It is best to delete a Protection Database user entry only if you are removing the complete user account. Use either the uss delete command as described in Deleting Individual Accounts with the uss delete Command, or the pts delete command as described in Removing a User Account.
To remove machine and group entries, use the pts delete command as described in this section. The operation has the following results:
When you delete a machine entry, its name (IP address wildcard) is removed from groups.
When you delete a group entry, its AFS GID appears on ACLs instead of the name. The group-creation quota of the user who created the group increases by one, even if the user no longer owns the group.
To remove obsolete AFS IDs from ACLs, use the fs cleanacl command as described in Removing Obsolete AFS IDs from ACLs.
Verify that you belong to the system:administrators group or own the group you are deleting. If necessary, issue the pts membership command, which is fully described in To display the members of the system:administrators group.
% pts membership system:administrators
Issue the pts delete command to delete one or more entries from the Protection Database.
% pts delete <user or group name or id
>+
where
Is the shortest acceptable abbreviation of delete.
Specifies the IP address or AFS UID of each machine or the name or AFS GID or each group to remove.