[OpenAFS] Quick Start Kerberos problem: can acquire tokens, but they don't work

Brandon S Allbery KF8NH allbery@ece.cmu.edu
Fri, 01 Oct 2010 01:19:34 -0400


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

On 9/30/10 17:58 , Phillip Moore wrote:
> If that's the case, then do Heimdal users need to bother with the
> openafs-krb5 rpm at all?   

If this is going into a quick start guide, I would be tempted to say that
because asetkey will work with Heimdal it should be preferred instead of
splitting into Heimdal- and MIT-specific parts.

(Also, the fact that "ktutil list" on an AFSKEYFILE will manufacture realm /
cell information that isn't actually there could actually complicate
debugging these kinds of issues.  asetkey at least doesn't pretend they're
there.)

- -- 
brandon s. allbery     [linux,solaris,freebsd,perl]      allbery@kf8nh.com
system administrator  [openafs,heimdal,too many hats]  allbery@ece.cmu.edu
electrical and computer engineering, carnegie mellon university      KF8NH
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v2.0.10 (Darwin)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org/

iEYEARECAAYFAkylb2YACgkQIn7hlCsL25UZqACfTuS8Xutm5FkqjC9+2bE6n8Rm
PU8AoNNF4L7VdCNpE7zzHQI5VqND/SpU
=8oEs
-----END PGP SIGNATURE-----