Le 22/03/13 20:42, Jim Klimov a écrit :
On 2013-03-22 19:40, Richard PALO wrote:
scratching my head trying to debug an issue with getcwd on an nfs mount,
and I'm at a loss already as to the failure case with the following
butt-simple program:
I had similar behavior with other programs, often involving NFS-mounted
directories with NFSv4 ACLs mentioning user IDs not known to this client
(i.e. fileserver is integrated with MSAD, and a client is not), with
non-readable (only executable) /export/home basedirs or homedirs of
other users with such POSIX protection.
BTW, your local root (after elevation) may become a nobody on the
server, causing the permission denial. This is a likely setup for
NFS-served homedirs...
HTH,
//Jim
I set others back to execute only on /home/richard/src/..
and have set the following:
richard@x3200:~/src$ /usr/bin/ls -ladV ..
drwxr-x--x 88 richard staff 314 mars 24 09:26 ..
owner@:rwxp--aARWcCos:-------:allow
group@:r-x---a-R-c--s:-------:allow
everyone@:--x---a-R-c--s:-------:allow
..
richard@x3200:~$ zfs get sharenfs dpool/export/home
NAME PROPERTY VALUE SOURCE
dpool/export/home sharenfs nosuid,[email protected]/24,[email protected]/24
local
that seemed to allow the operation to complete as well,
and I guess in an NFS environment necessary for networked root access.
I did notice another anomalie, though...
I set nosuid above (apparently equivalent to nosetuid and nodevices),
but I see the following on the client, after a what is always a REAL
LONG (minute or two) INITIAL LOGIN.
richard@omni1:~$ mount
...
/home/richard on x3200:/dpool/export/home/richard
remote/read/write/setuid/devices/xattr/dev=8600001 on dim. mars 24 09:26:08 2013
the client seems to ignore nosuid=true
BTW, I gathered from /etc/default/nfs that sec=sys is by default.
As for the long initial login, I presume it has to do with DNS (?).
Is there anyway to calm this a bit, at least in this case where it's the
local network with everything in /etc/hosts and /etc/netmasks?
I set nfsmapid_domain, but it doesn't seem to help here.
-------------------------------------------
illumos-discuss
Archives: https://www.listbox.com/member/archive/182180/=now
RSS Feed: https://www.listbox.com/member/archive/rss/182180/21175430-2e6923be
Modify Your Subscription:
https://www.listbox.com/member/?member_id=21175430&id_secret=21175430-6a77cda4
Powered by Listbox: http://www.listbox.com