[OpenAFS-devel] Pag question...

Derek Atkins warlord@MIT.EDU
13 Jul 2001 17:12:44 -0400


What platform?  What release of OpenAFS?  If you're using IBM/Transarc
AFS 3.6, you should be asking them.  Or you can try running the
OpenAFS client and see if that helps.

-derek

"Robertson, Jason V" <jason.v.robertson@intel.com> writes:

> I kind of asked this before, but not very clearly. I think my basic issue is
> I don't clearly understand how pags are implemented.
> 
> I'm having a problem understanding how to use a pag in a server daemon
> correctly...  This is with AFS 3.6.
> 
> Let's say a server daemon runs as root, and seteuid()'s to different UID's
> for security.  Since the UID is still always 0 (root) you have to use a pag
> to give each euid a secure context for AFS tokens.  This seems to work,
> except for one problem.
> 
> If you do a ktc_ListTokens() call you will see tokens in other pags.  I
> confirmed this by looking at the curpag() output in conjunction with the 2
> PAG groups.  Tokens for this pag:
> pag 1091817497 group0 33615 group1 36633
> will also be shown in this pag:
> pag 1091817498 group0 33615 group1 36634
> 
> Both pags are unique - why does ktc_ListTokens() display tokens in both?
> The tokens aren't _usable_, just shown.
> 
> Thanks,
> Jason
> 
> _______________________________________________
> OpenAFS-devel mailing list
> OpenAFS-devel@openafs.org
> https://lists.openafs.org/mailman/listinfo/openafs-devel

-- 
       Derek Atkins, SB '93 MIT EE, SM '95 MIT Media Laboratory
       Member, MIT Student Information Processing Board  (SIPB)
       URL: http://web.mit.edu/warlord/    PP-ASEL-IA     N1NWH
       warlord@MIT.EDU                        PGP key available