Kerberos Tickets Are Destroyed on Share Ejection

Originator:broccardo
Number:rdar://8114674 Date Originated:6/21/10
Status:Open Resolved:
Product:Mac OS X Product Version:10.6.4/build 10f569
Classification:Other Bug Reproducible:Always
 
Summary: 
Kerberos TGTs are automatically destroyed when a network share, which had previously been mounted using the Kerberos TGT, is unmounted in the Finder if ticket was originally generated using Ticket Viewer.app. If ticket was originally generated using the command line, then behavior is absent.

To duplicate:
1. Use Ticket Viewer.app to authenticate against a realm and get a TGT.
2. In the Finder, user Connect to Server to mount a share that requires Kerberos authentication. Use the share normally.
3. In the Finder, disconnect from the server. If the behavior is present, if you return to Ticket Viewer, the TGT will be gone.

If you use kinit from the command line to authenticate and get a TGT, the ticket remains even after the share has been unmounted.

UPDATE
Corrected in 10.7. Fix will _not_ be backported to 10.6

Comments


Please note: Reports posted here will not necessarily be seen by Apple. All problems should be submitted at bugreport.apple.com before they are posted here. Please only post information for Radars that you have filed yourself, and please do not include Apple confidential information in your posts. Thank you!