[OpenAFS] Solaris 10 (x86): pam_afs_session

Russ Allbery rra@stanford.edu
Fri, 22 Feb 2008 10:49:07 -0800


John Tang Boyland <boyland@cs.uwm.edu> writes:

> Sorry, I finally have time to reply to this.  I tried both suggestions
> but neither worked.  It still writes out the kerberos token after
> calling pam_afs_session.
>
> This is specific to dtlogin, sshd does fine.

Well, I hate to say I don't believe you, but I kind of don't believe you.
If you're calling pam_afs_session after pam_krb5 in both the auth and
session stack, there isn't anywhere it *could* write out the Kerberos
ticket cache after calling pam_afs_session.

-- 
Russ Allbery (rra@stanford.edu)             <http://www.eyrie.org/~eagle/>