Hi all, can somebody shed some light on this issue ? We are trying to switch between kerberos realms ( and servers ). original : X.COM <http://xxx.com/> new : X.BIZ
cell : x.com <http://x.com/> I have created a new kerberos service principal afs/[email protected] <mailto:afs/[email protected]> in the new kerberos server. I have added the realm to the krb5.conf file. On the client, I can kinit / aklog for both the [email protected] <mailto:[email protected]> and [email protected] <mailto:[email protected]> Both give me a token for afs-UID 1000. But when I try to access a folder with the X.COM <http://x.com/> token, it works, with the X.BIZ token, I get a permission denied. What could be the root cause ? How can I debug this ? Thanks, Tim
