Just to iron pam_env out. Does it work if you comment out pam_env? We are running a similiar setup, with K5, openafs, and I have never noticed any problems logging in when the AFS tokens have expired. Not even if I wait a week.
Which pam modules are you using except pam-openafs-session? How are the configured? What does your /etc/krb5.conf look like? Have you checked /var/log/auth.log for any hints why you can't log in more than once? -- pam wedges, preventing user login, when homedir is openafs mounted and unreadable https://bugs.launchpad.net/bugs/113586 You received this bug notification because you are a member of Ubuntu Bugs, which is the bug contact for Ubuntu. -- ubuntu-bugs mailing list ubuntu-bugs@lists.ubuntu.com https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs