Re: Registry Keys aren't being applied and more.

Jeffrey Altman <[email protected]>
Newsgroups gmane.comp.file-systems.openafs.devel.win32
Organization No Longer Affiliated with Columbia University in the City of New York
Message-ID <[email protected]>
[Please keep conversations on the list.  If you have a question, the
chances that someone else will have the same question is quite high.]

afs-install-notes.txt item number one reads:

"As of 1.3.65, the OpenAFS client will directly use Kerberos 5 tickets 
as tokens if KFW is installed.  The client requires that all of the AFS 
Servers with which it communicates support the use of Kerberos 5 tickets 
as tokens (aka 2b tokens).  This means that all of the AFS servers must 
be running OpenAFS release 1.2.8 or higher.  Transarc servers do not 
support Kerberos 5 tickets as tokens."

Your servers are a mixture of two 1.2.2 servers which do not support 2b 
tokens and one 1.2.10 server which does.  You are going to have 
problems.  All of your servers should be running at the same revision
level and in order for you to use authentication with OpenAFS for 
Windows 1.3.70 when KFW is installed you must be using OpenAFS 1.2.8
or higher on all of your servers.

As Asanka pointed out earlier, your installation problems appear to be
caused by a failure to follow the guidelines specified in the 
msi-deployment.txt file.  Upgrading your servers will not solve your
installation problems, it will simply allow Kerberos 5 authentication
to be used.

Jeffrey Altman




Ayokunle Adedipe wrote:

> Thanks for the quick answer. I'll have our Unix admins get that done asap.  
> But from what you're saying all our issues will be solved with the 
> upgrade? Or is there something else that I we are missing.
> 
> Thanks Again,
> Ayo
>
smime.p7s (application/x-pkcs7-signature, 3.2 KB) - not displayed
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.