[OpenAFS] tokens at login

Dj Merrill deej@thayer.dartmouth.edu
Fri, 08 Apr 2005 11:51:28 -0400


Craig Cook wrote:
> Can you replace your "standard" pam_krb5afs.so with the version that comes with 1.3.81?
> 
> Keep a copy in case it doesn't work ;)
> 

Hi Craig,
	I don't see a pam_krb5afs.so in 1.3.81.
I see a pam_afs, but it is only good for Krb 4, not 5
according to the man page included with it:
pam_afs.krb.so
module has nothing to do with Kerberos 5 authentication.  Users
with a Kerberos 5 integrated AFS environment should not use
either of these modules, but instead use
pam_krb5.so directly.

	There doesn't seem to be a pam_krb5.so included
for Unix, as far as I can tell:
[root@galactica openafs-1.3.81]# pwd
/usr/src/openafs-1.3.81
[root@galactica openafs-1.3.81]# find ./ -name '*krb5*' -print
./src/WINNT/kfw/inc/krb5
./src/WINNT/kfw/inc/krb5/gssapi/gssapi_krb5.h
./src/WINNT/kfw/inc/krb5/krb5.h
./src/WINNT/kfw/inc/loadfuncs/loadfuncs-krb524.h
./src/WINNT/kfw/inc/loadfuncs/loadfuncs-krb5.h
./src/WINNT/kfw/lib/i386/krb524.lib
./src/WINNT/kfw/lib/i386/krb5_32.lib
[root@galactica openafs-1.3.81]#


	Or am I missing something?  (It happens!!!  :-)

Thanks,

-Dj

-- 
Dj Merrill
deej@thayer.dartmouth.edu

"TSA: Totally Screwing Aviation"