[OpenAFS] AFS Token not renewable after integrated login

Dr. Benjamin Kaduk kaduk@MIT.EDU
Fri, 12 Dec 2014 20:48:52 -0500 (EST)


On Fri, 12 Dec 2014, Dr. Hendrik Naumann wrote:

> Some months ago were still using OpenAFS 1.7.21, and the  MIT Kerberos
> 3.2.2 together with the old Network Identity Manager on Windows7
> 32bit. In this setup we never had the problem of run out AFS Tokens.
> How does that fit into the picture? Because we change the session
> encryption on the servers we had to upgrade to higher than 1.7.26 and
> in that process we also upgraded the whole kerberos stack.

Can you say a little more what "upgraded the whole kerberos stack" means?
Did you upgrade the KDCs, or the kerberos client software on these windows
machines, or something else?

-Ben