>
>>#--lavr ALLOW NFS
>>${fwcmd} add НОМЕР allow tcp from ${nfs_client} to ${nfsserver} 1110,2049
>>${fwcmd} add НОМЕР allow udp from ${nfs_client} to ${nfsserver} 1110,2049
>>
>
>Не работает такая конструкция всё равно. Обращение идёт всё равно на произвольный
>порт, когда на 9888, когда на 1004...
>
>>только зачем это? /etc/exports не достаточно?
>
>Не достаточно. Сеть не доверенная, машина не доверенная...
>
>>grep nfs /etc/services
>>man mountd
>>man nfsd
>
>Читал, там про решение ни слова
>
>>man mount_nfs (на предмет options)
>
>если монтировать с опцией -o port=1110 то сразу же падает с ошибкой
>
читай RFC по NFS
[unix1]~ > ipfw l | grep 1110
40500 allow tcp from 159.93.17.100 to 159.93.17.121 1110,2049
40500 allow tcp from 159.93.17.177 to 159.93.17.121 1110,2049
40500 allow tcp from 159.93.17.122 to 159.93.17.121 1110,2049
40500 allow tcp from 159.93.17.51 to 159.93.17.121 1110,2049
40500 allow tcp from 159.93.25.119 to 159.93.17.121 1110,2049
40500 allow tcp from 159.93.25.120 to 159.93.17.121 1110,2049
40500 allow udp from 159.93.25.119 to 159.93.17.121 1110,2049
40501 allow udp from 159.93.17.100 to 159.93.17.121 1110,2049
40501 allow udp from 159.93.17.177 to 159.93.17.121 1110,2049
40501 allow udp from 159.93.17.122 to 159.93.17.121 1110,2049
40501 allow udp from 159.93.17.51 to 159.93.17.121 1110,2049
40501 allow udp from 159.93.25.120 to 159.93.17.121 1110,2049
50500 deny tcp from any to 159.93.17.121 1110,2049
50500 deny tcp from any to 159.93.25.88 1110,2049
50500 deny tcp from any to 159.93.17.129 1110,2049
50501 deny udp from any to 159.93.17.121 1110,2049
50501 deny udp from any to 159.93.25.88 1110,2049
50501 deny udp from any to 159.93.17.129 1110,2049
[unix1]~ >
mammoth:~ > showmount -e unix1
Export list for unix1:
/pub/ftp/1 vvm.jinr.dubna.su,l4jinr.jinr.dubna.su,ccpc4.jinr.dubna.su,pc1.jinr.dubna.su,wnct177.jinr.dubna.su,mammoth.jinr.dubna.su
/pub/ftp/2 vvm.jinr.dubna.su,l4jinr.jinr.dubna.su,ccpc4.jinr.dubna.su,pc1.jinr.dubna.su,wnct177.jinr.dubna.su,mammoth.jinr.dubna.su
/pub/ftp/3 vvm.jinr.dubna.su,l4jinr.jinr.dubna.su,ccpc4.jinr.dubna.su,pc1.jinr.dubna.su,wnct177.jinr.dubna.su,mammoth.jinr.dubna.su
/pub/ftp/4 vvm.jinr.dubna.su,ccpc4.jinr.dubna.su,mammoth.jinr.dubna.su
/pub/ftp/incoming/moviez pc1.jinr.dubna.su,l4jinr.jinr.dubna.su,wnct177.jinr.dubna.su,mammoth.jinr.dubna.su
/pub/ftp/incoming/moviez/incoming1 pc1.jinr.dubna.su,l4jinr.jinr.dubna.su,wnct177.jinr.dubna.su,mammoth.jinr.dubna.su
/pub/ftp/incoming/moviez/incoming2 pc1.jinr.dubna.su,l4jinr.jinr.dubna.su,wnct177.jinr.dubna.su,mammoth.jinr.dubna.su
mammoth:~ >
sunct2:/home/lavr> nslookup -q=a sunct2.jinr.ru.
Server: sunct0.jinr.ru
Address: 159.93.17.130
Name: sunct2.jinr.ru
Address: 159.93.17.89
sunct2:/home/lavr> showmount -e unix1
showmount: unix1: RPC: Rpcbind failure - RPC: Timed out
sunct2:/home/lavr>