[OpenAFS] OpenAFS 1.3.63 on Windows XP
Jeffrey Altman
jaltman@columbia.edu
Fri, 30 Apr 2004 16:22:27 -0400
This is a cryptographically signed message in MIME format.
--------------ms020001030807080906010807
Content-Type: multipart/alternative;
boundary="------------060401030803090801020706"
This is a multi-part message in MIME format.
--------------060401030803090801020706
Content-Type: text/plain; charset=us-ascii; format=flowed
Content-Transfer-Encoding: 7bit
which version of KFW?
what is the output of "klist" and "tokens"?
Jon Nials wrote:
> I am obtaining them through the client. I do not currently have any
> trust relationship set up between our Active Directory domain and our
> kerberos cell. I am running mit kerberos 5 as distributed with redhat
> 9 (1.2.7 I believe) on the servers, no kaserver, and running with the
> krb524d turned off.
>
> I am running 1.3.63 version of the client.
>
>
> Jon R. Nials
> Lead Systems Administrator
> Digital Motorworks, L.P.
> Work: 512-692-1039
> Pager: jnials@skytel.com <mailto:jnials@skytel.com>
> jnials@digitalmotorworks.com <mailto:jnials@digitalmotorworks.com>
> www.digitalmotorworks.com
>
> -----Original Message-----
> *From:* Jeffrey Altman [mailto:jaltman@columbia.edu]
> *Sent:* Friday, April 30, 2004 11:46 AM
> *To:* Jon Nials
> *Cc:* Chris Crowther; openafs-info@openafs.org
> *Subject:* Re: [OpenAFS] OpenAFS 1.3.63 on Windows XP
>
> Really? I'm using KRB5 tickets that expire on 6 May 2004.
> that is certainly more than 20 hours and they are not expiring
> immediately.
> How are you obtaining your tickets? And your tokens?
>
> Jeffrey Altman
>
>
> Jon Nials wrote:
>
>>The main problem I am having is kerberos-5 tickets over 20 hours. Our
>>AFS cell is running MIT Kerb5 and tickets over about 20 hours go
>>negative and cause the credentials to expire immediately.
>>Unfortunately, I haven't had time to work on it.
>>
>>-Jon
>>
>>Jon R. Nials
>>Lead Systems Administrator
>>Digital Motorworks, L.P.
>>Work: 512-692-1039
>>Pager: jnials@skytel.com
>>jnials@digitalmotorworks.com
>>www.digitalmotorworks.com
>>
--------------060401030803090801020706
Content-Type: text/html; charset=us-ascii
Content-Transfer-Encoding: 7bit
<!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN">
<html>
<head>
<meta content="text/html;charset=ISO-8859-1" http-equiv="Content-Type">
<title></title>
</head>
<body bgcolor="#ffffff" text="#000000">
<font face="Bitstream Cyberbit">which version of KFW?<br>
<br>
what is the output of "klist" and "tokens"?<br>
<br>
<br>
<br>
Jon Nials wrote:<br>
</font>
<blockquote
cite="midCFC553798EAECD42B7F63B300230E8E5253D9A@EXCHANGE-BE01.ad.dmotorworks.com"
type="cite">
<title>Message</title>
<meta http-equiv="Content-Type" content="text/html; ">
<meta content="MSHTML 6.00.2800.1400" name="GENERATOR">
<div><font face="Bitstream Cyberbit"><span class="490370420-30042004"><font
color="#0000ff">I am obtaining them through the client. I do not
currently have any trust relationship set up between our Active
Directory domain and our kerberos cell. I am running mit kerberos 5 as
distributed with redhat 9 (1.2.7 I believe) on the servers, no
kaserver, and running with the krb524d turned off.</font></span></font></div>
<div><font face="Bitstream Cyberbit"><span class="490370420-30042004"></span> </font></div>
<div><font face="Bitstream Cyberbit"><span class="490370420-30042004"><font
color="#0000ff">I am running 1.3.63 version of the client.</font></span></font></div>
<div><font face="Bitstream Cyberbit"> </font></div>
<div><font face="Bitstream Cyberbit"> </font></div>
<div align="left"><font face="Bitstream Cyberbit">Jon R. Nials</font></div>
<div align="left"><font face="Bitstream Cyberbit">Lead Systems
Administrator</font></div>
<div align="left"><font face="Bitstream Cyberbit">Digital Motorworks,
L.P.</font></div>
<div align="left"><font face="Bitstream Cyberbit">Work: 512-692-1039</font></div>
<div align="left"><font face="Bitstream Cyberbit">Pager: <a
href="mailto:jnials@skytel.com">jnials@skytel.com</a></font></div>
<div align="left"><font face="Bitstream Cyberbit"><a
href="mailto:jnials@digitalmotorworks.com">jnials@digitalmotorworks.com</a></font></div>
<div align="left"><font face="Bitstream Cyberbit"><a class="moz-txt-link-abbreviated" href="http://www.digitalmotorworks.com">www.digitalmotorworks.com</a></font></div>
<blockquote style="margin-right: 0px;" dir="ltr">
<div class="OutlookMessageHeader" align="left" dir="ltr"
lang="en-us"><font face="Bitstream Cyberbit">-----Original Message-----<br>
<b>From:</b> Jeffrey Altman [<a class="moz-txt-link-freetext" href="mailto:jaltman@columbia.edu">mailto:jaltman@columbia.edu</a>] <br>
<b>Sent:</b> Friday, April 30, 2004 11:46 AM<br>
<b>To:</b> Jon Nials<br>
<b>Cc:</b> Chris Crowther; <a class="moz-txt-link-abbreviated" href="mailto:openafs-info@openafs.org">openafs-info@openafs.org</a><br>
<b>Subject:</b> Re: [OpenAFS] OpenAFS 1.3.63 on Windows XP<br>
<br>
</font></div>
<font face="Bitstream Cyberbit">Really? I'm using KRB5 tickets
that expire on 6 May 2004.<br>
that is certainly more than 20 hours and they are not expiring
immediately.<br>
How are you obtaining your tickets? And your tokens?<br>
<br>
Jeffrey Altman<br>
<br>
<br>
Jon Nials wrote:<br>
</font>
<blockquote
cite="midCFC553798EAECD42B7F63B300230E8E5253D95@EXCHANGE-BE01.ad.dmotorworks.com"
type="cite">
<pre wrap=""><font face="Bitstream Cyberbit">The main problem I am having is kerberos-5 tickets over 20 hours. Our
AFS cell is running MIT Kerb5 and tickets over about 20 hours go
negative and cause the credentials to expire immediately.
Unfortunately, I haven't had time to work on it.
-Jon
Jon R. Nials
Lead Systems Administrator
Digital Motorworks, L.P.
Work: 512-692-1039
Pager: <a class="moz-txt-link-abbreviated"
href="mailto:jnials@skytel.com">jnials@skytel.com</a>
<a class="moz-txt-link-abbreviated"
href="mailto:jnials@digitalmotorworks.com">jnials@digitalmotorworks.com</a>
<a class="moz-txt-link-abbreviated"
href="http://www.digitalmotorworks.com">www.digitalmotorworks.com</a>
</font></pre>
</blockquote>
</blockquote>
</blockquote>
</body>
</html>
--------------060401030803090801020706--
--------------ms020001030807080906010807
Content-Type: application/x-pkcs7-signature; name="smime.p7s"
Content-Transfer-Encoding: base64
Content-Disposition: attachment; filename="smime.p7s"
Content-Description: S/MIME Cryptographic Signature
MIAGCSqGSIb3DQEHAqCAMIACAQExCzAJBgUrDgMCGgUAMIAGCSqGSIb3DQEHAQAAoIIJOzCC
AvgwggJhoAMCAQICAwwjmjANBgkqhkiG9w0BAQQFADBiMQswCQYDVQQGEwJaQTElMCMGA1UE
ChMcVGhhd3RlIENvbnN1bHRpbmcgKFB0eSkgTHRkLjEsMCoGA1UEAxMjVGhhd3RlIFBlcnNv
bmFsIEZyZWVtYWlsIElzc3VpbmcgQ0EwHhcNMDQwNDE2MDIxODM0WhcNMDUwNDE2MDIxODM0
WjBGMR8wHQYDVQQDExZUaGF3dGUgRnJlZW1haWwgTWVtYmVyMSMwIQYJKoZIhvcNAQkBFhRq
YWx0bWFuQGNvbHVtYmlhLmVkdTCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAKyS
7eWrak81hbARkTT+lqX+uujXLK3tDmCn/6IQH9tDKYtf5A8/llZJdPYHUA9p1FH9hwk23iGY
scSkJq84FJenlWKOOqOsT6BlueWsrlKuseJCdMf9uhN28p+UnZvrcVhcLLTYfRvQT9OUw/k3
h4TzNdyAXbBJ3LnL1ySbFRaNVkq7cW/2ircAWpcyqHH4ZKstdSLbo6axsDHWRZL8yHUsI1Gz
esRSYQf2aUeUqvmGbEKEKFwbfqgfLwlBLiv1Lqib/++J3s5g3syhqWe3T8tUffmhdibUdX2W
umT2uiWl/WGEBvc1+o5k0T2JqWMNR9VgzPyk8P+iZRHl76Yb49ECAwEAAaNUMFIwDgYDVR0P
AQH/BAQDAgP4MBEGCWCGSAGG+EIBAQQEAwIFoDAfBgNVHREEGDAWgRRqYWx0bWFuQGNvbHVt
YmlhLmVkdTAMBgNVHRMBAf8EAjAAMA0GCSqGSIb3DQEBBAUAA4GBAGXYUcZvaLEqctXUsgt0
fUMFXukM3E5fpLBkk3+BbcY457WQE38ZM1AOvcYOHqB1xhJCxP1U0pSJu2Xfe9Z1M2mU4C4V
2w4sDcWkZteM9EW7VYbXzSCKCw0TKKp3Wl9TFIWFdiFwPvhOzhXUonGTdYbOvRuAXQuJdNQW
O4v2sQg1MIIC+DCCAmGgAwIBAgIDDCOaMA0GCSqGSIb3DQEBBAUAMGIxCzAJBgNVBAYTAlpB
MSUwIwYDVQQKExxUaGF3dGUgQ29uc3VsdGluZyAoUHR5KSBMdGQuMSwwKgYDVQQDEyNUaGF3
dGUgUGVyc29uYWwgRnJlZW1haWwgSXNzdWluZyBDQTAeFw0wNDA0MTYwMjE4MzRaFw0wNTA0
MTYwMjE4MzRaMEYxHzAdBgNVBAMTFlRoYXd0ZSBGcmVlbWFpbCBNZW1iZXIxIzAhBgkqhkiG
9w0BCQEWFGphbHRtYW5AY29sdW1iaWEuZWR1MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIB
CgKCAQEArJLt5atqTzWFsBGRNP6Wpf666Ncsre0OYKf/ohAf20Mpi1/kDz+WVkl09gdQD2nU
Uf2HCTbeIZixxKQmrzgUl6eVYo46o6xPoGW55ayuUq6x4kJ0x/26E3byn5Sdm+txWFwstNh9
G9BP05TD+TeHhPM13IBdsEncucvXJJsVFo1WSrtxb/aKtwBalzKocfhkqy11ItujprGwMdZF
kvzIdSwjUbN6xFJhB/ZpR5Sq+YZsQoQoXBt+qB8vCUEuK/UuqJv/74nezmDezKGpZ7dPy1R9
+aF2JtR1fZa6ZPa6JaX9YYQG9zX6jmTRPYmpYw1H1WDM/KTw/6JlEeXvphvj0QIDAQABo1Qw
UjAOBgNVHQ8BAf8EBAMCA/gwEQYJYIZIAYb4QgEBBAQDAgWgMB8GA1UdEQQYMBaBFGphbHRt
YW5AY29sdW1iaWEuZWR1MAwGA1UdEwEB/wQCMAAwDQYJKoZIhvcNAQEEBQADgYEAZdhRxm9o
sSpy1dSyC3R9QwVe6QzcTl+ksGSTf4FtxjjntZATfxkzUA69xg4eoHXGEkLE/VTSlIm7Zd97
1nUzaZTgLhXbDiwNxaRm14z0RbtVhtfNIIoLDRMoqndaX1MUhYV2IXA++E7OFdSicZN1hs69
G4BdC4l01BY7i/axCDUwggM/MIICqKADAgECAgENMA0GCSqGSIb3DQEBBQUAMIHRMQswCQYD
VQQGEwJaQTEVMBMGA1UECBMMV2VzdGVybiBDYXBlMRIwEAYDVQQHEwlDYXBlIFRvd24xGjAY
BgNVBAoTEVRoYXd0ZSBDb25zdWx0aW5nMSgwJgYDVQQLEx9DZXJ0aWZpY2F0aW9uIFNlcnZp
Y2VzIERpdmlzaW9uMSQwIgYDVQQDExtUaGF3dGUgUGVyc29uYWwgRnJlZW1haWwgQ0ExKzAp
BgkqhkiG9w0BCQEWHHBlcnNvbmFsLWZyZWVtYWlsQHRoYXd0ZS5jb20wHhcNMDMwNzE3MDAw
MDAwWhcNMTMwNzE2MjM1OTU5WjBiMQswCQYDVQQGEwJaQTElMCMGA1UEChMcVGhhd3RlIENv
bnN1bHRpbmcgKFB0eSkgTHRkLjEsMCoGA1UEAxMjVGhhd3RlIFBlcnNvbmFsIEZyZWVtYWls
IElzc3VpbmcgQ0EwgZ8wDQYJKoZIhvcNAQEBBQADgY0AMIGJAoGBAMSmPFVzVftOucqZWh5o
wHUEcJ3f6f+jHuy9zfVb8hp2vX8MOmHyv1HOAdTlUAow1wJjWiyJFXCO3cnwK4Vaqj9xVsuv
PAsH5/EfkTYkKhPPK9Xzgnc9A74r/rsYPge/QIACZNenprufZdHFKlSFD0gEf6e20TxhBEAe
ZBlyYLf7AgMBAAGjgZQwgZEwEgYDVR0TAQH/BAgwBgEB/wIBADBDBgNVHR8EPDA6MDigNqA0
hjJodHRwOi8vY3JsLnRoYXd0ZS5jb20vVGhhd3RlUGVyc29uYWxGcmVlbWFpbENBLmNybDAL
BgNVHQ8EBAMCAQYwKQYDVR0RBCIwIKQeMBwxGjAYBgNVBAMTEVByaXZhdGVMYWJlbDItMTM4
MA0GCSqGSIb3DQEBBQUAA4GBAEiM0VCD6gsuzA2jZqxnD3+vrL7CF6FDlpSdf0whuPg2H6ot
nzYvwPQcUCCTcDz9reFhYsPZOhl+hLGZGwDFGguCdJ4lUJRix9sncVcljd2pnDmOjCBPZV+V
2vf3h9bGCE6u9uo05RAaWzVNd+NWIXiC3CEZNd4ksdMdRv9dX2VPMYIDOzCCAzcCAQEwaTBi
MQswCQYDVQQGEwJaQTElMCMGA1UEChMcVGhhd3RlIENvbnN1bHRpbmcgKFB0eSkgTHRkLjEs
MCoGA1UEAxMjVGhhd3RlIFBlcnNvbmFsIEZyZWVtYWlsIElzc3VpbmcgQ0ECAwwjmjAJBgUr
DgMCGgUAoIIBpzAYBgkqhkiG9w0BCQMxCwYJKoZIhvcNAQcBMBwGCSqGSIb3DQEJBTEPFw0w
NDA0MzAyMDIyMjdaMCMGCSqGSIb3DQEJBDEWBBRPqYZGZ37YzZbLI8dcp7aivCc7ujBSBgkq
hkiG9w0BCQ8xRTBDMAoGCCqGSIb3DQMHMA4GCCqGSIb3DQMCAgIAgDANBggqhkiG9w0DAgIB
QDAHBgUrDgMCBzANBggqhkiG9w0DAgIBKDB4BgkrBgEEAYI3EAQxazBpMGIxCzAJBgNVBAYT
AlpBMSUwIwYDVQQKExxUaGF3dGUgQ29uc3VsdGluZyAoUHR5KSBMdGQuMSwwKgYDVQQDEyNU
aGF3dGUgUGVyc29uYWwgRnJlZW1haWwgSXNzdWluZyBDQQIDDCOaMHoGCyqGSIb3DQEJEAIL
MWugaTBiMQswCQYDVQQGEwJaQTElMCMGA1UEChMcVGhhd3RlIENvbnN1bHRpbmcgKFB0eSkg
THRkLjEsMCoGA1UEAxMjVGhhd3RlIFBlcnNvbmFsIEZyZWVtYWlsIElzc3VpbmcgQ0ECAwwj
mjANBgkqhkiG9w0BAQEFAASCAQA2UB6BYoPyMxSx5lfCe0ZfhSjpskTq7ABWw1wROYGvMy+X
Pf98c0lDCJAColo+pPb8iYTnw5ynNdZdJppwOBwJMM7EBAiutisGyI7kXxTc4v7k6YYQ5H7L
js1pWS+UNTrlkj8UeoC63raJ3ur/LcxN60f8vyTkbGhm06rMbvypOFjfOX06CNQHE56O6M07
HNyOw/Kkaagpz1MCXUPg76ORojIHXsBfEK71jPoiFxSRp1HwF1++NndK+8U2bXaN4bBQ4TlM
IXFe7h4+6ijFKY2NXZrj1lZU6E0aaD1KPKTJl/G10HDoOT9qlcHZy0smMg5dlu828tDxdz3y
yh5cW0yuAAAAAAAA
--------------ms020001030807080906010807--