Revoked keyring causes a user's key quota to fill with unusable, unfreeable keys

Solution Verified - Updated -

Issue

  • A process accessing a cifs share with krb authentication stalls with "CIFS VFS: Send error in SessSetup = -122" messages logged by the kernel.
  • A process who's session keyring has been revoked creates an unfreeable key when access to cifs and requests a key.

Environment

  • Red Hat Enterprise Linux 6
    • kernels prior to kernel-2.6.32-573.18.1.el6
  • Red Hat Enterprise Linux 7
    • kernels up to at least kernel-3.10.0-330.el7
  • cifs with kerberose-based authentication

Subscriber exclusive content

A Red Hat subscription provides unlimited access to our knowledgebase of over 48,000 articles and solutions.

Current Customers and Partners

Log in for full access

Log In
Close

Welcome! Check out the Getting Started with Red Hat page for quick tours and guides for common tasks.