[HCoop-Help] permission problems (ssh access with passwordless login)

Andrew T andrew at hcoop.net
Tue Jun 30 09:56:20 EDT 2009


2009/6/29 Adam Megacz <megacz at hcoop.net>:
>
> Andrew T <andrew at hcoop.net> writes:
>> heather at junior ~ $ klist
>> Ticket cache: FILE:/tmp/krb5cc_1000
>> Default principal: andrew at HCOOP.NET
>>
>> Valid starting     Expires            Service principal
>> 06/29/09 21:10:45  06/30/09 07:10:45  krbtgt/HCOOP.NET at HCOOP.NET
>>         renew until 06/30/09 21:10:37
>
> Hi Andrew, thanks for hanging in there.  Could you try "klist -f" for
> me and post what you get from that?
>
> Also, try "kinit -f andrew at HCOOP.NET".  The "-f" shouldn't be
> necessary, but if it fixes things it will explain the problem.

Wow. Now I am really embarrassed, since the solution is in the wiki:

http://wiki.hcoop.net/MemberManual/ShellAccess/TroubleshootingKerberos#Step4.3Amakesureyourticketsare.22forwardable.22

klist showed that my tickets weren't forwardable.  Using a "kinit -f"
fixes the problems, since the "forwardable" flag is not in my
/etc/krb5.conf.



More information about the HCoop-Help mailing list