On Wed, Mar 29, 2006 at 03:24:24PM -0600, Will Fiveash wrote:
> On Wed, Mar 29, 2006 at 10:02:54AM -0600, Douglas E. Engert wrote:
> > 
> > If you really wanted to get this to work better, add a parameter
> > on to your pam_krb5 to support this, and have it set the KRB5CCNAME.
> 
> Suggestion noted.

Sure, but not enough -- the kernel-land kgssapi/krb5 code and gssd can't
use KRB5CCNAME to find a Secure NFS client process' ccache.

We really need a concept like the AFS PAG...

Nico
-- 
________________________________________________
Kerberos mailing list           [email protected]
https://mailman.mit.edu/mailman/listinfo/kerberos

Reply via email to