[OpenAFS] Debian - openafs -noauth problems

Madhusudan Singh singh.madhusudan@gmail.com
Tue, 23 Aug 2005 14:01:10 -0400


Hi

	Thanks for your response. I contacted the KDC admins yesterday and they 
suggested that I use :

	kinit -k -t /etc/krb5.keytab afs/omega.domain.edu@KERBEROS.DOMAIN.EDU

	where the keytab is stored in /etc/krb5.keytab

	instead of kinit zzzz

	In this case, what would my admin principal be for afs-newcell (the second 
one I listed ?).

Thanks.

On Monday 22 August 2005 8:16 pm, Russ Allbery wrote: 

> Madhusudan Singh <singh.madhusudan@gmail.com> writes:
> > Upon getting credentials as user zzzz (kinit zzzz; aklog ....) , I
> > noticed that :
> >
> > omega:/etc/openafs/server# klist
> > Ticket cache: FILE:/tmp/krb5cc_0
> > Default principal: m_singh@KERBEROS.DOMAIN.EDU
> >
> > Valid starting     Expires            Service principal
> > 08/22/05 13:27:18  08/22/05 23:26:35
> > krbtgt/KERBEROS.DOMAIN.EDU@KERBEROS.DOMAIN.EDU
> > 08/22/05 13:27:40  08/22/05 23:26:35 
> > afs/omega.domain.edu@KERBEROS.DOMAIN.EDU
> >
> > Kerberos 4 ticket cache: /tmp/tkt0
> > klist: You have no tickets cached
> >
> > So, in the afs-newcell script, is my admin principal :
> >
> > zzzz/omega.domain.edu@KERBEROS.DOMAIN.EDU
> >
> > or afs/omega.domain.edu@KERBEROS.DOMAIN.EDU
>
> Neither.  It's just zzzz.