[OpenAFS] AFS Issue

Kranthi Sangishetty kranthi@qatar.cmu.edu
Thu, 21 Jun 2012 15:36:24 +0300


Hi,


We have AFS volume configured on a debain box as AFS client. We see that
the user AFS volume gets mounted but not the AFS tokens.

We see the following errors in the auth.log.


Jun 21 14:51:15 aqm sshd[10262]: Accepted password for username from
**.**.**.** port 3215 ssh2
Jun 21 14:51:15 aqm sshd[10262]: (pam_afs_session): pam_sm_setcred:
entry (0x2)
Jun 21 14:51:15 aqm sshd[10262]: (pam_afs_session): PAG creation failed:
Success
Jun 21 14:51:15 aqm sshd[10262]: (pam_afs_session): pam_sm_setcred: exit
(failure)
Jun 21 14:51:15 aqm sshd[10262]: pam_unix(sshd:session): session opened
for user kranthi by (uid=0)
Jun 21 14:51:15 aqm sshd[10262]: (pam_afs_session): PAG creation failed:
Success
Jun 21 14:51:15 aqm sshd[10278]: (pam_afs_session): pam_sm_setcred:
entry (0x2)
Jun 21 14:51:15 aqm sshd[10278]: (pam_afs_session): PAG creation failed:
Success
Jun 21 14:51:15 aqm sshd[10278]: (pam_afs_session): pam_sm_setcred: exit
(failure)


The Following are the entries in

common-auth:
auth    required                        pam_afs_session.so always_aklog
aklog_homedir program=/usr/bin/aklog debug


Output of Klist:

klist
Ticket cache: FILE:/tmp/krb5cc_1761535_f26224
Default principal: kr***@REALM.COM

Valid starting     Expires            Service principal
06/21/12 15:30:52  06/22/12 15:30:52  krbtgt/REALM.COM
        renew until 06/28/12 15:30:52
06/21/12 15:30:58  06/22/12 15:30:52  afs/REALM.COM
        renew until 06/28/12 15:30:52

Tokens:
 tokens

Tokens held by the Cache Manager:

User's (AFS ID 1761535) tokens for afs@REALM.COM [Expires Jun 22 15:30]



Please let us know what could be wrong?

Regards,
Kranthi