Re: [CentOS] Network services start before network is up since migrating to 7.2

2015-12-28 Thread Sylvain CANOINE
- Mail original - > De: "Gordon Messmer" > À: "centos" > Envoyé: Jeudi 24 Décembre 2015 07:25:00 > Objet: Re: [CentOS] Network services start before network is up since > migrating to 7.2 > On 12/23/2015 08:38 AM, Sylvain CANOINE wrote: >&g

Re: [CentOS] Network services start before network is up since migrating to 7.2

2015-12-23 Thread Gordon Messmer
On 12/23/2015 08:38 AM, Sylvain CANOINE wrote: Then I'm wondering : 2/ why "After=foo" does not imply "Requires=foo" for systemd 219, while it appeared to be in systemd 208. Either it's a regression, or the behaviour of 208, although logical, is buggy. I'm not entirely certain, but "After=" i

Re: [CentOS] Network services start before network is up since migrating to 7.2

2015-12-23 Thread Sylvain CANOINE
- Mail original - > De: "Sylvain CANOINE" > À: "centos" > Envoyé: Mercredi 23 Décembre 2015 12:26:39 > Objet: Re: [CentOS] Network services start before network is up since > migrating to 7.2 > > # systemctl status network.target > ● netwo

Re: [CentOS] Network services start before network is up since migrating to 7.2

2015-12-23 Thread Marcelo Ricardo Leitner
Em 22-12-2015 08:33, Sylvain CANOINE escreveu: - Mail original - De: "Marcelo Ricardo Leitner" À: "centos" Envoyé: Lundi 21 Décembre 2015 21:46:10 Objet: Re: [CentOS] Network services start before network is up since migrating to 7.2 Agreed. Sylvain, if possib

Re: [CentOS] Network services start before network is up since migrating to 7.2

2015-12-23 Thread Marcelo Ricardo Leitner
Em 22-12-2015 13:53, m.r...@5-cent.us escreveu: c) wpa-supplicant - again, why? If it's hardwired, and behind switches and firewalls, why PNAC if every server is running firewalls? mark "let's *please* NOT talk about NAC via Cisco, and people who allegedly know and hav

Re: [CentOS] Network services start before network is up since migrating to 7.2

2015-12-23 Thread Sylvain CANOINE
- Mail original - > De: "Gordon Messmer" > À: "centos" > Envoyé: Mercredi 23 Décembre 2015 10:11:05 > Objet: Re: [CentOS] Network services start before network is up since > migrating to 7.2 > I'm a little confused, too. But, it might be

Re: [CentOS] Network services start before network is up since migrating to 7.2

2015-12-23 Thread Gordon Messmer
On 12/22/2015 09:45 AM, Sylvain CANOINE wrote: I'm confused. I updated two more servers this afternoon, and... all is working well. The services start in correct order. Even after three reboots. So only one of the (now) five updated servers doesn't start properly. Then what is the difference ?

Re: [CentOS] Network services start before network is up since migrating to 7.2

2015-12-22 Thread m . roth
John R Pierce wrote: > On 12/22/2015 1:27 PM, m.r...@5-cent.us wrote: >> I beg your pardon. What*possible* reason is there for a server, >> hardwired, to "announce" itself to anything, other than DHCP? Everywhere >> I've worked, and what I know, is that servers are assigned IP addresses, >> they d

Re: [CentOS] Network services start before network is up since migrating to 7.2

2015-12-22 Thread John R Pierce
On 12/22/2015 1:27 PM, m.r...@5-cent.us wrote: I beg your pardon. What*possible* reason is there for a server, hardwired, to "announce" itself to anything, other than DHCP? Everywhere I've worked, and what I know, is that servers are assigned IP addresses, they don't just take whatever's offered

Re: [CentOS] Network services start before network is up since migrating to 7.2

2015-12-22 Thread m . roth
21 Décembre 2015 21:46:10 >>>> Objet: Re: [CentOS] Network services start before network is up since >>> migrating to 7.2 >>> > [snip] > On Avahi: well, the job it SHOULD do is: to announce the services running > on the machine to the network. As this is done via

Re: [CentOS] Network services start before network is up since migrating to 7.2

2015-12-22 Thread Valeri Galtsev
On Tue, December 22, 2015 2:40 pm, John R Pierce wrote: > On 12/22/2015 2:33 AM, Sylvain CANOINE wrote: >> They said multiples administrator actions, and potentially human errors, >> to set it up, may be a security risk... > > > yeah, gotta get rid of those pesky humans, they always mess things >

Re: [CentOS] Network services start before network is up since migrating to 7.2

2015-12-22 Thread John R Pierce
On 12/22/2015 5:29 AM, James Hogarth wrote: Also known as "we have our policies for EL6 and we haven't paid any attention to EL7 to see how things have changed" ... Wonder if they have read my NM blog article yet ... more likely their policies were developed in the days of RHEL <= 4, and have

Re: [CentOS] Network services start before network is up since migrating to 7.2

2015-12-22 Thread John R Pierce
On 12/22/2015 2:33 AM, Sylvain CANOINE wrote: They said multiples administrator actions, and potentially human errors, to set it up, may be a security risk... yeah, gotta get rid of those pesky humans, they always mess things up.And, get rid of the computers too, they've always had secur

Re: [CentOS] Network services start before network is up since migrating to 7.2

2015-12-22 Thread Sylvain CANOINE
- Mail original - > De: "Gordon Messmer" > À: "centos" > Envoyé: Vendredi 18 Décembre 2015 12:06:26 > Objet: Re: [CentOS] Network services start before network is up since > migrating to 7.2 >>> The network service is not blocking the fl

Re: [CentOS] Network services start before network is up since migrating to 7.2

2015-12-22 Thread m . roth
James Hogarth wrote: > On 22 December 2015 at 10:33, Sylvain CANOINE > wrote: >> > De: "Marcelo Ricardo Leitner" >> In short, "you don't need it, so don't use it". >> They said NM is more a desktop-oriented tool, already had privilege >> escalation issues in the past (I didn't search if they're

Re: [CentOS] Network services start before network is up since migrating to 7.2

2015-12-22 Thread James Hogarth
On 22 December 2015 at 10:33, Sylvain CANOINE wrote: > > - Mail original - > > De: "Marcelo Ricardo Leitner" > > À: "centos" > > Envoyé: Lundi 21 Décembre 2015 21:46:10 > > Objet: Re: [CentOS] Network services start before network is

Re: [CentOS] Network services start before network is up since migrating to 7.2

2015-12-22 Thread Sylvain CANOINE
- Mail original - > De: "Marcelo Ricardo Leitner" > À: "centos" > Envoyé: Lundi 21 Décembre 2015 21:46:10 > Objet: Re: [CentOS] Network services start before network is up since > migrating to 7.2 > Agreed. Sylvain, if possible, please elaborate

Re: [CentOS] Network services start before network is up since migrating to 7.2

2015-12-21 Thread Marcelo Ricardo Leitner
Em 21-12-2015 14:24, James Hogarth escreveu: On 21 December 2015 at 15:08, Sylvain CANOINE wrote: If you're using NetworkManager, you can "systemctl enable NetworkManager-wait-online.service" and you won't have to override any of the individual services. Our security experts don't want me to

Re: [CentOS] Network services start before network is up since migrating to 7.2

2015-12-21 Thread James Hogarth
On 21 December 2015 at 15:08, Sylvain CANOINE wrote: > > If you're using NetworkManager, you can "systemctl enable > > NetworkManager-wait-online.service" and you won't have to override any > > of the individual services. > Our security experts don't want me to use NetworkManager... It's even > u

Re: [CentOS] Network services start before network is up since migrating to 7.2

2015-12-21 Thread Sylvain CANOINE
> If you're using NetworkManager, you can "systemctl enable > NetworkManager-wait-online.service" and you won't have to override any > of the individual services. Our security experts don't want me to use NetworkManager... It's even uninstalled on the models, so I understand better why all the req

Re: [CentOS] Network services start before network is up since migrating to 7.2

2015-12-18 Thread Gordon Messmer
On 12/17/2015 07:59 AM, Sylvain CANOINE wrote: Well it looks like you are using the network service rather than the recommended NetworkManager ... Yes. That's the way our security experts made the models I use to setup my servers. I'll test a migration to NetworkManager, and take their advice o

Re: [CentOS] Network services start before network is up since migrating to 7.2

2015-12-17 Thread Sylvain CANOINE
Hello James, > Well it looks like you are using the network service rather than the > recommended NetworkManager ... Yes. That's the way our security experts made the models I use to setup my servers. I'll test a migration to NetworkManager, and take their advice on it. > > The network service

Re: [CentOS] Network services start before network is up since migrating to 7.2

2015-12-17 Thread James Hogarth
On 17 December 2015 at 11:12, Sylvain CANOINE wrote: > Hello all, > > I updated two of my servers to CentOS 7.2 (1511) two days ago, and since, > on one of them, the network services are started (and fail to start) before > the network interfaces are online. > > Parts of "journalctl" after the la