[OpenAFS] New OpenSSH-3.7p1 removes AFS support

Jason Edgecombe jedgecombe@carolina.rr.com
Tue, 16 Sep 2003 15:00:22 -0400


Erik Arneson wrote:

>On 16-Sep-2003, J Maynard Gelinas <gelinas@lns.mit.edu> wrote:
>  
>
>>  This may be slightly off-topic for the OpenAFS list, but the latest
>>OpenSSH-3.7p1 removes support for AFS, writing Kerberos 5 tickets to files
>>(in memory now), and Kerberos 4. Since an exploit for all previous OpenSSH
>>releases has just been announced, I'm somewhat confused about how to
>>handle this mess. Can anyone suggest a solution for remote logins which
>>supports SSH protocols 1 & 2, AFS and Kerberos, and builds properly on
>>Redhat Linux 7.x?
>>    
>>
>
>The patch at <http://www.openssh.com/txt/buffer.adv> applies cleanly to
>3.4p1, and should build nicely on RH 7.x.
>
>  
>
Does this mean that one cannot login to a linux box if you home 
directory and password are in AFS? Note: my setup is Redhat 7.3 with 
openssh with/PAM support.

Sincerely,
Jason Edgecombe