: exit
(failure)
Jun 21 14:51:15 aqm sshd[10262]: pam_unix(sshd:session): session opened
for user kranthi by (uid=0)
Jun 21 14:51:15 aqm sshd[10262]: (pam_afs_session): PAG creation failed:
Success
Jun 21 14:51:15 aqm sshd[10278]: (pam_afs_session): pam_sm_setcred:
entry (0x2)
Jun 21 14:51:15 aqm sshd[10278]: (pam_afs_session): PAG creation failed:
Success
Jun 21 14:51:15 aqm sshd[10278]: (pam_afs_session): pam_sm_setcred: exit
(failure)
The Following are the entries in
common-auth:
auth required pam_afs_session.so always_aklog
aklog_homedir program=/usr/bin/aklog debug
Output of Klist:
klist
Ticket cache: FILE:/tmp/krb5cc_1761535_f26224
Default principal: kr***@REALM.COM
Valid starting Expires Service principal
06/21/12 15:30:52 06/22/12 15:30:52 krbtgt/REALM.COM
renew until 06/28/12 15:30:52
06/21/12 15:30:58 06/22/12 15:30:52 afs/REALM.COM
renew until 06/28/12 15:30:52
Tokens:
tokens
Tokens held by the Cache Manager:
User's (AFS ID 1761535) tokens for afs@REALM.COM [Expires Jun 22 15:30]
Please let us know what could be wrong?
Regards,
Kranthi