[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

[LDM #TCW-702523]: downstream LDM server not receiving all data (e.g. nexrad) from local LDM/NOAAPORT ingest systems



Gregg,

> The LDM software is installed in an account with the username "ldmcp", not
> "ldm", thus that is what "ldmcp" is.

Interesting.

> Sorry about my typo with suid and setuid.  Info you requested is below.
> 
> Thanks,
> Gregg
> 
> [ldmcp@sbn2 noaaport]$ *df ~ldm/bin*
> df: ‘/users/ldm/bin’: Permission denied
> [ldmcp@sbn2 noaaport]$
> [ldmcp@sbn2 noaaport]$ *df ~ldmcp/bin*
> Filesystem                 1K-blocks     Used Available Use% Mounted on
> /dev/mapper/rhel_sbn2-home 183534020 48725180 134808840  27% /home
> [ldmcp@sbn2 noaaport]$
> [ldmcp@sbn2 noaaport]$
> [ldmcp@sbn2 noaaport]$ *mount  | grep suid*
> sysfs on /sys type sysfs (rw,no*suid*,nodev,noexec,relatime)
> proc on /proc type proc (rw,no*suid*,nodev,noexec,relatime)
> devtmpfs on /dev type devtmpfs (rw,no*suid*
> ,size=16449484k,nr_inodes=4112371,mode=755)
> securityfs on /sys/kernel/security type securityfs (rw,no*suid*
> ,nodev,noexec,relatime)
> tmpfs on /dev/shm type tmpfs (rw,no*suid*,nodev)
> devpts on /dev/pts type devpts (rw,no*suid*
> ,noexec,relatime,gid=5,mode=620,ptmxmode=000)
> tmpfs on /run type tmpfs (rw,no*suid*,nodev,mode=755)
> tmpfs on /sys/fs/cgroup type tmpfs (ro,no*suid*,nodev,noexec,mode=755)
> cgroup on /sys/fs/cgroup/systemd type cgroup (rw,no*suid*
> ,nodev,noexec,relatime,xattr,release_agent=/usr/lib/systemd/systemd-cgroups-agent,name=systemd)
> pstore on /sys/fs/pstore type pstore (rw,no*suid*,nodev,noexec,relatime)
> cgroup on /sys/fs/cgroup/pids type cgroup (rw,no*suid*
> ,nodev,noexec,relatime,pids)
> cgroup on /sys/fs/cgroup/cpu,cpuacct type cgroup (rw,no*suid*
> ,nodev,noexec,relatime,cpuacct,cpu)
> cgroup on /sys/fs/cgroup/perf_event type cgroup (rw,no*suid*
> ,nodev,noexec,relatime,perf_event)
> cgroup on /sys/fs/cgroup/net_cls,net_prio type cgroup (rw,no*suid*
> ,nodev,noexec,relatime,net_prio,net_cls)
> cgroup on /sys/fs/cgroup/blkio type cgroup (rw,no*suid*
> ,nodev,noexec,relatime,blkio)
> cgroup on /sys/fs/cgroup/freezer type cgroup (rw,no*suid*
> ,nodev,noexec,relatime,freezer)
> cgroup on /sys/fs/cgroup/hugetlb type cgroup (rw,no*suid*
> ,nodev,noexec,relatime,hugetlb)
> cgroup on /sys/fs/cgroup/memory type cgroup (rw,no*suid*
> ,nodev,noexec,relatime,memory)
> cgroup on /sys/fs/cgroup/cpuset type cgroup (rw,no*suid*
> ,nodev,noexec,relatime,cpuset)
> cgroup on /sys/fs/cgroup/devices type cgroup (rw,no*suid*
> ,nodev,noexec,relatime,devices)
> tmpfs on /run/user/268 type tmpfs (rw,no*suid*
> ,nodev,relatime,size=3293260k,mode=700,uid=268,gid=20)
> tmpfs on /run/user/1000 type tmpfs (rw,no*suid*
> ,nodev,relatime,size=3293260k,mode=700,uid=1000,gid=1000)
> [ldmcp@sbn2 noaaport]$

> That looks OK: the partition that LDM "bin" is in appears to honor the setuid 
> bit.
> Also, when I start ldm, before the noaaportIngester processes exit out, if
> I run the ps -ef command the noaaportIngester processes are running under
> root, see below.

That's as it should be.

Please send me the file "/etc/security/limits.conf".

Regards,
Steve Emmerson

Ticket Details
===================
Ticket ID: TCW-702523
Department: Support LDM
Priority: Normal
Status: Closed
===================
NOTE: All email exchanges with Unidata User Support are recorded in the Unidata 
inquiry tracking system and then made publicly available through the web.  If 
you do not want to have your interactions made available in this way, you must 
let us know in each email you send to us.