[OpenAFS] Puzzler: lack of access to AFS files

Douglas E. Engert deengert@anl.gov
Wed, 12 Dec 2007 14:07:04 -0600

John Hascall wrote:

> Would it work to modify the KDC such that when it hands out
> an afs/<cell>@REALM ticket for a TGT with a client name that
> is in the sconv table (like my sysadmin/asw.iastate.edu@IASTATE.EDU)
> that it 'K4-izes' that name (to sysadmin/asw in this case) in the
> returned ticket?  (Thus obviating the need to futz with the code
> on every AFS server.)
> Or is that just too hideous?

Sounds like the tail waging the dog. There are KDCs used with AFS
that are not modifiable, and don't support any k4. You don't want to
fiddle with the K5 protocols either.  the Its time to get AFS 'k5-izes'.

> John
> _______________________________________________
> OpenAFS-info mailing list
> OpenAFS-info@openafs.org
> https://lists.openafs.org/mailman/listinfo/openafs-info


  Douglas E. Engert  <DEEngert@anl.gov>
  Argonne National Laboratory
  9700 South Cass Avenue
  Argonne, Illinois  60439
  (630) 252-5444