[OpenAFS] Kerberos 5, AFS, and no krb524d

Derek Atkins warlord@MIT.EDU
09 Jun 2003 15:04:40 -0400


Nicholas Henke <henken@seas.upenn.edu> writes:

> I can kinit as afsadmin/roughneck.liniac.upenn.edu and run aklog, but
> AFS seems to refuse to see me as an authorized super-user:
[snip]
> User's (AFS ID 4) tokens for afs@roughneck.liniac.upenn.edu [Expires
> Jun  9 23:00]
>    --End of list--
> 
> [root@roughneck root]# bos listkeys roughneck.liniac.upenn.edu
> bos: you are not authorized for this operation error encountered while
> listing keys
> 
> What can I do to fix this ? BTW -- I had to add the user
> afsadmin.roughneck.liniac.upenn.edu with bos adduser and pts create to
> get aklog to resolve afsadmin/roughneck.liniac.upenn.edu to an AFS UID.

Uh, make sure that afsadmin/roughneck.liniac.upenn.edu is in the
SUsers list (on your file servers) and also on your
system:administrators (in the PTS database).

-derek

-- 
       Derek Atkins, SB '93 MIT EE, SM '95 MIT Media Laboratory
       Member, MIT Student Information Processing Board  (SIPB)
       URL: http://web.mit.edu/warlord/    PP-ASEL-IA     N1NWH
       warlord@MIT.EDU                        PGP key available