Project

General

Profile

Bug #40572

Allow Samba to also listen on loopback when specifying a Bind IP

Added by John Hixson over 1 year ago. Updated over 1 year ago.

Status:
Done
Priority:
No priority
Assignee:
John Hixson
Category:
OS
Target version:
Seen in:
Severity:
New
Reason for Closing:
Reason for Blocked:
Needs QA:
No
Needs Doc:
No
Needs Merging:
No
Needs Automation:
No
Support Suite Ticket:
n/a
Hardware Configuration:

|NIC | Interface Name | DHCP | Media Status | IPv4 Addresses | IPv6 Addresses | Auto configure IPv6| Options|
|lagg0|lagg0|false|Active|||false||
|vlan3|Servidores|false|Active|10.0.3.20/24||false||
|vlan8|SAN|false|Active|10.0.8.23/24||false||

ChangeLog Required:
No

Description

We are using FreeNAS with multimple intefaces (2), and due to security issues, I only want Samba to listen on 1 of the IPs/Interfaces.

When Bind IP Addresses: option is selected, samba is only configured on this interface:

root@fuen-dc-1:~ # grep interfaces /usr/local/etc/smb4.conf
    bind interfaces only = yes
    interfaces = 10.0.3.20
root@fuen-dc-1:~ #

But per samba recommendation a loopback (127.0.0.1) interface must always be included, as lack of this can cause some issues to internal scripts and other samba utilities. And Loopback is not available in the list of interfaces/IPs to choose from.

As a workaround, I've set this options through Auxiliary parameters:, but Loopback should always be active, as per samba team recommendation.

BindLocalhost-2018-08-15.png (9.04 KB) BindLocalhost-2018-08-15.png Michael Reynolds, 08/15/2018 12:19 PM
24510

Related issues

Copied from FreeNAS - Bug #27948: Allow Samba to also listen on loopback when specifying a Bind IPDone

Associated revisions

Revision 6aa2965b (diff)
Added by John Hixson over 1 year ago

Allow binding to loopback address Ticket: #27948 (cherry picked from commit b1493fd7c8bbee28d89f8472d65aedc08a042ffd) (11.1-stable ticket) Ticket: #40572

History

#1 Updated by John Hixson over 1 year ago

  • Copied from Bug #27948: Allow Samba to also listen on loopback when specifying a Bind IP added

#2 Updated by John Hixson over 1 year ago

#3 Updated by Dru Lavigne over 1 year ago

  • Status changed from Unscreened to In Progress
  • Needs QA changed from No to Yes
  • Needs Merging changed from No to Yes

#4 Updated by Dru Lavigne over 1 year ago

  • Status changed from In Progress to Ready for Testing
  • Needs Merging changed from Yes to No

#5 Updated by Michael Reynolds over 1 year ago

24510

127.0.0.1 is now available in the list of "Bind IP Addresses"

see BindLocalhost-2018-08-15.png

#7 Updated by Dru Lavigne over 1 year ago

  • Status changed from Passed Testing to Done

#9 Updated by Timothy Moore II over 1 year ago

  • Needs Doc changed from Yes to No

#10 Updated by Dru Lavigne over 1 year ago

  • Needs Doc changed from No to Yes

#11 Updated by Timothy Moore II over 1 year ago

  • Needs Doc changed from Yes to No

Also available in: Atom PDF