Hi,

our system is a Heimdal Kerberos together with an OpenAFS 1.6.0.1 on a Ubuntu 
11.10.

My first attempt was to add myself to the group of administrators:

root@intranet:~#  pts adduser stefan system:administrators -cell in-put.de 
-noauth
pts: Permission denied ; unable to add user stefan to group 
system:administrators

Okay, let's try to create a group for myself:

root@intranet:~#  pts creategroup users -noauth -cell in-put.de
pts: Permission denied ; unable to create group users 

Hm, really no permission?

root@intranet:~# klist
Ticket cache: FILE:/tmp/krb5cc_0
Default principal: ad...@in-put.de

Valid starting     Expires            Service principal
04/23/12 13:31:43  04/23/12 23:31:43  krbtgt/in-put...@in-put.de
        renew until 04/23/12 13:31:43
04/23/12 13:31:51  04/23/12 23:31:43  afs/in-put...@in-put.de
        renew until 04/23/12 13:31:43

root@intranet:~# aklog -d
Authenticating to cell in-put.de (server intranet.in-put.de).
Trying to authenticate to user's realm IN-PUT.DE.
Getting tickets: afs/in-put...@in-put.de
Using Kerberos V5 ticket natively
Identical tokens already exist; skipping.
root@intranet:~# tokens

Tokens held by the Cache Manager:

User's (AFS ID 1) tokens for a...@in-put.de [Expires Apr 23 23:31]
   --End of list--

Why am I not allowed to add a new user or group?

Thanks for any hints.

Stefan

Attachment: smime.p7s
Description: S/MIME Cryptographic Signature

Reply via email to