From mboxrd@z Thu Jan 1 00:00:00 1970 Received: from tb-mx1.topicbox.com (localhost.local [127.0.0.1]) by tb-mx1.topicbox.com (Postfix) with ESMTP id AE6D6E1ECB8 for <9fans@9fans.net>; Mon, 16 Dec 2019 16:40:57 -0500 (EST) (envelope-from fde101@fjrhome.net) Received: from tb-mx1.topicbox.com (localhost [127.0.0.1]) by tb-mx1.topicbox.com (Authentication Milter) with ESMTP id 956D6415937; Mon, 16 Dec 2019 16:40:57 -0500 ARC-Seal: i=1; a=rsa-sha256; cv=none; d=topicbox.com; s=arcseal; t= 1576532457; b=EjCcFEhCiisK9c+KjISAPBKin40bnkh6HjfoynzsjMtTtO7wry /4qpfz9CDb16vF4H0uTf1nMbpAuZI1n/E4QLdCqVd5ctaVDgjZU1fMPi/dVE4Ky5 e0izDVEoMb5Km1SMqTolDL9R/FicpgNzEntW099ESuW9UEMMtSRp6/JN3XulgqYL q7II/ffsUwTUcqNGyM3PnWs+aGQ+gu16A0iDFbGse1WggmebTyb24D69xsR0kt0k OjeTK6V4Y03IEqwgSJfq8SdmX/uNYkibeNPxJ3eeCisPrBXhhJaLMZARYyJOvLNO 3mOgGvVKVNity4l42XF/cIz6qULXta6heGhQ== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d= topicbox.com; h=subject:to:references:from:message-id:date :mime-version:in-reply-to:content-type :content-transfer-encoding; s=arcseal; t=1576532457; bh=evNLJvXj TWVkNBF4pWnUZ5+QDdNlZ31xjQEEdAOeFHQ=; b=Km6WcfD3zFM1PC1cCaNB13Ma WaHrBceJmLrpq8mWAMlzN+eBup5vZklMnoSCQFgTuXFIllvm01CK1f3JNyGhCKoQ wElWgxtiG+nYe9QXdNhC10wuC24mdtgykGaYrZCjj5Bk36+gGjGfYQWG5h94IWGc 2zzSNrOA2CuYrMLkde4PBsUGe7hFNWkYpXughf0PeqnolkM31jcQiiYLra4aQuxA HKHbSJIMWp4tMV8ugd52hJHFcDbYSsr5V5uuDUKFohyjRGWqQ3hXSpIXpI7lyj/s 8tPTSy+caoam5qYSh3hlA+6J+ckisN281ZRmVdwOQXzrP9LiZwSebhxYPlrjsQ== ARC-Authentication-Results: i=1; tb-mx1.topicbox.com; arc=none (no signatures found); dkim=none (no signatures found); dmarc=none policy.published-domain-policy=none policy.applied-disposition=none policy.evaluated-disposition=none (p=none,d=none,d.eval=none) policy.policy-from=p header.from=fjrhome.net; iprev=pass smtp.remote-ip=65.61.218.3 (dpmailmta01-03.doteasy.com); spf=none smtp.mailfrom=fde101@fjrhome.net smtp.helo=dpmailmta01.doteasy.com; x-aligned-from=pass (Address match); x-ptr=fail smtp.helo=dpmailmta01.doteasy.com policy.ptr=dpmailmta01-03.doteasy.com; x-return-mx=pass header.domain=fjrhome.net policy.is_org=yes (MX Record found); x-return-mx=pass smtp.domain=fjrhome.net policy.is_org=yes (MX Record found); x-tls=pass smtp.version=TLSv1.2 smtp.cipher=ECDHE-RSA-AES256-GCM-SHA384 smtp.bits=256/256; x-vs=clean score=0 state=0 Authentication-Results: tb-mx1.topicbox.com; arc=none (no signatures found); dkim=none (no signatures found); dmarc=none policy.published-domain-policy=none policy.applied-disposition=none policy.evaluated-disposition=none (p=none,d=none,d.eval=none) policy.policy-from=p header.from=fjrhome.net; iprev=pass smtp.remote-ip=65.61.218.3 (dpmailmta01-03.doteasy.com); spf=none smtp.mailfrom=fde101@fjrhome.net smtp.helo=dpmailmta01.doteasy.com; x-aligned-from=pass (Address match); x-ptr=fail smtp.helo=dpmailmta01.doteasy.com policy.ptr=dpmailmta01-03.doteasy.com; x-return-mx=pass header.domain=fjrhome.net policy.is_org=yes (MX Record found); x-return-mx=pass smtp.domain=fjrhome.net policy.is_org=yes (MX Record found); x-tls=pass smtp.version=TLSv1.2 smtp.cipher=ECDHE-RSA-AES256-GCM-SHA384 smtp.bits=256/256; x-vs=clean score=0 state=0 X-ME-VSCause: gggruggvucftvghtrhhoucdtuddrgedufedrvddthedgudehfecutefuodetggdotefrod ftvfcurfhrohhfihhlvgemucfhrghsthforghilhdpggftfghnshhusghstghrihgsvgdp uffrtefokffrpgfnqfghnecuuegrihhlohhuthemuceftddtnecunecujfgurhepuffvfh fhkffffgggjggtgfhisehtjeertddtfeejnecuhfhrohhmpedfhfhrrghnkhcuffdrucfg nhhgvghlpdculfhrrddfuceofhguvgdutddusehfjhhrhhhomhgvrdhnvghtqeenucffoh hmrghinhepthhophhitggsohigrdgtohhmnecukfhppeeihedriedurddvudekrdefpddu ledvrdduieekrddutddurdekvddpleekrdduudejrddvhedurdeludenucfrrghrrghmpe hinhgvthepieehrdeiuddrvddukedrfedphhgvlhhopeguphhmrghilhhmthgrtddurdgu ohhtvggrshihrdgtohhmpdhmrghilhhfrhhomhepoehfuggvuddtudesfhhjrhhhohhmvg drnhgvtheqnecuvehluhhsthgvrhfuihiivgeptd X-ME-VSCategory: clean Received-SPF: none (fjrhome.net: No applicable sender policy available) receiver=tb-mx1.topicbox.com; identity=mailfrom; envelope-from="fde101@fjrhome.net"; helo=dpmailmta01.doteasy.com; client-ip=65.61.218.3 Received: from dpmailmta01.doteasy.com (dpmailmta01-03.doteasy.com [65.61.218.3]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by tb-mx1.topicbox.com (Postfix) with ESMTPS for <9fans@9fans.net>; Mon, 16 Dec 2019 16:40:56 -0500 (EST) (envelope-from fde101@fjrhome.net) X-Default-Received-SPF: pass (skip=forwardok (res=PASS)) x-ip-name=192.168.101.82; Received: from dpmailrp02.doteasy.com (unverified [192.168.101.82]) by dpmailmta01.doteasy.com (DEO) with ESMTP id 52465708-1394429 for <9fans@9fans.net>; Mon, 16 Dec 2019 13:40:55 -0800 Received: from dpmail01.doteasy.com (dpmail01.doteasy.com [192.168.101.1]) by dpmailrp02.doteasy.com (8.14.4/8.14.4/Debian-8+deb8u2) with ESMTP id xBGLeqUN028352 for <9fans@9fans.net>; Mon, 16 Dec 2019 13:40:52 -0800 X-SmarterMail-Authenticated-As: fde101@fjrhome.net Received: from Franks-Mac-Pro.local (pool-98-117-251-91.hrbgpa.fios.verizon.net [98.117.251.91]) by dpmail01.doteasy.com with SMTP; Mon, 16 Dec 2019 13:40:30 -0800 Subject: Re: [9fans] Newbie Question To: 9fans@9fans.net References: <8193D9F75F625161CAE42C7A5FA40656@felloff.net> From: "Frank D. Engel, Jr." Message-ID: <90f0dea1-6921-74c5-34c3-a50c9e68acd3@fjrhome.net> Date: Mon, 16 Dec 2019 16:40:24 -0500 User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10.13; rv:60.0) Gecko/20100101 Thunderbird/60.9.1 MIME-Version: 1.0 In-Reply-To: <8193D9F75F625161CAE42C7A5FA40656@felloff.net> Content-Type: text/plain; charset=utf-8; format=flowed Content-Transfer-Encoding: 7bit Content-Language: en-US X-Exim-Id: 90f0dea1-6921-74c5-34c3-a50c9e68acd3 X-Bayes-Prob: 0.0001 (Score 0, tokens from: base:default, @@RPTN) X-Spam-Score: 0.00 () [Hold at 5.00] X-CanIt-Geo: No geolocation information available for 192.168.101.1 X-CanItPRO-Stream: base:default X-Canit-Stats-ID: 011CJEQti - d9375f9c154f - 20191216 X-Scanned-By: CanIt (www . roaringpenguin . com) on 192.168.101.82 X-Originating-IP: 192.168.101.82 Topicbox-Policy-Reasoning: allow: sender is a member Topicbox-Message-UUID: c21d7980-204c-11ea-9cbb-8fc0e700b897 Thank you! When I tried bringing it up as a cpu server with auth enabled it did indeed make it past the errors. I'll see if I can work things out from there. On 12/16/19 2:27 PM, cinap_lenrek@felloff.net wrote: > i believe that this is due to running a with service=terminal. > this causes factotum to be started as a client with no keys in it. > > the p9any auth protocol starts by the server presenting a set of > keys, auth domains and protocols, which you wont have in this > case (no keys there). which is most likely the reason the whole > thing fails. > > if you boot your fileserver with service=cpu, then when factotum starts > it will prompt you for authid and password which will be the credentials > of the hostowner (of the fileserver) which should have to match what you > have on the authentication server. this information can be stored in > nvram to avoid the prompt on boot. > > even if it doesnt match the auth key for (that user) on the authserver, > the fileserver should be able to boot and mount its root filesystem > as factotum talks to itself in this scenario and having the same keys > on both sides. > > its just about to fail when there are no keys at all. > > i hope this makes sense. > > -- > cinap > > ------------------------------------------ > 9fans: 9fans > Permalink: https://9fans.topicbox.com/groups/9fans/Tda6e61e03ce222c0-Mb737a8ba8068f0aae3e426d0 > Delivery options: https://9fans.topicbox.com/groups/9fans/subscription > >