[30280] in Kerberos

home help back first fref pref prev next nref lref last post

Re: AFP not working for cross realm

daemon@ATHENA.MIT.EDU (abhishekbrave)
Wed Sep 10 11:06:35 2008

From: abhishekbrave <abhishek.brave@gmail.com>
Date: Wed, 10 Sep 2008 02:11:38 -0700 (PDT)
Message-ID: <79ea4c5d-24b9-491d-a5f1-41216686a9a7@m36g2000hse.googlegroups.com>
Mime-Version: 1.0
X-Complaints-To: groups-abuse@google.com
Complaints-To: groups-abuse@google.com
To: kerberos@mit.edu
Content-Type: text/plain; charset="iso-8859-1"
Errors-To: kerberos-bounces@mit.edu
Content-Transfer-Encoding: 8bit

On Sep 8, 7:07 pm, Ken Hornstein <k...@cmf.nrl.navy.mil> wrote:
> >I have configured AFP for kerberized authentication. It is working fine with
> >simple kerberos authentication,but with cross ream i am not able to mount
> >using the command
>
> >mount_afp afp://us...@aca.com/test1 /test2
> >i am getting all the cross realm ticktes and the service ticktes and  I have
> >verified the kvno off all the principals , everything is correct.
>
> >The error is
> >AFPMountURL returned error -5019,error is -5019
>
> If you're getting the cross-realm tickets, I am _guessing_ that the issue
> is one of authorization - your cross-realm identity isn't allowed to mount
> that particular filesystem.  That is a guess.  And if that is the problem,
> I have no idea how to fix it.
>
> --Ken


I am having same problem with NFS service also ,NFS and AFP both
working fine for simple kerberos but not for cross realm
authentication.Is there any way to verify wehter these service can be
configured for NFS /AFP or not
________________________________________________
Kerberos mailing list           Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos


home help back first fref pref prev next nref lref last post