Re: aklog: a pioctl failed while setting tokens for cell

Benjamin Kaduk <[email protected]>
Newsgroups gmane.comp.file-systems.openafs.general
Message-ID <[email protected]>
95%+ of the time, "pioctl failed" means "the kernel module is not loaded".
So I would check the Console.app logs for any failures in that vein (I
don't use a mac client, so can't advise on what logs are relevant).

-Ben

On Thu, Jul 25, 2019 at 07:51:41PM +0000, Marcio Barbosa wrote:
> Hello,
> 
> One of my VMs is running macOS 10.13.6 (including this security update) and could not reproduce this problem.
> But I am running the OpenAFS-1.8.2 client with MIT Kerberos.
> 
> Best,
> Marcio Barbosa.
> 
> > On Jul 25, 2019, at 6:04 AM, Jan Pospíšil <[email protected]> wrote:
> > 
> > Hello,
> > 
> > I have macOS 10.13.6 (High Sierra) with just installed Security Update 2019-004 and after the update I have problems getting tokens, I am using aklog, see the pioctl error below. I have tried to reinstall AuriStor-client-0.188-HighSierra.dmg, but it did not help. The sequence of commands:
> > 
> > $ kinit 
> > [email protected]'s password:
> > 
> > $ klist -f
> > Credentials cache: API:0989E00B-F996-422A-A9E9-7AAC921E5CEA
> >       Principal: [email protected]
> > 
> > Issued                Expires             Flags    Principal
> > Jul 24 11:22:54 2019  Jul 24 21:22:50 2019  FIA    krbtgt/[email protected]
> > 
> > $ aklog -d
> > Authenticating to cell zcu.cz.
> > ======== Auristor rxgk ========
> > GSSAPI Error [851968:2529638919]
> > Miscellaneous failure (see text)
> > Matching credential (yfs-rxgk/[email protected]) not found
> > -------- failed --------
> > ======== rxkad ========
> > Trying to authenticate to user's realm ZCU.CZ.
> > Using Kerberos V5 ticket natively
> > -------- succeeded --------
> > aklog: a pioctl failed while setting tokens for cell zcu.cz
> > 
> > $ klist -f
> > Credentials cache: API:0989E00B-F996-422A-A9E9-7AAC921E5CEA
> >       Principal: [email protected]
> > 
> > Issued                Expires             Flags    Principal
> > Jul 24 11:22:54 2019  Jul 24 21:22:50 2019  FIA    krbtgt/[email protected]
> > Jul 24 11:24:15 2019  Jul 24 21:22:50 2019  FA     afs/[email protected]
> > 
> > $ tokens -debug
> > 
> > Tokens held by the Cache Manager:
> > 
> >  --End of list—
> > 
> > 
> > Surprisingly, on another computer with the same setting (same macOS and client version), the aklog works as expected (the GSSAPI error is probably not the problem):
> > 
> > $ aklog -d
> > Authenticating to cell zcu.cz.
> > ======== Auristor rxgk ========
> > GSSAPI Error [851968:2529638919]
> > Miscellaneous failure (see text)
> > Matching credential (yfs-rxgk/[email protected]) not found
> > -------- failed --------
> > ======== rxkad ========
> > Trying to authenticate to user's realm ZCU.CZ.
> > Using Kerberos V5 ticket natively
> > -------- succeeded ————
> > 
> > $ tokens
> > 
> > Tokens held by the Cache Manager:
> > 
> > User's (AFS ID 6141) rxkad tokens for zcu.cz [Expires Jul 24 21:37]
> >  --End of list--
> > 
> > 
> > Please could someone give me a hint how to investigate further what could cause the problem?
> > 
> > Thank you in advance.
> > With best regards
> > Jan
> > 
> > 
> > --
> > Jan Pospisil, Ph.D.			e-mail: [email protected]
> > University of West Bohemia	phone:  (+420) 37763-2675
> > Department of Mathematics	fax:    (+420) 37763-2602
> > Plzen, Czech Republic		address: Univerzitni 22, 306 14
> > 
> > 
> > _______________________________________________
> > OpenAFS-info mailing list
> > [email protected]
> > https://lists.openafs.org/mailman/listinfo/openafs-info
> 
> �zpJ)ߢf��)�+-:��
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.