Change Requests: Notes and Fixed Issues

The following tables present notes and fixed issues for Appliance Controller 2.0.1.x.

Table 1: Appliance Controller 2.0.1.1

Change Request

Description

HYDRA-2963

Issue: Under some circumstances, very large cluster environments might experience issues due to an aggressive timeout value.

Resolution: The timeout value has been increased.

 

Table 2: Appliance Controller 2.0.1

Change Request

Description

 

KNOWN LIMITATION

Lock recovery is NOT supported for NFSv4 clients running CentOS version 7.4.

Workaround

Verify that all clients are running CentOS versions 6.4, 6.5, 6.6, or 6.7. Only these versions have been validated in supporting lock recovery.

HYDRA-2849

FIXED

Issue: winbind writes spurious messages to /var/log/messages.

Resolution: Added winbind rpc only = yes to the Global section of the smb.conf file to correct this issue.

HYDRA-2748

FIXED

Issue: SMB named streams with Samba 2.6.8 do not work properly in Appliance Controller 2.0.0. Users cannot write data to a file system using macOS Finder when named streams are enabled.

Resolution: Upgrade to Appliance Controller 2.0.1 to resolve this issue.

HYDRA-2633

FIXED

Issue: The commands share delete and nascluster reset fail to remove the cluster ID extended file attributes (xattr). As a result, future share or cluster creations are blocked because of the presence of the xattr.

Resolution: When you delete a share or reset NAS authentication to factory defaults, the xattr is now removed.

HYDRA-2539

FIXED

Issue: If snmpd is enabled, it can log errors verbosely.

Resolution: Changed the default snmpd.conf file to prevent verbose error logging. In addition, changed the snmpd.conf file to prevent the logging of each client connection.

 

Table 3: Appliance Controller 2.0

Change Request

Description

 

KNOWN LIMITATION

If you use DNS load distribution with NFSv3 clients, lock recovery during failover may not be honored.

Workaround

All NFSv3 clients must mount shares through the same predesignated VIP from the VIP pool to ensure safe lock recovery during failover. Do not use the Master VIP as the predesignated VIP.

See NAS Clusters .

HYDRA-1343

NOTE

If you choose to manage user access to SMB shares with ACLs and OpenLDAP authentication — rather than using SMB options such as admin users, valid users, and invalid users — you must enable SID mapping.

After enabling SID mapping, you can disable it if you no longer want to use ACLs with your OpenLDAP server. However, when you disable SID mapping under these circumstances, ACLs that have already been applied to folders and subfolders will remain, and in most cases, will be enforced.

For more information about ACLs and OpenLDAP authentication, see Enable SID Mapping for Full ACL Support.

HYDRA-1565

NOTE

When you upgrade, you may see errors and warnings related to replacing or obsoleting some packages.

Resolution

As long as the upgrade is successful, you can ignore these errors and warnings. They are expected.

HYDRA-1622

NOTE

The Appliance Controller 2.0 release updates Samba packages to 4.6.8. This version of Samba includes security patches to disable non-secure clients. Some older Linux CIFS clients are affected by these security patches, and cannot mount SMB shares.

Resolution

To resolve this issue, we recommend obtaining a newer SMB client for your Linux machines. If that is not possible, then use the following workaround.

Workaround

  1. Log in to the controller console from the NAS cluster's master node. See Access the Appliance Controller Console.
  2. At the prompt, enter the following to update your SMB shares with the smb global ntml auth option:

    share change smb global ntlm auth = yes

    Example

    > share change smb global ntlm auth = yes

    Broadcasting share config-sync to NAS cluster ...

    Waiting for nascluster_share_config_sync to complete on node 10.42.xx.yy

    Share global successfully changed

     

    > share show

    SMB global options: ntlm auth = yes

    2 shares:

    1: tstsmbshare1 | smb | /stornext/snfs1/smbshare | public = no,writable = yes

    2: tstsmbshare2 | smb | /stornext/snfs2/smbshare | public = no,writable = yes

HYDRA-707

FIXED

Issue: Need SMB share options to hide directory structures that users that do not have access to.

Resolution: Added support for hide unreadable and hide unwriteable files SMB share options.

HYDRA-981

FIXED

Issue: SNMP community string character limitations were not being enforced.

Resolution: In Appliance Controller 1.4.1.2, SNMP community string values are limited to no less than 1 and no more than 255 of the following ASCII characters:

  • Lowercase characters (a-z)
  • Uppercase characters (A-Z)
  • Numbers (0-9)
  • Dash (-)
  • Underscore (_)

HYDRA-1005

FIXED

Issue: Need SMB share option to hide dot file attributes.

Resolution: Added support for hide dot files SMB share option.

HYDRA-1191

FIXED

Issue: Upgrades can take longer than anticipated because SMB var/log/samba is not ever cleaned.

Resolution: SMB var/log/samba is now cleaned daily to remove files that are older than 7 days.

HYDRA-1396

FIXED

Issue: A gap in HAProxy stats is occurring with the following error:

2017-03-25-20:00:03.668130 node01 Keepalived_vrrp8826: Process 6789 didn't respond to SIGTERM

Resolution: The Appliance Controller 2.0 contains an update from Keepalived 1.2.13 to Keepalived 1.3.5, which resolves this issue.

HYDRA-1465

FIXED

Issue: Need a way to refresh NAS authentication mappings on-demand to reflect the current status of the LDAP server.

Resolution: The new auth refresh command enables customers to refresh NAS authentication mappings on-demand to reflect the current state of their LDAP server. See Refresh NAS Authentication Mappings On-Demand.

HYDRA-1468

FIXED

Issue: Unable to gather specific SNFS file attributes without manually opening the file.

Resolution: Appliance Controller 2.0 updates enables the SNFS VFS plugin to use the new StorNext CvApis.

HYDRA-1578

FIXED

Issue: ACL SID mapping may not work with LDAP authentication.

Resolution: Upgrade to Appliance Controller 2.0 to resolve this issue.

HYDRA-1606

FIXED

Issue: Appliance Controller does not support advanced options for AD authentication configurations.

Resolution: Appliance Controller 2.0 now supports advanced options for AD authentication configurations. See Apply AD Authentication To NAS.

HYDRA-1781

FIXED

Issue: Need a way to activate or inactivate Unix extensions on SMB shares.

Resolved: Added support for unix extensionsglobal SMB share option.

HYDRA-1802

FIXED

Issue: Need to provide a way to allow / disallow trusted AD domains from accessing the Appliance Controller.

Resolution: Appliance Controller 2.0 now supports an Allow Trusted Domains advanced option. See Apply AD Authentication To NAS.

HYDRA-1991

FIXED

Issue: The Appliance Controller fails to start because postgres is still running.

Resolution: When the Appliance Controller is started, postgres is now restarted if it is already running, resolving this issue.

HYDRA-1992

FIXED

Issue: After NAS failover, the local LDAP configuration may no longer be valid.

Resolution: Upgrade to Appliance Controller 2.0 to resolve this issue.

HYDRA-2113

FIXED

Issue: A large amount of smbd processes may require too much available memory and cause the kernel to panic.

Resolution: The Appliance Controller now supports an upper-limit default of 1200 concurrent smbd processes to resolve this issue.