NFS and firewall in Fedora 8 environment
1 Can somebody explain the difference between PORTMAP and RPCbind ?
2 When I disable IPtables from the command line, then NFS functions
3 When (with IPtables started) I configure the firewall from the GUI tool (System --> Administration --> Firewall) to allow NFS as trusted service, and this is done of BOTH client and NFS server machine) then I get the famous " no route to host " error.
Then I am also unsure how NFS works in Fedora 8... is RPCbind something new or what is it ?
Do the nfs ports have to configured as static ?
I have read and looked around for docs and howto's etc. but I can not find any explanations or clear directives regarding this issue.
Can you please help ?
Portmap "dynamically" assigns ports for NFS which makes firewall configurations difficult. This can be adjusted with the /etc/sysconfig/nfs file. Open the /etc/sysconfig/nfs and uncomment/add these entries...
Restart nfs...sometimes this isn't enough and you have to reboot.
sorry for the late reply...
So I am attempting to follow your instructions and run into a question:
After locking the ports in /etc/sysconfig/nfs ... did you not mean to write "system-config-securitylevel" to edit
because I don't see anywhere where I could make changes in "system-config-network" ...
..that's what I figured, a typo.
So now I am at the part where I ought to do:
[root@veda1201 ~]# chkconfig nfs on
[root@veda1201 ~]# chkconfig portmap on
error reading information on service portmap: No such file or directory
[root@veda1201 ~]# chkconfig rpcbind on
as you see... portmap does not respond, I guess it isn't installed but rpcbind seems to respond.
So the portmap service is NOT running on my Fedora 8 system. That is where my original question sort of comes in, which was if RPCBind is simply a rename of PORTMAP... and it doesn't seem to be. There seems to be more to it...
Where do I go from here ? Is this the way it should be or am I barking up the wrong tree ?
Thanks for your continued help - really appreciate it !
Also make sure the following is on/enabled...
What is the output of...
grep -i rpcbind /etc/services
sunrpc 111/tcp portmapper rpcbind # RPC 4.0 portmapper TCP
sunrpc 111/udp portmapper rpcbind # RPC 4.0 portmapper UDP
|All times are GMT -5. The time now is 06:39 PM.|