[1880] in athena10
Re: ~userid doesn't work, although /mit/userid works
daemon@ATHENA.MIT.EDU (Evan Broder)
Wed Mar 25 20:39:01 2009
Message-ID: <49CACE69.1090807@mit.edu>
Date: Wed, 25 Mar 2009 19:38:01 -0500
From: Evan Broder <broder@MIT.EDU>
MIME-Version: 1.0
To: Sanjoy Mahajan <sanjoy@mit.edu>
CC: linerva@mit.edu
In-Reply-To: <E1LmYes-0004E8-Nc@approx.mit.edu>
Content-Type: text/plain; charset=ISO-8859-1
Content-Transfer-Encoding: 7bit
Hi Sanjoy -
Thanks for reporting this. We're aware of some ongoing issues with
some of our authentication code, but we don't actually have a solution
yet. In the mean time, you can run "aklog" to get AFS tokens, which
authenticate you to the file servers.
Thanks for letting us know,
- Evan
Sanjoy Mahajan wrote:
>>> 2. I also started seeing the problem about "permission denied errors
>>> trying to run dotfiles on login". That one may be caused by recent
>>> Kerberos library changes on my (Debian unstable) laptop, and the
>>> answer at <http://web.mit.edu/linerva/www/> fixed it for me.
>>>
>
> Hmm, that fix recently stopped working (I think today), and now the
> permission-denied errors are back, e.g.:
>
> $ klist
> Ticket cache: FILE:/tmp/krb5cc_1000
> Default principal: sanjoy@ATHENA.MIT.EDU
>
> Valid starting Expires Service principal
> 03/25/09 15:18:20 03/26/09 12:33:20 krbtgt/ATHENA.MIT.EDU@ATHENA.MIT.EDU
> renew until 03/26/09 15:18:19
> 03/25/09 15:18:25 03/26/09 12:33:20 host/vinegar-pot.mit.edu@ATHENA.MIT.EDU
> renew until 03/26/09 15:18:19
>
> But then the permission-denied shows up:
>
> $ ssh -K linux
>
> Welcome to Linerva, the SIPB Linux dialup for MIT.
> Linerva runs Debathena on Debian lenny.
> http://linerva.mit.edu for more information
> blanche linerva-announce -a $USER # for outage announcements
> linerva@mit.edu (not IS&T) for questions and bug reports
>
> Last login: Wed Mar 25 15:12:52 2009 from pool-96-237-5-66.bstnma.east.verizon.net
> -bash: /mit/sanjoy/.bash_login: Permission denied
>
> The client is /usr/bin/ssh on a Debian squeeze/sid machine.
>
> -Sanjoy
>
>
>