[OpenAFS] Solaris 10 (x86): pam_afs_session
Russ Allbery
rra@stanford.edu
Fri, 22 Feb 2008 10:49:07 -0800
John Tang Boyland <boyland@cs.uwm.edu> writes:
> Sorry, I finally have time to reply to this. I tried both suggestions
> but neither worked. It still writes out the kerberos token after
> calling pam_afs_session.
>
> This is specific to dtlogin, sshd does fine.
Well, I hate to say I don't believe you, but I kind of don't believe you.
If you're calling pam_afs_session after pam_krb5 in both the auth and
session stack, there isn't anywhere it *could* write out the Kerberos
ticket cache after calling pam_afs_session.
--
Russ Allbery (rra@stanford.edu) <http://www.eyrie.org/~eagle/>