From: Bryan Schumaker <bjschuma@gmail.com>
To: Brian De Wolf <bldewolf@csupomona.edu>
Cc: Linux NFS list <linux-nfs@vger.kernel.org>
Subject: Re: NFS uses wrong domain in SETATTR
Date: Thu, 15 Aug 2013 13:25:55 -0400 [thread overview]
Message-ID: <520D0F23.5070201@gmail.com> (raw)
In-Reply-To: <20130806195327.71323541@csupomona.edu>
On 08/06/2013 10:53 PM, Brian De Wolf wrote:
> On Tue, 6 Aug 2013 13:07:49 -0700
> Bryan Schumaker <bjschuma@gmail.com> wrote:
>
>> Hi Brian,
>>
>> I'm sorry it took so long to reply to you, but you haven't been
>> forgotten! I've set up kerberos using freeipa on my own test system
>> but I haven't been able to reproduce the bug you're seeing. I had it
>> working by using my kerberos domain set in /etc/idmap.conf and I saw
>> the new domain go over the wire when I changed it in idmap.conf. Do
>> I need to do anything more to mimic your setup?
>>
>
> Thanks for responding! It seems like DNS might be where the wrong
> kerberos domain is coming from. Is your test client in the same domain
> as your kerberos realm? My clients aren't, and the subdomain they're
> in is what is sent in the NFS requests.
>
> I was able to test this by preferring files for hosts in nsswitch.conf
> and overriding the host's name in /etc/hosts. Normally the host is
> under unx.csupomona.edu. Moving the host to csupomona.edu in hosts
> (and rebooting) causes chgrp to start working. When I revert the
> nsswitch and hosts changes chgrp keeps working until another reboot.
>
> I hope this helps you reproduce this issue. Let me know if there is
> any other information you need.
>
Have you made sure to reboot or restart idmapd after making changes to /etc/idmap.conf? The only time I've been able to reproduce this is when the config file has been changed but not reloaded.
Bryan
next prev parent reply other threads:[~2013-08-15 17:33 UTC|newest]
Thread overview: 5+ messages / expand[flat|nested] mbox.gz Atom feed top
2013-07-19 0:41 NFS uses wrong domain in SETATTR Brian De Wolf
2013-08-06 20:07 ` Bryan Schumaker
2013-08-07 2:53 ` Brian De Wolf
2013-08-15 17:25 ` Bryan Schumaker [this message]
2013-08-16 1:40 ` Brian De Wolf
Reply instructions:
You may reply publicly to this message via plain-text email
using any one of the following methods:
* Save the following mbox file, import it into your mail client,
and reply-to-all from there: mbox
Avoid top-posting and favor interleaved quoting:
https://en.wikipedia.org/wiki/Posting_style#Interleaved_style
* Reply using the --to, --cc, and --in-reply-to
switches of git-send-email(1):
git send-email \
--in-reply-to=520D0F23.5070201@gmail.com \
--to=bjschuma@gmail.com \
--cc=bldewolf@csupomona.edu \
--cc=linux-nfs@vger.kernel.org \
/path/to/YOUR_REPLY
https://kernel.org/pub/software/scm/git/docs/git-send-email.html
* If your mail client supports setting the In-Reply-To header
via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line
before the message body.
This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.