[OpenAFS] significant delay for afs user to login as root via su

ematlis@yahoo.com ematlis@yahoo.com
Thu, 18 Mar 2010 07:25:24 -0700 (PDT)


You are correct in your assumptions.  Regarding XAUTHORITY (with pam_xauth =
in su):=0A=0Alogging in at the machine, this is what I find:=0A=0Abefore su=
:=0A=0A[ematlis@aerogold ~]$ echo $XAUTHORITY=0A/var/run/gdm/auth-for-ematl=
is-s3Q2Bx/database=0A=0Aafter su:=0A=0A[root@aerogold ematlis]# echo $XAUTH=
ORITY=0A/root/.xauth0zKXoW=0A=0AHowever, after logging into the machine rem=
otely:=0A=0Abefore su:=0A=0A[ematlis@aerogold ~]$ echo $XAUTHORITY=0AXAUTHO=
RITY: Undefined variable.=0A=0Aafter su:=0A[root@aerogold ematlis]# echo $X=
AUTHORITY=0A=0A(gives blank line).=0A=0Aeric=0A=0A--- On Thu, 3/18/10, Ken =
Hornstein <kenh@cmf.nrl.navy.mil> wrote:=0A=0A> From: Ken Hornstein <kenh@c=
mf.nrl.navy.mil>=0A> Subject: Re: [OpenAFS] significant delay for afs user =
to login as root via su=0A> To: ematlis@yahoo.com=0A> Cc: openafs-info@open=
afs.org=0A> Date: Thursday, March 18, 2010, 9:00 AM=0A> >No, I do not.=0A> =
=0A> So, let me understand you _completely_.=0A> =0A> When pam_xauth.so is =
in /etc/pam.d/su, and when you log in=0A> on the console:=0A> =0A> - "token=
s" shows AFS tokens _before_ you su.=0A> - There is no delay for "su".=0A> =
- "tokens" shows no AFS tokens _after_ you su.=0A> =0A> When pam_xauth.so i=
s in /etc/pam.d/su, and when you log in=0A> REMOTELY:=0A> =0A> - "tokens" s=
hows AFS tokens _before_ you su.=0A> - There IS a delay for "su".=0A> - "to=
kens" shows no AFS tokens _after_ you su.=0A> =0A> Hmmm .... waitaminute.=
=A0 When you log into the console,=0A> what is the value=0A> of the XAUTHOR=
ITY environment variable?=A0 Does it point=0A> to a file in your=0A> AFS ho=
me directory, or somewhere else?=0A> =0A> --Ken=0A> _______________________=
________________________=0A> OpenAFS-info mailing list=0A> OpenAFS-info@ope=
nafs.org=0A> https://lists.openafs.org/mailman/listinfo/openafs-info=0A> =
=0A=0A=0A