LinuxQuestions.org
Share your knowledge at the LQ Wiki.
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Networking
User Name
Password
Linux - Networking This forum is for any issue related to networks or networking.
Routing, network cards, OSI, etc. Anything is fair game.

Notices


Reply
  Search this Thread
Old 01-16-2014, 05:42 PM   #1
woldeman
LQ Newbie
 
Registered: Jan 2014
Location: Netherlands
Distribution: AIX / Various Linux distro's
Posts: 2

Rep: Reputation: Disabled
Question NFS cannot mount AIX export on Centos


Dear community,

I need help.
I'm unable to mount an NFS share exported from AIX 5.3 on a Centos 5.8 client, due to firewall restrictions.
The problem seems to be a firewall that does not allow "low" portnumbers (< 1024).
The NFS share can be mounted on other machines in the same network segment, no problems there.

The AIX machine (exporting side) has IP address 192.168.5.71, the other side is Centos 5.8 (Client) with IP address 10.101.28.49. I've captured packets on both sides using "tcpdump -nn host <hostname of the other end>" while trying to mount the NFS export.

tcpdump on 192.168.5.71:
0:01:40.650752 IP 192.168.5.71.65332 > 10.101.28.49.60468: udp 24
10:01:40.658020 IP 10.101.28.49.976 > 192.168.5.71.65332: udp 128
10:01:40.673618 IP 192.168.5.71.65332 > 10.101.28.49.976: udp 88
no more packets seen after this

tcpdump on 10.101.28.49:
10:01:46.261408 IP 192.168.5.71.65332 > 10.101.28.49.60468: UDP, length 24
10:01:46.261555 IP 10.101.28.49.976 > 192.168.5.71.65332: UDP, length 128
10:01:46.284283 IP 192.168.5.71.65332 > 10.101.28.49.976: UDP, length 88
10:01:46.289282 IP 10.101.28.49.3 > 192.168.5.71.2049: 0 null
10:01:49.289047 IP 10.101.28.49.3 > 192.168.5.71.2049: 0 null
10:01:55.289285 IP 10.101.28.49.3 > 192.168.5.71.2049: 0 null
10:02:07.288761 IP 10.101.28.49.3 > 192.168.5.71.2049: 0 null
10:02:31.288694 IP 10.101.28.49.3 > 192.168.5.71.2049: 0 null
10:03:19.288574 IP 10.101.28.49.3 > 192.168.5.71.2049: 0 null
the mount command times out with "Input/Output error" after about 2 minutes

It can be seen that during the first 3 packets, the machines are talking to each other.
Then, when the client 10.101.28.49 is asking for the mount (last 6 packets), these packets are not seen on 192.168.5.71.

On the Centos side, I would like to force the portnumbers for finalizing the connection to be >= 1024, but I'm not sure where this is done.

Does the server tell the client which ports to use (through portmapper or so), or is there some config file on Centos where this can be set up?

Any suggestion is welcome. Let me know if you need more details.
Please forgive my ignorance. Within one network segment NFS just always worked.
Now that I have to hop to other networks and firewalls, I'm at a loss.


Thanks in advance :-)
Willy
 
Old 01-17-2014, 09:12 AM   #2
woldeman
LQ Newbie
 
Registered: Jan 2014
Location: Netherlands
Distribution: AIX / Various Linux distro's
Posts: 2

Original Poster
Rep: Reputation: Disabled
Solved

We managed to get our network operator to adjust the firewall.
The firewall now allows "low" (<1024) ports to connect to the NFS server port 2049. That solved the problem.
There are more then one ways to get to Rome.
 
  


Reply


Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
how to mount a nfs mount from linux client to AIX nfs server dennyqian AIX 13 04-12-2016 12:30 AM
NFS mount point mount as readonly on AIX davinders Linux - Server 1 09-25-2011 01:23 PM
nfs export and loop mount problem thomasd Linux - Networking 9 06-01-2010 02:47 PM
NFS:How can I export a directory which is mount from other's walkinmud Linux - Networking 2 05-25-2006 05:23 AM
smb mount -> nfs export wie20345 Linux - Networking 3 02-12-2005 03:09 PM

LinuxQuestions.org > Forums > Linux Forums > Linux - Networking

All times are GMT -5. The time now is 04:20 PM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration