[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

[LDM #UNJ-889614]: portmapper/rpc issues with the ldm



Ryan,

> I am having a problem connecting/ldmping upstream hosts through my
> server (wx.ifa.hawaii.edu), particularly an ldm outside our local
> network.  i can, however, ldmping and get data from another ldm
> within our network (mkwc2.ifa.hawaii.edu).  i can also ldmping
> wx.ifa.hawaii.edu from uila.soest.hawaii.edu, but not the other way
> around (ldmping mkwc2 to and from uila is fine).  for example i get
> the following message if i try to ldmping uila from wx:
> 
> Feb 08 03:59:39 INFO:      State    Elapsed Port
> Remote_Host           rpc_stat
> Feb 08 03:59:39 INFO: Resolving uila.soest.hawaii.edu to
> 128.171.151.63 took 0.002595 seconds
> Feb 08 03:59:39 ERROR:  ADDRESSED   0.020600    0
> uila.soest.hawaii.edu  RPC: Unable to receive; errno = Connection
> reset by peer
> Feb 08 04:00:14 ERROR:      NAMED  10.000457    0
> uila.soest.hawaii.edu  can't contact portmapper: RPC: Timed out
> Feb 08 04:00:39 INFO: Resolving uila.soest.hawaii.edu to
> 128.171.151.63 took 0.002156 seconds
> Feb 08 04:00:39 ERROR:  ADDRESSED   0.019489    0
> uila.soest.hawaii.edu  RPC: Unable to receive; errno = Connection
> reset by peer
> Feb 08 04:01:14 ERROR:      NAMED  10.000650    0
> uila.soest.hawaii.edu  can't contact portmapper: RPC: Timed out
> 
> to sum:
> ldmping uila.soest.hawaii.edu from wx.ifa.hawaii.edu -- i get the
> above message
> ldmping wx.ifa.hawaii.edu from uila.soest.hawaii.edu -- fine
> ldmping mkwc2.ifa.hawaii.edu to/from wx.ifa.hawaii.edu -- fine
> ldmping mkwc2.ifa.hawaii.edu to/from uila.soest.hawaii.edu -- fine
> 
> i have access to uila.soest.hawaii.edu, so i know their ldmd.conf
> file allows both of our servers to access it.  i am guessing there is
> some problem with the firewall/network within the wx.ifa.hawaii.edu
> subnet, as i have tried most, if not all, typical/logical solutions?
> any help here would be greatly appreciated as i don't know how much
> longer the mkwc2 server will last.
> 
> thanks for your time.

It definitely sounds like a bad firewall rule between wx.ifa.hawaii.edu and 
uila.soest.hawaii.edu (possibly on uila.soest.hawaii.edu) is causing the 
problem.  You can verify this by using the traceroute(1) utility on 
wx.ifa.hawaii.edu to make a TCP connection to port 388 on 
uila.soest.hawaii.edu.  For example

[root@gilda ~]# traceroute -T -p 388 uila.soest.hawaii.edu
traceroute to uila.soest.hawaii.edu (128.171.151.63), 30 hops max, 60 byte 
packets
 1  flra-n156.unidata.ucar.edu (128.117.156.253)  0.334 ms  0.405 ms  0.439 ms
 2  tcom-gs-1-n243-80.ucar.edu (128.117.243.85)  0.473 ms  0.560 ms  0.586 ms
 3  nlrb-frgp.frgp.net (192.43.217.113)  1.271 ms  1.306 ms  1.386 ms
 4  frgp-nlr.frgp.net (192.43.217.138)  2.570 ms  2.564 ms  2.547 ms
 5  seat-denv-58.layer3.nlr.net (216.24.186.7)  30.976 ms  31.062 ms  31.046 ms
 6  aarnet-2-lo-jmb-706.sttlwa.pacificwave.net (207.231.240.4)  29.684 ms  
29.760 ms  29.769 ms
 7  so-1-0-0.bb1.a.hnl.aarnet.net.au (202.158.194.109)  81.472 ms  81.665 ms  
81.623 ms
 8  uh-m120-aarnet-10gig.uhnet.net (205.166.205.145)  81.592 ms  81.497 ms  
81.502 ms
 9  128.171.64.186 (128.171.64.186)  81.620 ms  81.707 ms  81.719 ms
10  * * *
11  * * *
12  uila.soest.hawaii.edu (128.171.151.63)  81.871 ms  81.841 ms  81.776 ms

The above means that my workstation can connect to port 388 on 
uila.soest.hawaii.edu.  What does yours show.

> aloha,
> ryan lyman
> 
> 
> -----------------------------------------------------------------------
> Ryan Lyman
> Forecast Meteorologist
> Mauna Kea Weather Center
> (808) 932-2323

Regards,
Steve Emmerson

Ticket Details
===================
Ticket ID: UNJ-889614
Department: Support LDM
Priority: Normal
Status: Closed