LVS
lvs-users
Google
 
Web LinuxVirtualServer.org

Re: ssh service using lvs-dr

To: "LinuxVirtualServer.org users mailing list." <lvs-users@xxxxxxxxxxxxxxxxxxxxxx>, mack.joseph@xxxxxxx
Subject: Re: ssh service using lvs-dr
From: Karen Shepelak <shepelak@xxxxxxxx>
Date: Mon, 07 Feb 2005 09:36:22 -0600
Kerberos tickets get granted ok.
We are having trouble getting afs tokens created.

aklog: Couldn't get fnal.gov AFS tickets:
aklog: unknown RPC error (-1765328346) while getting AFS tickets

karen
-----------
Joseph Mack wrote:

Joseph Mack wrote:

you're going to have to find the ports involved with Kerberos and LVS them
too.

hmm, there's lot of ports involved. I seem to remember that people don't
like Kerberos for this reason.

http://www.lns.cornell.edu/public/COMP/krb5/krb5-admin/Configuring-Your-Firewall-to-Work-With-Kerberos-V5.html

If all these ports listen, then you could group them with fwmark.
If any of them are making callbacks (like ftp) then you'll need to
use port 0 with persistence or write a helper.

Joe



--
Karen Shepelak
SCS-GROUP (Scientific Computing Support)
FERMILAB (Work: 630-840-2715 -- Pager:630-266-2383 -- FAX:630-840-6345)


<Prev in Thread] Current Thread [Next in Thread>