OVH Community, votre nouvel espace communautaire.

cannot open /proc/net/dev


kreatik
20/10/2014, 00h59
Finalement, je suis quasi sur que le kernel GRSEC est en cause, la solution serait donc d'utiliser le même kernel mais sans GRSEC, ou trouver la valeur du group autorisé à accédé à /proc.

Exemple d'options de compilation possible :

CONFIG_GRKERNSEC_PROC_USERGROUP=y
CONFIG_GRKERNSEC_PROC_GID
=1005

Ma question, peut être qu'OVH à configuré un GID particulier ? Comment savoir ?

kreatik
20/10/2014, 00h15
Citation Envoyé par Niloo
Code:
3.8.13-xxxx-grs-ipv6-64-vps
As-tu la possibilité d'utiliser un noyau sans grs (GrSecurity) ?

Justement bonne question, sur un VPS 2014 le support m'a indiqué que c'était possible mais je n'ai pas trouvé de doc à ce sujet (une maj des guides ne serait pas du luxe d'ailleurs...), et a priori le netboot n'est pas disponible sur le VPS.


Pour info sinon :


Code:



root@vpsxxx:/home# ls -alh /proc/
total 4,0K
dr-xr-xr-x 161 root         root            0 oct.   7 02:10 .
drwxr-xr-x  25 root         root         4,0K oct.   7 18:33 ..
dr-x------   7 root         root            0 oct.  13 04:10 1
dr-x------   7 root         root            0 oct.  13 04:10 10
dr-x------   7 root         root            0 oct.  13 04:10 1002
dr-x------   7 root         root            0 oct.  13 04:10 1014
dr-x------   7 root         root            0 oct.  13 04:10 1035
dr-x------   7 root         root            0 oct.  13 04:10 1036
dr-x------   7 root         root            0 oct.  13 04:10 1037
dr-x------   7 root         root            0 oct.  13 04:10 1038
dr-x------   7 root         root            0 oct.  13 04:10 1039
dr-x------   7 root         root            0 oct.  13 04:10 1040
dr-x------   7 root         root            0 oct.  14 04:31 10422
dr-x------   7 root         root            0 oct.  13 04:10 1054
dr-x------   7 root         root            0 oct.  13 04:10 1056
dr-x------   7 root         root            0 oct.  13 04:10 1059
dr-x------   7 root         root            0 oct.  20 01:10 10596
dr-x------   7 root         root            0 oct.  13 04:10 1066
dr-x------   7 root         root            0 oct.  13 04:10 1069
dr-x------   7 root         root            0 oct.  20 01:10 10809
dr-x------   7 www-data     www-data        0 oct.  20 01:13 10842
dr-x------   7 www-data     www-data        0 oct.  20 01:13 10843
dr-x------   7 www-data     www-data        0 oct.  20 01:13 10844
dr-x------   7 www-data     www-data        0 oct.  20 01:13 10845
dr-x------   7 www-data     www-data        0 oct.  20 01:13 10849
dr-x------   7 root         root            0 oct.  13 04:10 1088
dr-x------   7 root         root            0 oct.  13 04:10 1089
dr-x------   7 root         root            0 oct.  13 04:10 1097
dr-x------   7 root         root            0 oct.  13 04:10 11
dr-x------   7 root         root            0 oct.  13 04:10 1102
dr-x------   7 root         root            0 oct.  19 13:04 11042
dr-x------   7 root         root            0 oct.  20 01:15 11306
dr-x------   7 root         root            0 oct.  20 01:15 11339
dr-x------   7 root         root            0 oct.  13 04:10 1134
dr-x------   7 root         root            0 oct.  13 04:10 12
dr-x------   7 root         root            0 oct.  13 04:09 1382
dr-x------   7 root         root            0 oct.  13 04:10 14
dr-x------   7 vpsxxx     vpsxxx        0 oct.  19 23:46 1419
dr-x------   7 root         root            0 oct.  13 04:10 15
dr-x------   7 root         root            0 oct.  13 04:10 16
dr-x------   7 root         root            0 oct.  13 04:10 17
dr-x------   7 uvhost1 uvhost1    0 oct.  19 16:37 17025
dr-x------   7 root         root            0 oct.  13 04:10 18
dr-x------   7 root         root            0 oct.  13 04:10 1809
dr-x------   7 root         root            0 oct.  13 04:10 1844
dr-x------   7 root         root            0 oct.  13 04:10 1885
dr-x------   7 root         root            0 oct.  13 04:10 19
dr-x------   7 root         root            0 oct.  19 04:15 19033
dr-x------   7 root         root            0 oct.  18 19:34 1906
dr-x------   7 root         root            0 oct.  13 04:10 1955
dr-x------   7 root         root            0 oct.  13 04:10 1956
dr-x------   7 root         root            0 oct.  13 04:10 1957
dr-x------   7 root         root            0 oct.  13 04:10 1980
dr-x------   7 root         root            0 oct.  13 04:10 2
dr-x------   7 root         root            0 oct.  13 04:10 20
dr-x------   7 root         root            0 oct.  13 04:10 2003
dr-x------   7 root         root            0 oct.  13 04:10 2005
dr-x------   7 root         root            0 oct.  13 04:10 2030
dr-x------   7 root         root            0 oct.  13 04:10 2033
dr-x------   7 root         root            0 oct.  13 04:10 2036
dr-x------   7 root         root            0 oct.  13 04:10 2037
dr-x------   7 root         root            0 oct.  13 04:10 2043
dr-x------   7 root         root            0 oct.  13 04:10 21
dr-x------   7 root         root            0 oct.  13 04:10 2117
dr-x------   7 root         root            0 oct.  13 04:10 2120
dr-x------   7 root         root            0 oct.  13 04:10 22
dr-x------   7 root         root            0 oct.  12 09:34 22094
dr-x------   7 root         root            0 oct.  19 14:33 2285
dr-x------   7 www-data     www-data        0 oct.  19 14:34 2290
dr-x------   7 root         root            0 oct.  13 04:10 23
dr-x------   7 root         root            0 oct.  18 17:40 23037
dr-x------   7 uvhost1 uvhost1    0 oct.  19 14:34 2377
dr-x------   7 uvhost1 uvhost1    0 oct.  19 14:34 2399
dr-x------   7 root         root            0 oct.  13 04:10 24
dr-x------   7 root         root            0 oct.  13 04:10 25
dr-x------   7 root         root            0 oct.  13 04:10 26
dr-x------   7 root         root            0 oct.  19 17:58 26995
dr-x------   7 root         root            0 oct.  19 17:58 26997
dr-x------   7 root         root            0 oct.  13 04:10 2700
dr-x------   7 daemon       daemon          0 oct.  19 14:33 27039
dr-x------   7 uvhost1 uvhost1    0 oct.  20 00:00 2745
dr-x------   7 root         root            0 oct.  15 06:02 27566
dr-x------   7 uvhost1 uvhost1    0 oct.  19 14:35 2797
dr-x------   7 uvhost1 uvhost1    0 oct.  19 14:36 2898
dr-x------   7 vpsxxx     vpsxxx        0 oct.  19 23:04 29049
dr-x------   7 vpsxxx     vpsxxx        0 oct.  19 23:08 29524
dr-x------   7 root         root            0 oct.  13 04:10 3
dr-x------   7 uvhost1 uvhost1    0 oct.  20 00:02 3015
dr-x------   7 root         root            0 oct.  18 04:10 30885
dr-x------   7 postgres     postgres        0 oct.  19 14:33 32597
dr-x------   7 postgres     postgres        0 oct.  19 14:32 32599
dr-x------   7 postgres     postgres        0 oct.  19 14:32 32600
dr-x------   7 postgres     postgres        0 oct.  19 14:32 32601
dr-x------   7 postgres     postgres        0 oct.  19 14:32 32602
dr-x------   7 root         root            0 oct.  13 04:09 3261
dr-x------   7 uvhost1 uvhost1    0 oct.  20 00:14 4088
dr-x------   7 root         root            0 oct.   7 04:07 4152
dr-x------   7 bind         bind            0 oct.   7 04:07 4373
dr-x------   7 root         root            0 oct.   7 04:07 4376
dr-x------   7 root         root            0 oct.   7 04:07 4393
dr-x------   7 messagebus   messagebus      0 oct.   7 04:07 4409
dr-x------   7 root         root            0 oct.   7 04:07 4578
dr-x------   7 root         root            0 oct.   7 04:07 4659
dr-x------   7 root         root            0 oct.   7 04:07 4660
dr-x------   7 root         root            0 oct.   7 04:07 4661
dr-x------   7 root         root            0 oct.   7 04:07 4662
dr-x------   7 root         root            0 oct.   7 04:07 4663
dr-x------   7 root         root            0 oct.   7 04:07 4734
dr-x------   7 nobody       nogroup         0 oct.   7 04:07 4747
dr-x------   7 root         root            0 oct.  13 04:10 485
dr-x------   7 root         root            0 oct.  13 04:10 486
dr-x------   7 root         root            0 oct.  13 04:10 488
dr-x------   7 root         root            0 oct.  13 04:10 5
dr-x------   7 mysql        mysql           0 oct.   7 00:10 5210
dr-x------   7 root         root            0 oct.   7 00:10 5211
dr-x------   7 root         root            0 oct.   7 00:09 5310
dr-x------   7 root         root            0 oct.   7 00:09 5364
dr-x------   7 root         root            0 oct.   7 00:09 5374
dr-x------   7 snmp         postgres        0 oct.  19 14:33 540
dr-x------   7 root         root            0 oct.  13 04:10 649
dr-x------   7 clamav       clamav          0 oct.   7 00:09 6539
dr-x------   7 root         root            0 oct.  13 04:10 659
dr-x------   7 root         root            0 oct.  13 04:10 669
dr-x------   7 root         root            0 oct.   7 00:09 6716
dr-x------   7 root         root            0 oct.  13 04:10 676
dr-x------   7 clamav       clamav          0 oct.   7 00:09 6802
dr-x------   7 root         root            0 oct.   7 00:10 6879
dr-x------   7 postfix      postfix         0 oct.   7 00:10 6898
dr-x------   7 root         root            0 oct.   7 00:10 6931
dr-x------   7 root         root            0 oct.   7 00:10 6932
dr-x------   7 root         root            0 oct.   7 00:10 6933
dr-x------   7 root         root            0 oct.   7 00:10 6934
dr-x------   7 root         root            0 oct.   7 00:10 6935
dr-x------   7 root         root            0 oct.   7 00:10 6936
dr-x------   7 root         root            0 oct.  13 04:10 7
dr-x------   7 postfix      postfix         0 oct.   7 00:11 7284
dr-x------   7 www-data     www-data        0 oct.  20 00:48 7423
dr-x------   7 www-data     www-data        0 oct.  20 00:48 7435
dr-x------   7 www-data     www-data        0 oct.  20 00:50 7598
dr-x------   7 root         root            0 oct.  13 04:10 780
dr-x------   7 root         root            0 oct.  13 04:10 781
dr-x------   7 postfix      postfix         0 oct.  20 00:53 7998
dr-x------   7 root         root            0 oct.  13 04:10 8
dr-x------   7 www-data     www-data        0 oct.  20 00:53 8026
dr-x------   7 root         root            0 oct.  13 04:10 824
dr-x------   7 root         root            0 oct.  13 04:10 825
dr-x------   7 root         root            0 oct.  13 04:10 9
dr-x------   7 www-data     www-data        0 oct.  20 01:03 9154
dr-x------   7 root         root            0 oct.  13 04:10 961
dr-xr-xr-x   2 root         root            0 oct.  20 01:15 acpi
-r--r--r--   1 root         root            0 oct.  20 01:15 buddyinfo
dr-xr-xr-x   4 root         root            0 oct.  20 01:15 bus
-r--r--r--   1 root         root            0 oct.  20 01:15 cgroups
-r--r--r--   1 root         root            0 oct.  20 01:15 cmdline
-r--------   1 root         root          19K oct.  20 01:15 config.gz
-r--r--r--   1 root         root            0 oct.  20 01:15 consoles
-r--r--r--   1 root         root            0 oct.  20 01:15 cpuinfo
-r--r--r--   1 root         root            0 oct.  20 01:15 crypto
-r--r--r--   1 root         root            0 oct.  20 01:15 devices
-r--r--r--   1 root         root            0 oct.  20 01:15 diskstats
-r--r--r--   1 root         root            0 oct.  20 01:15 dma
-r--r--r--   1 root         root            0 oct.  20 01:15 drbd
dr-xr-xr-x   2 root         root            0 oct.  20 01:15 driver
-r--r--r--   1 root         root            0 oct.  20 01:15 execdomains
-r--r--r--   1 root         root            0 oct.  20 01:15 filesystems
dr-xr-xr-x  12 root         root            0 oct.  20 01:15 fs
dr-xr-xr-x   4 root         root            0 oct.  20 01:15 ide
-r--r--r--   1 root         root            0 oct.  20 01:15 interrupts
-r--r--r--   1 root         root            0 oct.  20 01:15 iomem
-r--r--r--   1 root         root            0 oct.  20 01:15 ioports
dr-xr-xr-x   2 root         root            0 oct.  20 01:15 ipmi
dr-xr-xr-x  24 root         root            0 oct.  20 01:15 irq
-r--r--r--   1 root         root            0 oct.  20 01:15 kallsyms
-r--r--r--   1 root         root            0 oct.  20 01:15 key-users
-r--------   1 root         root            0 oct.  20 01:10 kmsg
-r--r--r--   1 root         root            0 oct.  20 01:15 loadavg
-r--r--r--   1 root         root            0 oct.  20 01:15 locks
-r--r--r--   1 root         root            0 oct.   7 00:10 mdstat
-r--r--r--   1 root         root            0 oct.   7 00:09 meminfo
-r--r--r--   1 root         root            0 oct.  20 01:15 misc
lrwxrwxrwx   1 root         root           11 oct.  20 01:15 mounts -> self/mounts
dr-xr-xr-x   3 root         root            0 oct.  20 01:15 mpt
-r--r--r--   1 root         root            0 oct.  20 01:15 mtd
-rw-r--r--   1 root         root            0 oct.  20 01:15 mtrr
lrwxrwxrwx   1 root         root            8 oct.  20 01:15 net -> self/net
-r--r--r--   1 root         root            0 oct.  20 01:15 pagetypeinfo
-r--r--r--   1 root         root            0 oct.  20 01:15 partitions
dr-xr-xr-x   4 root         root            0 oct.  20 01:15 scsi
lrwxrwxrwx   1 root         root            0 oct.  20 01:15 self -> 11339
-r--------   1 root         root            0 oct.  20 01:15 slabinfo
-r--r--r--   1 root         root            0 oct.  20 01:15 softirqs
-r--r--r--   1 root         root            0 oct.   7 00:09 stat
-r--r--r--   1 root         root            0 oct.  20 01:15 swaps
dr-xr-xr-x   1 root         root            0 oct.   7 04:07 sys
--w-------   1 root         root            0 oct.  20 01:15 sysrq-trigger
dr-xr-xr-x   2 root         root            0 oct.  20 01:15 sysvipc
-r--r--r--   1 root         root            0 oct.  20 01:15 timer_list
dr-xr-xr-x   4 root         root            0 oct.  20 01:15 tty
-r--r--r--   1 root         root            0 oct.  20 01:15 uptime
-r--r--r--   1 root         root            0 oct.  20 01:15 version
-r--------   1 root         root            0 oct.  20 01:15 vmallocinfo
-r--r--r--   1 root         root            0 oct.   7 00:09 vmstat
-r--r--r--   1 root         root            0 oct.  20 01:15 zoneinfo

Niloo
19/10/2014, 19h41
Code:
3.8.13-xxxx-grs-ipv6-64-vps
As-tu la possibilité d'utiliser un noyau sans grs (GrSecurity) ?

kreatik
19/10/2014, 16h37
No comments?

kreatik
06/10/2014, 22h36
Bonjour,


Nous avons configuré un cacti avec snmpd sur un VPS (web cloud 2014), hors certains graph ne fonctionnent pas, et pour cause :
(/var/log/syslog)


Code:
Oct  6 23:31:36 vpsxx snmpd[15771]: cannot open /proc/net/snmp ...
Oct  6 23:31:36 vpsxx snmpd[15771]: cannot open /proc/net/dev ...
Oct  6 23:31:51 vpsxx snmpd[15771]: cannot open /proc/net/dev ...
Oct  6 23:32:06 vpsxx snmpd[15771]: cannot open /proc/net/dev ...
Oct  6 23:32:21 vpsxx snmpd[15771]: cannot open /proc/net/dev ...
Oct  6 23:32:36 vpsxx snmpd[15771]: cannot open /proc/net/snmp ...
Oct  6 23:32:36 vpsxx snmpd[15771]: cannot open /proc/net/dev ...




Notre kernel :


Code:
root@vpsxx:/home/vpsxx/public_html/cacti/scripts# uname -r
3.8.13-xxxx-grs-ipv6-64-vps