Custom Query (196 matches)


Show under each result:

Results (10 - 12 of 196)

1 2 3 4 5 6 7 8 9 10 11 12 13 14
Ticket Resolution Summary Owner Reporter
#33 fixed Add information on Kerberos logins to scripts to FAQ andersk

(Imported from #548433.)


Hm, this'd be useful in general: "Go look at Scripts faq #N; s/", etc.

Here's some sample text for people to play with, if anyone's interested. Intended to replace the last paragraph of FAQ #41. I used really informal markup; feel free to be un-lazy and make it better / consistent with whatever conventions you have.

If you're trying to log into from home and you don't
have an SSH client on your computer, you can log into from <>, and log
into scripts from there.

You can also log in directly from most personal computers, with the
correct software installed. To connect to from a
Windows computer, install MIT SecureCRT and Kerberos For Win from <

Then, open MIT SecureCRT (from the Start menu). Click the "Quick
Connect" button in the toolbar of the Sessions dialog box that appears
(the second button from the left). Fill out the dialog that appears,
as follows:

Protocol: SSH2
Port: 22
Firewall: None
Username: /Athena Username/

If you are connecting to a group locker, replace /Athena Username/
with the name of the locker.

In the "Authentication" selectbox, scroll down and click on "GSSAPI"
to highlight it. Make sure that the checkbox beside it is checked.
Then, use the black arrows to the right of the box to move "GSSAPI" to
the top of the list of Authentication methods.

Then, click "Connect" to connect to You may be
prompted for your MIT username and password; if so, enter them.

To connect to from a Mac, download and install the MIT
Kerberos Extras from <>. Then,
open "Terminal" (in /Applications/Utilities/), and type:

kinit /Athena Username/
ssh -k /Athena Username/

If you're connecting to a group locker, replace /Athena Username/ with
the name of the locker you want to connect to.

The "-k" flag to ssh doesn't exist for older MacOS X versions. For
these versions and with Apple's default ssh configuration, it is safe
to not use this flag. If you have customized your ssh configuration,
make sure you have "GSSAPIAuthentication yes" and
"GSSAPIDelegateCredentials no" set for

To connect from a Linux (or other UNIX) computer, install ssh and
Kerberos, and set up Kerberos to use the ATHENA.MIT.EDU realm. Many
Linux distributions provide packages that can do this for you. Then,
run the two Mac command-line commands listed above.
#142 fixed Add monitoring for failure of the backend network mitchb

We don't presently have a Nagios test that will alert us if there's a failure of the backend network switch, or the backend interface on an individual server. All the probes for will still pass because they run over the public network.

We should use some plugin to run a 'select 1;' or something similarly trivial on each scripts server.

#195 duplicate Allow connections to the primary from scripts servers adehnert

In all likelihood, fixing this would also lead to fixing (or WONTFIXing) #175. #138 is sort of the inverse of this one.

1 2 3 4 5 6 7 8 9 10 11 12 13 14
Note: See TracQuery for help on using queries.