User level permissions

Tim Yardley yardley at ncsa.uiuc.edu
Mon Jun 28 19:12:59 CEST 1999


: Yes, or it wasn't announced that much.  Most of that code was released
: before Arla.  Mostly any Kerberos distribution with support for AFS
: should work with Arla.

Yeah, well... NCSA is in somewhat of a sticky situation.  We have our own
series of patches to kerberos (Ken Hornstein works closely with us).  We
also have a screwy configuration for our afs cell/kerberos cell.
Basically, they are not the same name.  Our kerberos realm is ncsa.edu and
our afs cell is ncsa.uiuc.edu.  Needless to say, this causes problems...
including the inability to authenticate out of the box with the krb4-0.9.9
stuff.

Needless to say, my site mainly runs transarc clients... however, we are
looking at other alternatives such as arla for OS's that are not
supported by transarc/ibm.  Needless to say, a necessity is
authentication... so it would be nice if we could get it working.  I
imagine I could hack together a "working" klog... but I would also have to
do an aklog (for automation reasons).  Grr.. more work. :/

Anyway, if our configuration wasn't the way it was.. it would be so much
easier.  *gleems at the people that set it up*  Oh well.. I will deal.

Sorry about the venting...

/tmy

-- Diving into infinity my consciousness expands in inverse
   proportion to my distance from singularity






More information about the Arla-drinkers mailing list