[OpenAFS] Re: Service principal ticket expiring (AD)

Andrew Deason adeason@sinenomine.net
Fri, 20 Jan 2012 12:40:29 -0600


On Fri, 20 Jan 2012 12:08:56 -0600
John Tang Boyland <boyland@pabst.cs.uwm.edu> wrote:

> (1) If I add a new key to the (1.4.12) fileserver but don't reboot it,
>     but get tokens with aklog, the cache manager accepts the tokens
>     for files already in the cache.
> (2) Once the fileserver is restarted, then new files can be read.

If you change KeyFile on disk, the fileserver doesn't update its
in-memory list of keys unless you also 'touch' the server-side
CellServDB (or restart it, as you noticed). I didn't think any of that
had changed for 1.6.0.

-- 
Andrew Deason
adeason@sinenomine.net