[lustre-discuss] Fwd: o2iblnd/socklnd security

Amir Shehata amir.shehata.whamcloud at gmail.com
Mon Jan 11 14:20:05 PST 2021


Currently o2iblnd has two parameters

use_privileged_port and require_privileged_port to control the port range
to use. They control whether to use/accept a privileged port (1 -1023) or
any port.

Similarly socklnd has a similar parameter: accept_type. If set to "all"
then any port range is accepted otherwise, only a privileged port is

I'm trying to get a better idea of how these are being used on sites. And
if so do sites value this level of control? IE do these parameters provide
a level of security which is deemed valuable?

