Currently we have a UI problem because of functionality overlap between Leash and the AFS SysTray tool.
Tokens obtained via the AFS SysTray tool are auto-renewed by the SysTray tool but Leash will only auto-renew for one cell. Tokens for multiple cells can be obtained using the same Kerberos 5 principal without entering a password in the AFS SysTray tool. (See afs-install-notes.txt) Tokens for both cells can be obtained during integrated login using the "TheseCells" registry setting. (See registry.txt) A new UI framework is under development for KFW 3.0 and OAFW 2.0. Jeffrey Altman Jan Johansson wrote: > Hello. > > I have a Windows 2003 active directory with Windows XP clients > that has OpenAFS for Windows 1.3.81 and Kerberos for Windows > 2.6.5 installed. > > There is trusts established between ad.local and the CENTRAL > kerberos realm. There is also cross realm established between > LOCAL and CENTRAL. > > A user login to windows using their [EMAIL PROTECTED] account. > > Now I wish for them to have tokens for both the local and central > AFS cells. This is no problem with a combination of leash/ms2mit > and aklog. > > Ticket renewal is done when the user unlocks the screensaver. > > But how does one get the renewal of AFS tokens to be transparent > for the user? > > The best solution I have found is to run aklog every minute and > that does not seem like a nice solution. > > Jan J > > _______________________________________________ > OpenAFS-info mailing list > [email protected] > https://lists.openafs.org/mailman/listinfo/openafs-info
smime.p7s
Description: S/MIME Cryptographic Signature
