Mailing List Archives
Authenticated access
|
|
|
[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
Re: [Condor-users] Initial installation - I don't understand whythejob cannot write its own file?
- Date: Tue, 1 Aug 2006 15:53:30 +0100
- From: "Atwood, Robert C" <r.atwood@xxxxxxxxxxxxxx>
- Subject: Re: [Condor-users] Initial installation - I don't understand whythejob cannot write its own file?
I read this text on some other page, my interpretation indicated that
setting UID_DOMAIN = * on each machine should have allowed jobs to run
as the submitting user, but it did not.
The master machine has 2 interfaces, the 10.x.x.x. interface is
specified in the config file with NETWORK_INTERFACE , so why isn't the
.beowulf.cluster domain valid for this purpose?
Anyways I have to specifiy TRUST_UID_DOMAIN = true as well. (not
mentioned in that text!)
-----Original Message-----
From: condor-users-bounces@xxxxxxxxxxx
[mailto:condor-users-bounces@xxxxxxxxxxx] On Behalf Of
pat.o'bryant@xxxxxxxxxxxxxx
Sent: 01 August 2006 13:32
To: Condor-Users Mail List
Subject: Re: [Condor-users] Initial installation - I don't understand
whythejob cannot write its own file?
Robert,
Try this link:
http://www.openems.org/display/CONDOR/UID_DOMAIN
My reading of this is that with differing domains, Condor will
always
use "nobody". If Condor is installed as executing as root, it would seem
that some "suid" code within Condor would fix this problem.
Pat
J.W. (Pat) O'Bryant,Jr.
Business Line Infrastructure
Technical Systems, HPC
Office: 713-431-7022
Pager: 713-606-8338
Further info: I tried setting SOFT_UID_DOMAIN = TRUE but still the same
behaviour. The cluster user authentication is as described in the entry
for this keyword, the users are not stored in /etc/password
But even with UID_DOMAIN = * and SOFT_UID_DOMAIN, HOST_ALLOW_WRITE = * ,
HOST_ALLOW_READ = * , ie I have tried (for testing!) to open up all
security but still experience the same behaviour.
What condition is causing the job to execute as NOBODY instead of the
submitting user? I think that is what I need to understand.
Thanks again
Robert
-----Original Message-----
From: condor-users-bounces@xxxxxxxxxxx
[mailto:condor-users-bounces@xxxxxxxxxxx] On Behalf Of bruce
Sent: 31 July 2006 20:26
To: 'Condor-Users Mail List'
Subject: Re: [Condor-users] Initial installation - I don't understand
whythejob cannot write its own file?
hi robert.
i'm no guru! but i've just recently got a 2 node master/client condor
setup to more or less work. i can submit a job, which queues up copies
of a perl script that then appear to get run on the two machines..
i can send you the condor_config/local config files that i have if you
think it might help..
-bruce
-----Original Message-----
From: condor-users-bounces@xxxxxxxxxxx
[mailto:condor-users-bounces@xxxxxxxxxxx]On Behalf Of Atwood, Robert C
Sent: Monday, July 31, 2006 12:18 PM
To: Condor-Users Mail List
Subject: [Condor-users] Initial installation - I don't understand why
thejob cannot write its own file?
Hi,
I have installed Condor on a small cluster on its own private network.
The master has 2 interfaces (outside network , cluster network). I've
got it configured so that jobs can be submitted and they run on the
nodes, with minimal chages to the default configuration.
However, there is a peculiar problem that I cannot figure out.
When the (vanilla) job starts, the output file is created, belongong to
the submitting user, with permissions -rw-r--r-- Then the job gets
held, with the log message:
"Error from starter on vm2@xxxxxxx : Failed to open
'/home/myuser/q/loop.out' as standard output: Permission denied (errno
13)"
The job runs as 'nobody', but the file is created with ownership of
the submitting user. This doesn't seem right.
I tried altering the UID_DOMAIN to all different things that I could
think of (domain of the master's outside, domain of the private network,
* ) with no difference in this behaviour.
I thought this file should be created in /local/condor/execute , where
/local/condor is defined in the configuration file by LOCAL_DIR, not in
the submitting working directory, anyways? That is what I would like, I
thought that was the default for vanilla jobs?
Any suggestions appreciated,
Robert
loopit.c:
#include <stdio.h>
#include <unistd.h>
int main (){
int i;
for(i=0;i<100;i++){
sleep(1);
printf("%i\n",i);
}
}
loop.submit:
########################
# Submit description file for loop program
########################
Executable = loopit
Universe = vanilla
Output = loop.out
Log = loop.log
TARGET.FileSystemDomain = *
Queue
_______________________________________________
Condor-users mailing list
To unsubscribe, send a message to condor-users-request@xxxxxxxxxxx with
a
subject: Unsubscribe
You can also unsubscribe by visiting
https://lists.cs.wisc.edu/mailman/listinfo/condor-users
The archives can be found at either
https://lists.cs.wisc.edu/archive/condor-users/
http://www.opencondor.org/spaces/viewmailarchive.action?key=CONDOR
_______________________________________________
Condor-users mailing list
To unsubscribe, send a message to condor-users-request@xxxxxxxxxxx with
a
subject: Unsubscribe
You can also unsubscribe by visiting
https://lists.cs.wisc.edu/mailman/listinfo/condor-users
The archives can be found at either
https://lists.cs.wisc.edu/archive/condor-users/
http://www.opencondor.org/spaces/viewmailarchive.action?key=CONDOR
_______________________________________________
Condor-users mailing list
To unsubscribe, send a message to condor-users-request@xxxxxxxxxxx with
a
subject: Unsubscribe
You can also unsubscribe by visiting
https://lists.cs.wisc.edu/mailman/listinfo/condor-users
The archives can be found at either
https://lists.cs.wisc.edu/archive/condor-users/
http://www.opencondor.org/spaces/viewmailarchive.action?key=CONDOR