Re: netatalk 1.3 with AFS and kaserver


Subject: Re: netatalk 1.3 with AFS and kaserver
From: wesley.craig@umich.edu
Date: Tue Feb 22 1994 - 14:56:08 EST


> From: "Matthew V. J. Whalen" <whalenm@arachnid.telos.com>
> To: netatalk-admins@umich.edu

> I have compiled and installed netatalk 1.3 with AFS support. I
> installed the AFS Kerberos UAM, and now I am trying to configure
> support on my kaserver for the authentication. Since I use the kaserver
> instead of MIT kerberos, I don't have and /etc/srvtab, and don't know
> what I am supposed to add and how to add it. Can anyone provide
> some insight on what I should be doing?

Here's our current thinking on the procedure to create afpd's srvtab in
an AFS environment:

    There is a utility which comes from Transarc called "kas". It will
    let you create a principle. It needs to be something like
    afp.choosername@realm. Set the password to anything, we'll change
    it in a minute. There is another utility called "ksrvutil" which
    comes with MIT Kerberos. It will generate srvtab files for you.
    It will prompt you for a password; use a good one. If you give it
    a -k option, ksrvutil will print the key in hex. Convert this hex
    string to octal and use it to setkey the principle in kas.

> Also, I noticed that when afpd has AFS support, it does not look at
> /usr/local/atalk/etc/afpd.conf for a list of volumes to export.

All released versions of afpd look only in the user's home directory if
they have an AppleVolumes file there. We have a patch that changes
this behavior.

:wes



This archive was generated by hypermail 2b28 : Sat Dec 18 1999 - 16:20:51 EST