Re: [PATCH 0/3] afs: Fix dynamic root interaction with failing DNS lookups

From: markus . suvanto
Date: Tue Dec 12 2023 - 04:57:11 EST


> > masu@t470 ~ % grep rxrpc /proc/keys
> > 23e16cda I--Q--- 1 3d 3b010000 1001 100 rxrpc afs@xxxxxxxxxxxx: ka
>
> Okay, I see the persistent keyring disappear, but I don't see a key linked
> into my session keyring vanish.

Full log of my commands...

masu@t470 ~ % klist
klist: Credentials cache keyring 'persistent:1001:1001' not found
masu@t470 ~ % keyctl show
Session Keyring
388545754 --alswrv 1001 65534 keyring: _uid_ses.1001
946177719 --alswrv 1001 65534 \_ keyring: _uid.1001
masu@t470 ~ % grep rxrpc /proc/keys
masu@t470 ~ %
masu@t470 ~ %
masu@t470 ~ %
masu@t470 ~ % kinit masu@xxxxxxxxxxxx
Password for masu@xxxxxxxxxxxx:
masu@t470 ~ % aklog-kafs-kdf movesole.com MOVESOLE.COM
masu@t470 ~ %
masu@t470 ~ %
masu@t470 ~ % grep rxrpc /proc/keys

2600d2d5 I--Q--- 1 3d 3b010000 1001 100 rxrpc afs@xxxxxxxxxxxx: ka
masu@t470 ~ % klist
Ticket cache: KEYRING:persistent:1001:1001
Default principal: masu@xxxxxxxxxxxx

Valid starting Expires Service principal
12.12.2023 11.52.47 16.12.2023 11.52.40 afs/movesole.com@xxxxxxxxxxxx
renew until 26.12.2023 11.52.40
12.12.2023 11.52.43 16.12.2023 11.52.40 krbtgt/MOVESOLE.COM@xxxxxxxxxxxx
renew until 26.12.2023 11.52.40
masu@t470 ~ % keyctl show
Session Keyring
388545754 --alswrv 1001 65534 keyring: _uid_ses.1001
946177719 --alswrv 1001 65534 \_ keyring: _uid.1001
637588181 --als-rv 1001 100 \_ rxrpc: afs@xxxxxxxxxxxx
masu@t470 ~ %
masu@t470 ~ %
masu@t470 ~ %
masu@t470 ~ %
masu@t470 ~ % ls /afs/notfound
ls: tiedostoa '/afs/notfound' ei voi käsitellä: Tiedostoa tai hakemistoa ei ole
masu@t470 ~ %
masu@t470 ~ %
masu@t470 ~ %
masu@t470 ~ % klist
klist: Credentials cache keyring 'persistent:1001:1001' not found
masu@t470 ~ % grep rxrpc /proc/keys

masu@t470 ~ % keyctl show
Session Keyring
1025218481 --alswrv 1001 65534 keyring: _uid_ses.1001
322736164 --alswrv 1001 65534 \_ keyring: _uid.1001