pam-afs-session 2.3

The main fix in this release is that pam-afs-session now honors KRB5CCNAME set in the general environment if it is set and there is no KRB5CCNAME in the PAM environment. Previously, in that case it would skip running aklog; now, it exports that environment variable to aklog and runs it. This allows users to get tokens in situations where they're reusing an existing ticket cache without doing a new Kerberos authentication, such as passwordless sudo.

You can get the latest version from the pam-afs-session distribution page.

Posted: 2011-06-07 14:23

