== sanity-sec test 72c: child_raise_privileges nodemap property ========================================================== 04:32:20 (1779697940) On MGS 192.168.204.130, mgsnm.rbac = nodemap.mgsnm.rbac=file_perms,quota_ops,byfid_ops oleg430-server: error: invalid ioctl: 000ce049 errno: 1: Operation not permitted oleg430-server: error: nodemap_modify: cannot modify nodemap 'nm_test72c' to param 'admin': value '1': Operation not permitted pdsh@oleg430-client: oleg430-server: ssh exited with exit code 1 oleg430-server: error: invalid ioctl: 000ce05f errno: 1: Operation not permitted oleg430-server: error: nodemap_modify: cannot modify nodemap 'nm_test72c' to param 'rbac': value 'file_perms,quota_ops,byfid_ops,dne_ops': Operation not permitted pdsh@oleg430-client: oleg430-server: ssh exited with exit code 1 oleg430-server: error: invalid ioctl: 000ce061 errno: 1: Operation not permitted oleg430-server: error: nodemap_modify: cannot modify nodemap 'nm_test72c' to param 'child_raise_privileges': value 'trusted,admin': Operation not permitted pdsh@oleg430-client: oleg430-server: ssh exited with exit code 1 oleg430-server: error: invalid ioctl: 000ce060 errno: 1: Operation not permitted oleg430-server: error: nodemap_modify: cannot modify nodemap 'nm_test72c' to param 'deny_mount': value '0': Operation not permitted pdsh@oleg430-client: oleg430-server: ssh exited with exit code 1 On MGS 192.168.204.130, mgsnm.child_raise_privileges = nodemap.mgsnm.child_raise_privileges=trusted,dne_ops oleg430-server: error: invalid ioctl: 000ce05f errno: 1: Operation not permitted oleg430-server: error: nodemap_modify: cannot modify nodemap 'nm_test72c' to param 'rbac': value 'file_perms,quota_ops,byfid_ops,chlg_ops': Operation not permitted pdsh@oleg430-client: oleg430-server: ssh exited with exit code 1 On MGS 192.168.204.130, mgsnm.child_raise_privileges = nodemap.mgsnm.child_raise_privileges=child_raise_privs,trusted,dne_ops nodemap.active=0 nodemap.default.admin_nodemap=0 nodemap.default.audit_mode=1 nodemap.default.banlist=[] nodemap.default.child_raise_privileges=none nodemap.default.deny_mount=0 nodemap.default.deny_unknown=0 nodemap.default.dt_stats= snapshot_time 1779697990.209951323 secs.nsecs start_time 1779693142.986858447 secs.nsecs elapsed_time 4847.223092876 secs.nsecs read_bytes 1 samples [bytes] 0 0 0 0 read 1 samples [usecs] 150 150 150 22500 setattr 30 samples [usecs] 67 36370 46874 1329591258 destroy 77 samples [usecs] 5611 38673 1049547 17715174225 create 2 samples [usecs] 38071 39314 77385 2994991637 statfs 1054 samples [usecs] 6 2951 46535 30981851 nodemap.default.enable_cap_mask=off nodemap.default.exports= [ { nid: 192.168.204.30@tcp, uuid: 5efb8921-959c-409e-8cc9-f84cf1d85340, dev: lustre-MDT0000 }, { nid: 0@lo, uuid: lustre-MDT0000-mdtlov_UUID, dev: lustre-OST0001 }, { nid: 0@lo, uuid: lustre-MDT0000-lwp-OST0001_UUID, dev: lustre-MDT0000 }, { nid: 0@lo, uuid: lustre-MDT0000-mdtlov_UUID, dev: lustre-OST0000 }, { nid: 0@lo, uuid: lustre-MDT0000-lwp-OST0000_UUID, dev: lustre-MDT0000 }, { nid: 0@lo, uuid: lustre-MDT0000-lwp-MDT0000_UUID, dev: lustre-MDT0000 } ] nodemap.default.fileset= [ { primary: /deffset } ] nodemap.default.forbid_encryption=0 nodemap.default.id=0 nodemap.default.map_mode=all nodemap.default.md_stats= snapshot_time 1779697990.210590286 secs.nsecs start_time 1779693126.524741393 secs.nsecs elapsed_time 4863.685848893 secs.nsecs open 21 samples [usecs] 253 4718 39478 124019888 close 21 samples [usecs] 189 1141 9128 4924592 mknod 7 samples [usecs] 1006 4215 17178 52425752 unlink 5 samples [usecs] 1263 2293 9530 18791748 mkdir 2 samples [usecs] 2314 3937 6251 20854565 rmdir 2 samples [usecs] 1214 1420 2634 3490196 getattr 33 samples [usecs] 23 892 4782 2262208 setattr 21 samples [usecs] 265 20874 37379 458728281 getxattr 4 samples [usecs] 69 467 959 324327 statfs 2 samples [usecs] 2 35 37 1229 nodemap.default.rbac=file_perms,dne_ops,quota_ops,byfid_ops,chlg_ops,fscrypt_admin,server_upcall,ignore_root_prjquota,hsm_ops,pool_quota_ops,lqa_quota_ops,projid_set,foreign_ops nodemap.default.readonly_mount=0 nodemap.default.squash_gid=65534 nodemap.default.squash_projid=65534 nodemap.default.squash_uid=65534 nodemap.default.trusted_nodemap=0 nodemap.mgsnm.admin_nodemap=0 nodemap.mgsnm.audit_mode=1 nodemap.mgsnm.banlist=[] nodemap.mgsnm.child_raise_privileges=child_raise_privs,trusted,dne_ops nodemap.mgsnm.deny_mount=1 nodemap.mgsnm.deny_unknown=0 nodemap.mgsnm.enable_cap_mask=off nodemap.mgsnm.exports=[] nodemap.mgsnm.fileset= [ ] nodemap.mgsnm.forbid_encryption=0 nodemap.mgsnm.gssonly_identification=0 nodemap.mgsnm.id=68 nodemap.mgsnm.idmap=[] nodemap.mgsnm.map_mode=all nodemap.mgsnm.offset= { start_uid: 0, limit_uid: 0, start_gid: 0, limit_gid: 0, start_projid: 0, limit_projid: 0 } nodemap.mgsnm.parent= nodemap.mgsnm.ranges=[] nodemap.mgsnm.rbac=file_perms,quota_ops,byfid_ops nodemap.mgsnm.readonly_mount=0 nodemap.mgsnm.sepol= nodemap.mgsnm.squash_gid=65534 nodemap.mgsnm.squash_projid=65534 nodemap.mgsnm.squash_uid=65534 nodemap.mgsnm.trusted_nodemap=0 nodemap.nm_test72c.admin_nodemap=0 nodemap.nm_test72c.audit_mode=1 nodemap.nm_test72c.banlist=[] nodemap.nm_test72c.child_raise_privileges=child_raise_privs,admin,trusted,dne_ops nodemap.nm_test72c.deny_mount=1 nodemap.nm_test72c.deny_unknown=0 nodemap.nm_test72c.enable_cap_mask=off nodemap.nm_test72c.exports=[] nodemap.nm_test72c.fileset= [ ] nodemap.nm_test72c.forbid_encryption=0 nodemap.nm_test72c.gssonly_identification=0 nodemap.nm_test72c.id=71 nodemap.nm_test72c.idmap=[] nodemap.nm_test72c.map_mode=all nodemap.nm_test72c.offset= { start_uid: 0, limit_uid: 0, start_gid: 0, limit_gid: 0, start_projid: 0, limit_projid: 0 } nodemap.nm_test72c.parent=mgsnm nodemap.nm_test72c.ranges=[] nodemap.nm_test72c.rbac=file_perms,quota_ops,byfid_ops nodemap.nm_test72c.readonly_mount=0 nodemap.nm_test72c.sepol= nodemap.nm_test72c.squash_gid=65534 nodemap.nm_test72c.squash_projid=65534 nodemap.nm_test72c.squash_uid=65534 nodemap.nm_test72c.trusted_nodemap=0