Kerberos tickets get granted ok.
We are having trouble getting afs tokens created.
aklog: Couldn't get fnal.gov AFS tickets:
aklog: unknown RPC error (-1765328346) while getting AFS tickets
karen
-----------
Joseph Mack wrote:
Joseph Mack wrote:
you're going to have to find the ports involved with Kerberos and LVS them
too.
hmm, there's lot of ports involved. I seem to remember that people don't
like Kerberos for this reason.
http://www.lns.cornell.edu/public/COMP/krb5/krb5-admin/Configuring-Your-Firewall-to-Work-With-Kerberos-V5.html
If all these ports listen, then you could group them with fwmark.
If any of them are making callbacks (like ftp) then you'll need to
use port 0 with persistence or write a helper.
Joe
--
Karen Shepelak
SCS-GROUP (Scientific Computing Support)
FERMILAB (Work: 630-840-2715 -- Pager:630-266-2383 -- FAX:630-840-6345)
|