| Summary: | Showmount command not working (anymore) | ||
|---|---|---|---|
| Product: | Mageia | Reporter: | Herman Viaene <herman.viaene> |
| Component: | RPM Packages | Assignee: | Mageia Bug Squad <bugsquad> |
| Status: | RESOLVED FIXED | QA Contact: | |
| Severity: | normal | ||
| Priority: | Normal | CC: | lewyssmith |
| Version: | 7 | ||
| Target Milestone: | --- | ||
| Hardware: | All | ||
| OS: | Linux | ||
| Whiteboard: | |||
| Source RPM: | CVE: | ||
| Status comment: | |||
|
Description
Herman Viaene
2020-02-21 15:09:42 CET
Except that there has not been an nfs-utils (or rpcbind) update. So the way showmount works is, first it sends a request to port 111 of the server (rpcbind) and asks it what port rpc.mountd is running on, and the server responds with the port number. Then it queries rpc.mountd on that port number, which returns the list of NFS shares. You should check your firewall rules and check this communication with tcpdump or wireshark and see what's going wrong. On the client the firewall is completely open, and on the server, is NFS server allowed. I don't know what you expect there since the actual NFS sharing works. On the server, if the port 111 (rpcbind) and the port rpc.mountd is using (you can see with netstat -ntlp | grep mountd) isn't open, showmount won't work. # netstat -ntlp | grep mountd tcp 0 0 0.0.0.0:20048 0.0.0.0:* LISTEN 5196/rpc.mountd and # netstat -ntlp | grep 111 tcp 0 0 0.0.0.0:111 0.0.0.0:* LISTEN 1/init Is that normal???? I have in /etc/shorewall/rules0drakx: ACCEPT net fw udp 53,111,2049,4002,4001,4003,4004,137,138,139,445,1024:1100,631,2048 - ACCEPT net fw icmp 8 - ACCEPT net fw tcp 80,443,53,22,20,21,111,2049,4002,4001,4003,4004,137,138,139,445,1024:1100,631,5900:5902,6566,2048 Yeah the 111 from 1/init comes from rpcbind.socket, that's normal. You don't have 20048 open, which is why showmount doesn't work. I'm not sure why you have 2048 open. Maybe it was a typo for 20048. Anyway, I think we've solved this one (unless some Mageia tool was responsible for the typo'd port number). Gosh, thank you DavidW for the rapid & informed replies. Herman, imagine that you will try the correction from the previous comment, and report back. CC:
(none) =>
lewyssmith That did it, although I cann't imagine or remember I had to open up that port in the past. Glad it is OK. Status:
NEW =>
RESOLVED |