[OpenAFS] renaming principals

Russ Allbery rra@stanford.edu
Mon, 07 May 2007 09:24:23 -0700


Kim Kimball <dhk@ccre.com> writes:

> I'm missing something WRT to Open AFS ACL changes.

> Why not delete the PTS user entry "unmarriedname" and create the new PTS
> entry "marriedname" with the same PTS ID?

> ACLs store numeric PTSID; next time ACL entry is resolved the new name
> will appear, retrieved from PTS DB.

> Unless we're talking about non-AFS ACLs.

You lose all group membership when you delete the PTS ID, but that will
preserve most AFS disk ACLs.  (It's possible that if you're really not
lucky something will garbage-collect the numeric ACL, but probably not.)

-- 
Russ Allbery (rra@stanford.edu)             <http://www.eyrie.org/~eagle/>