I am running 10.4.3 Servers that are running as OD Masters and
kerberos is running locally on each server. I am not using
kerberos for any services or authentication, but whenever a mac OS
10.3.9 or 10.4.X clients try to login to a local share point using
AFP they get the kerberos login prompt for the ticket.
Check the AFP authentication settings. I bet it's set to any method.
If you log into a AFP server that has kerberos setup, but the client
has no tickets, it will try to get them.
Just curious, if you have a OD system setup why are you _not_ using
kerb and SSO?