You can absolutely store your Windows profile in AFS.  The problem
you are going to have if you are not using Active Directory is how
are you going to map the Windows Account's Profile to the path in
AFS.  You can't do it with LDAP so you are going to have to figure
out so other way of configuring it within the framework you are
using for Windows account management.

As long as the profile directory points to an AFS UNC path, all
you have to do for OpenAFS for Windows is to turn on Integrated
Login and ensure that the Windows account name combined with the
AFS cell name equal the Kerberos principal name.

  Windows: user
  AFS cell: cell.name
  Principal:  [EMAIL PROTECTED]

Jeffrey Altman




Franco "Sensei" wrote:

Hi.

I'm wondering about the status of openafs under windows. I'm interested in the possibility of having home directories under an afs cell and avoiding local users.

The fact is that we've been trying, as you've probably seen on openafs-info ml, to use afs + k5 + ldap, to have a common login on every platform in our university without active directory. Linux and MacOSX work flawlessly, very easy. Windows OSs are a pain. We didn't succeed.

Now, I'll be glad to know if anyone has ever done that, if possible doing it.

I'll be glad to help in developing such a trick for windows (I'm really interested in authentication and ), but I don't really know where to start and how to do it. So... if someone is so kind to help me... I'll help happily :) even though my experience is mainly under unix and linux...

PS. I'd be using my istitutional email if needed (it doesn't always work for network problems), just tell me and I'll subscribe to the mailing list with that.

Franco Milicchio

Attachment: smime.p7s
Description: S/MIME Cryptographic Signature



Reply via email to