Kerberos+NFS4

Andreas Hauffe andreas.hauffe at tu-dresden.de
Wed Jul 31 04:00:42 EDT 2013


Hi,

I don't know if this is the right place to ask my question, so sorry if now.

I have installed an Kerberos+LDAP system. The NFS export is done with NFS4. At 
first everthing is fine and a local root of a client is not able to read the 
user data inside the export even after a "su $USERNAME". After this user has 
logged in, the local root is able to read all of the users data after a "su 
$USERNAME" without any password. Even after the logout of the user the local 
root can still access the data. As far as I understood the process, there 
should be no Kerberos ticket available on the client, which is applied by the 
local root. Is this a normal behaviour or a configuration problem?

-- 
Viele Grüße
Andreas Hauffe
Leiter der Arbeitsgruppe "Auslegungsmethoden für Luftfahrzeuge"

----------------------------------------------------------------------------------------------------
Technische Universität Dresden
Institut für Luft- und Raumfahrttechnik / Institute of Aerospace Engineering
Lehrstuhl für Luftfahrzeugtechnik / Chair of Aircraft Engineering

D-01062 Dresden
Germany

phone : +49 (351) 463 38496
fax :  +49 (351) 463 37263
mail : andreas.hauffe at tu-dresden.de
Website : http://tu-dresden.de/mw/ilr/lft
----------------------------------------------------------------------------------------------------



More information about the Kerberos mailing list