[OpenAFS] .k5login error

Douglas E. Engert deengert@anl.gov
Wed, 10 Nov 2004 14:42:21 -0600


Wes Chow wrote:

> I have a peculiar problem which I'm having trouble debugging...
> 
> I'm trying to configure a special passwordless user that certain
> principals can log in as.  To do this, I've created a .k5login file in
> that user's AFS home directory with the appropriate principals listed.
> 
> After obtaining Kerberos tokens, I can use telnet to log in as this
> user.  However, ssh doesn't work.  The user's home directory has
> system:anyuser rl rights, and the .k5login file is world readable.


which version of sshd, on what OS?
How are you using ssh? Sending the password to the sshd,
or using the gssapi, or what?

It should work in all cases, especially since you have the .k5login
setup and it works for telnet.


> 
> If I create a .k5login file in root's home directory, which is not on
> AFS, both telnet and ssh work.
> 
> Any thoughts as to what I should investigate?
> 
> Thanks,
> Wes
> _______________________________________________
> OpenAFS-info mailing list
> OpenAFS-info@openafs.org
> https://lists.openafs.org/mailman/listinfo/openafs-info
> 
> 
> 

-- 

  Douglas E. Engert  <DEEngert@anl.gov>
  Argonne National Laboratory
  9700 South Cass Avenue
  Argonne, Illinois  60439
  (630) 252-5444