Currently we have a UI problem because of functionality overlap between
Leash and the AFS SysTray tool.

Tokens obtained via the AFS SysTray tool are auto-renewed
by the SysTray tool but Leash will only auto-renew for one cell.  Tokens
for multiple cells can be obtained using the same Kerberos 5 principal
without entering a password in the AFS SysTray tool.  (See
afs-install-notes.txt)

Tokens for both cells can be obtained during integrated login
using the "TheseCells" registry setting.  (See registry.txt)

A new UI framework is under development for KFW 3.0 and OAFW 2.0.

Jeffrey Altman


Jan Johansson wrote:

> Hello.
> 
> I have a Windows 2003 active directory with Windows XP clients
> that has OpenAFS for Windows 1.3.81 and Kerberos for Windows
> 2.6.5 installed.
> 
> There is trusts established between ad.local and the CENTRAL
> kerberos realm. There is also cross realm established between
> LOCAL and CENTRAL.
> 
> A user login to windows using their [EMAIL PROTECTED] account. 
> 
> Now I wish for them to have tokens for both the local and central
> AFS cells. This is no problem with a combination of leash/ms2mit
> and aklog.
> 
> Ticket renewal is done when the user unlocks the screensaver.
> 
> But how does one get the renewal of AFS tokens to be transparent
> for the user?
> 
> The best solution I have found is to run aklog every minute and
> that does not seem like a nice solution.
> 
> Jan J
> 
> _______________________________________________
> OpenAFS-info mailing list
> [email protected]
> https://lists.openafs.org/mailman/listinfo/openafs-info

Attachment: smime.p7s
Description: S/MIME Cryptographic Signature

Reply via email to