[OpenAFS] Cross-realm access

Jaap Winius jwinius@umrk.nl
Mon, 21 Jul 2014 16:16:50 +0200

Hi folks,

After setting up Kerberos cross-realm access and then creating a  
system:authuser@<MY_REALM> group in a foreign cell, it seems that  
basic rl access to the cell's contents is only possible after that  
group is given rl access to every single directory that  
system:authuser has access to. Not very convenient.

Is there an easy way around this, like something equivalent to making  
system:authuser@<MY_REALM> a member of system:authuser?