[24798] in Kerberos

home help back first fref pref prev next nref lref last post

kerberos v5 clients (telnet rsh ..) taking OpenAFS-2.x tokens ?

daemon@ATHENA.MIT.EDU (ph rhole oper)
Wed Oct 5 17:19:03 2005

Message-Id: <1128527147.19827.244475419@webmail.messagingengine.com>
From: "ph rhole oper" <slitbit@fastmail.fm>
To: kerberos@mit.edu
Content-Disposition: inline
Content-Transfer-Encoding: 7bit
Content-Type: text/plain; charset="ISO-8859-7"
MIME-Version: 1.0
Date: Wed, 05 Oct 2005 18:45:47 +0300
Errors-To: kerberos-bounces@mit.edu

I've got a working installation of kerberos v5 (1.4.1) and OpenAFS-2.3.x
Running aklog seperately after having kinit-ed runs perfectly, and i've
got xdm from krb5-afs migration kit working
perfectly.I haven't applied any patches from krb5-afs migration kit
whatsoever, i've only used the xdm part.
I need to make all the standard kerberized client/daemon utilities
(telnet, rsh ...) to get afs tokens for the user.
Searching inside the config files, i found out that setting
[login]
 krb_run_aklog = true
will make any login attemps acquire afs tokens, but it only seems to
work with kerberos v4 code and tickets.
What is the standard way of integrating afs tokens into the standard
kerberized applications?
Is the afs-krb5 migration kit an obsolete option, or is it still in the
game?


-- 
http://www.fastmail.fm - Accessible with your email software
                          or over the web

________________________________________________
Kerberos mailing list           Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos

home help back first fref pref prev next nref lref last post