Jakob Haufe <su...@sur5r.net> writes:

> I just tried to following snippet and it seems work.

> Priority is 703 because libpam-krb5 has priority 704, so
> libpam_afs_session ends up after it in the session stack.
> libpam-heimdal unfortunately ships without a pam config for
> pam-auth-update. The one from libpam-krb5 should work for it without
> modifications, though.

> Name: AFS session
> Default: yes
> Priority: 703
> Session-Type: Additional
> Session:
>       optional                        pam_afs_session.so

Unfortunately, the required stack is more complex than this since
pam_afs_session needs to run during setcred as well.  Otherwise, things
like scp with ticket forwarding don't work.

-- 
Russ Allbery (r...@debian.org)               <http://www.eyrie.org/~eagle/>



-- 
To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org
with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org

Reply via email to