Hi all,
we are running AFS 3.4a with standard MIT K4 KDC. We started to
build our test AFS environment with AFS3.4beta and all works fine. Now we
would like move to 'production' environment, so we try to change afs
service key. Unfortunately, we are unable to build valid KeyFile from
Kerberos DB :-(
We tryed following steps (same as at our initial AFS setup):
- change passwd for afs.<cell_name> in Kerberos DB
- extract service key for <cell_name> with modified ext_srvtab
- add new key to KeyFile with asetkey
Unfortunately the new KeyFile seems to be invalid even after restarting
all AFS server processes or reboot. We still received the following message:
'....security object was passed a bad ticket ....'
Does someone help me understand what is wrong?
Thank you very much in advance for any help or suggestion!
Best regards,
Lubos
--------------------------------------------------------------------------
Lubos Kejzlar
System and Network Specialist
Laboratory for Computer Science Tel.: +42-19 2171210
University of West Bohemia +42-19 7221530
Americka 42, 30614 Pilsen Fax: +42-19 2171485
Czech Republic E-mail: [EMAIL PROTECTED]
--------------------------------------------------------------------------